Recently something happened that made me doubt how secure popular crypto wallets really are.
I downloaded and ran a program, and almost instantly all the money disappeared from my crypto wallets — both on Solana and Ethereum networks. Phantom, Magic Eden, MetaMask, Rabby — all were affected. What’s even stranger, I hadn’t logged into some of them for quite a while.
A few weeks ago, there was a similar case among players of a Steam game — hackers exploited a vulnerability in the game to inject malware that drained crypto from players’ wallets while they were playing.
So now my question is:
Is there any crypto wallet that doesn’t store private keys or sensitive data locally at all? How can I protect myself from this kind of attack?
I’m looking for a browser-based wallet that has 2FA confirmation for transactions, similar to Abstract.
Would Trust Wallet be safer in this regard? Or if malware gets onto a PC, can it also drain funds even without logging into the wallet first?
How do you handle crypto cybersecurity? Are there any real protection methods besides using cold wallets?