BlockBeats News, December 26th. SlowMist Technology's Chief Information Security Officer 23pds posted on social media, stating, "Users who have been continuously using a wallet version that has been compromised must disconnect from the internet first, then export the mnemonic phrase to transfer their assets. Otherwise, their funds may be stolen when they open the wallet online. For wallets that have already backed up the mnemonic phrase, it is necessary to transfer the assets first and then upgrade the wallet."
SlowMist founder Cosmos indicated that the Trust Wallet attacker should be very familiar with the wallet's extension source code, implanting PostHog JS to collect various user wallet information. The fixed version of Trust Wallet has not removed PostHog JS.
