ZachXBT flags a suspicious address holding stolen crypto from nearly 20 blockchains in an ongoing attack. Hundreds of crypto wallets on Ethereum Virtual MachineZachXBT flags a suspicious address holding stolen crypto from nearly 20 blockchains in an ongoing attack. Hundreds of crypto wallets on Ethereum Virtual Machine

ZachXBT Identifies Suspicious Address Linked to Hundreds of Crypto Wallets Losing Funds Across Chains

ZachXBT flags a suspicious address holding stolen crypto from nearly 20 blockchains in an ongoing attack.

Hundreds of crypto wallets on Ethereum Virtual Machine chains have been drained in small amounts. As of now, losses exceed $107,000.

Each wallet reportedly lost less than $2,000.

Meanwhile, blockchain investigators continue to monitor suspicious addresses while the attack’s cause remains unidentified. Users should strengthen wallet security immediately.

Small Crypto Wallet Drains Across EVM Chains

The exploit affected Ethereum, BNB, Avalanche, and Arbitrum wallets. Consequently, each victim lost under $2,000, but the total theft surpassed $107,000.

ZachXBT, a blockchain investigator, flagged a suspicious address linked to these drains. Investigators are actively tracking this address as stolen assets spread across multiple chains.

According to DeBank, Ethereum accounts for about $54,655 of stolen funds, while BNB holds $25,545.

In addition, Base, Polygon, Arbitrum, Optimism, and Avalanche show smaller amounts. As a result, attackers reduced the risk of automated detection. Analysts note the method indicates coordinated action rather than random attacks.

Connection to Trust Wallet Extension

Investigations indicate the drains may connect to the Trust Wallet’s Chrome extension compromise.

In December, version 2.68 was breached, allowing attackers to collect wallet seed phrases. Subsequently, a trojanized update was pushed to the Chrome Web Store on December 24. Trust Wallet instructed one million users to upgrade to version 2.69.

Nansen and other monitoring firms confirmed the malicious version, Shai-Hulud, enabled fund transfers across multiple EVM wallets.

Additionally, exposed developer secrets gave attackers direct access to Chrome Web Store API keys. This supply chain attack affected wallets beyond Trust Wallet users, demonstrating a broader risk.

Phishing Emails and Holiday Scams

Users also received phishing emails impersonating MetaMask during the holiday period. Some falsely claimed mandatory upgrades were required.

Meanwhile, investigators have not confirmed a direct connection between these emails and wallet drains.

Data from Chainalysis shows individual wallet breaches contributed roughly 20% of crypto losses in 2025. Moreover, 158,000 wallet breaches affected 80,000 unique users, nearly tripling incidents recorded in 2022.

As investigators continue tracking suspicious addresses, stolen funds are actively monitored across multiple chains.

Related Readings: Israel Targets Iran-Linked Crypto Wallets in Major Seizure

Ongoing Investigation and Security Advice

Users should immediately update wallet software and avoid clicking suspicious email links. Additionally, strong passwords and hardware wallets help secure digital assets.

Checking transactions regularly can reveal unauthorized transfers. Meanwhile, exchanges and wallet providers monitor attacks to prevent further losses.

As a result, these ongoing wallet drains emphasize the risks in EVM-compatible wallets. Blockchain investigators continue monitoring unusual activity while users follow recommended security practices.

Subsequently, updates on the exploit may reveal additional affected wallets or recovered funds.

The post ZachXBT Identifies Suspicious Address Linked to Hundreds of Crypto Wallets Losing Funds Across Chains appeared first on Live Bitcoin News.

Market Opportunity
Virtuals Protocol Logo
Virtuals Protocol Price(VIRTUAL)
$0.7491
$0.7491$0.7491
+1.87%
USD
Virtuals Protocol (VIRTUAL) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

The Channel Factories We’ve Been Waiting For

The Channel Factories We’ve Been Waiting For

The post The Channel Factories We’ve Been Waiting For appeared on BitcoinEthereumNews.com. Visions of future technology are often prescient about the broad strokes while flubbing the details. The tablets in “2001: A Space Odyssey” do indeed look like iPads, but you never see the astronauts paying for subscriptions or wasting hours on Candy Crush.  Channel factories are one vision that arose early in the history of the Lightning Network to address some challenges that Lightning has faced from the beginning. Despite having grown to become Bitcoin’s most successful layer-2 scaling solution, with instant and low-fee payments, Lightning’s scale is limited by its reliance on payment channels. Although Lightning shifts most transactions off-chain, each payment channel still requires an on-chain transaction to open and (usually) another to close. As adoption grows, pressure on the blockchain grows with it. The need for a more scalable approach to managing channels is clear. Channel factories were supposed to meet this need, but where are they? In 2025, subnetworks are emerging that revive the impetus of channel factories with some new details that vastly increase their potential. They are natively interoperable with Lightning and achieve greater scale by allowing a group of participants to open a shared multisig UTXO and create multiple bilateral channels, which reduces the number of on-chain transactions and improves capital efficiency. Achieving greater scale by reducing complexity, Ark and Spark perform the same function as traditional channel factories with new designs and additional capabilities based on shared UTXOs.  Channel Factories 101 Channel factories have been around since the inception of Lightning. A factory is a multiparty contract where multiple users (not just two, as in a Dryja-Poon channel) cooperatively lock funds in a single multisig UTXO. They can open, close and update channels off-chain without updating the blockchain for each operation. Only when participants leave or the factory dissolves is an on-chain transaction…
Share
BitcoinEthereumNews2025/09/18 00:09
Sui Ecosystem Gains Spotlight as Taipei Builders Demo Day Highlights New DeFi Ideas

Sui Ecosystem Gains Spotlight as Taipei Builders Demo Day Highlights New DeFi Ideas

Sui Taipei Builders’ Demo Day brings developers, investors, and enthusiasts together to present blockchain projects. The Sui ecosystem will host the Taipei Builders
Share
LiveBitcoinNews2026/01/03 00:00
Stability World AI Makes AI Accessible and Ownable for People

Stability World AI Makes AI Accessible and Ownable for People

Stability World AI blends AI agents with blockchain incentives to promoting trust, accessibility, shared ownership of AI through user-driven governance.
Share
Blockchainreporter2026/01/03 00:00