Key Takeaways
Hardware wallet maker Trezor reported a data breach at a third-party marketing platform, leading to phishing emails sent to customers.

According to Bitcoin Magazine, hardware wallet manufacturer Trezor has warned customers about a data breach involving Brevo, a third-party marketing platform used for newsletters. An unauthorized actor accessed the system and used Trezor's domain name to send phishing emails titled 'Critical Security Alert: STM32 Entropy Vulnerability' to 347,000 customers. The emails featured a malicious link prompting users to download an app and enter their wallet backup.
Trezor stated that the malicious domain was taken down at the DNS level within 20 minutes, limiting access to 2,500 people who had clicked it beforehand. The company suspended its Brevo account and emphasized that it never asks users for wallet backups. No other Trezor systems were affected.
This follows previous data breaches affecting crypto companies. Last month, Trezor announced exposures linked to its fulfillment partner ShipMonk. Additionally, Ledger experienced customer information leaks via payment processor Global-e, and SafePal reported unauthorized access involving customer order information.
Source & Fact-Check Note
This report is synthesized from coverage by Bitcoin Magazine. Information has been fact-checked and structured for market clarity by CoinQuickly’s research desk.
Read original article at Bitcoin Magazine ↗

