According to 23pds, Chief Information Security Officer of SlowMist Technology, their analysis suggests that the devices or code repositories of Trust Wallet developers may have been compromised by attackers. Users are urged to disconnect from the internet and check their devices immediately. Previously, on-chain analyst Yu Xian published an article on the X platform stating that Trust Wallet browser extension version 2.68.0 contained a backdoor, which was fixed in version 2.69.0. Code comparison revealed that the backdoor added a PostHog plugin to collect wallet users' private information (including mnemonic phrases) and send it to the attacker's server api.metrics-trustwallet[.]com. Based on the estimated timeline, the attackers began preparations on December 8th, successfully implanted the backdoor on December 22nd, and began transferring funds on December 25th. According to zachxbt, user losses have exceeded $6 million.