Trezor Reports Another Security Incident: What Users Should Know
Trezor said attackers breached its third-party email provider and sent customers a phishing email disguised as a critical chip security alert, the company’s third vendor failure in four weeks.
The hardware wallet company said it took down the domain behind the campaign and is investigating how attackers reached its legitimate domain. Reportedly, wallets, keys, and recovery backups were never exposed.
Trezor’s Email Provider Breach Follows the ShipMonk Leak An August 10 incident at ShipMonk, the partner that ships Trezor orders, started the run. A September 4 update pushed the number of exposed customers above 80,000. That leak held names, phone numbers, and home addresses.
BeInCrypto reported in August that devices stayed safe while the phishing and scam risk climbed. Customers have since reported scam calls and printed letters. The pattern is old.
This page shows the RSS-provided summary/preview. Full publisher content remains available at the original source.
Read Full Article at Source