web3: Trezor claims email service provider was hacked and sent phishing emails
Coinpaper
1h ago
Ai Focus
Trezor claims that a third-party email service provider has been hacked, with attackers using their email channels to send phishing emails. BitBox users have also reported receiving similar messages.
Helpful
No.Help

Hardware wallet manufacturer Trezor stated that attackers infiltrated their third-party email service provider and used this to send phishing emails disguised as "critical security alerts." The company reminded users not to click on any links in the emails and said that they have taken down the domain names used in this attack, and are investigating how the attackers obtained access to their legitimate email domain names.

The forged content revolves around chip vulnerabilities.

This phishing email is titled “STM32 Entropy Vulnerability” and claims that there is a hardware-level defect in the STM32 microcontrollers used in some Trezor devices, which weakens the randomness during mnemonic phrase generation. The email also suggests that about a quarter of the devices may be affected and induces users to take subsequent actions.

Trezor Subsequently, on the X platform, it was clarified that the relevant emails were not sent by the company, nor had any such security alerts been issued. The sender information that users initially saw appeared to come from a legitimate email address belonging to Trezor, which is also one of the reasons why this attack was more deceptive.

Researchers claim that more than one entity may be affected.

Casa, co-founder and CEO, stated that he heard that BitBox users also received similar emails, indicating that the issue may affect more than just Trezor. One possibility is that the marketing email service provider that serves hardware wallet manufacturers has been compromised.

Bitcoin security researcher and the Chief Security Officer of Casa, Jameson Lopp, also issued a similar warning. He stated that the email service providers used by Trezor and BitBox may have been compromised, and the malicious emails sent by the attackers are not ordinary forged emails, but are sent through legitimate email channels.

  • The subject of the fake email is “Critical Security Alert : STM32 Entropy Vulnerability”
  • Trezor claims not to have issued any related security announcements.
  • BitBox Users have also reported receiving similar content.

Recent rise in the risk of phishing attacks on hardware wallets

In August this year, Trezor and another hardware wallet manufacturer, Foundation, warned users about phishing activities that took advantage of concerns regarding the security of hardware wallets in the market. The background for this was that researchers had previously disclosed vulnerabilities affecting Coldcard devices, which subsequently led to heightened user awareness of device security issues.

Also in August, Trezor disclosed that a data breach by the logistics service provider ShipMonk affected 80,689 customers, with the leaked information including names, email addresses, phone numbers, and delivery addresses. The company warned at the time that this data could be used for more sophisticated targeted phishing attacks.

This incident shows that attackers are increasingly utilizing email infrastructure and external service providers to carry out social engineering attacks. For users of hardware wallets, emails related to mnemonic phrases, firmware updates, or emergency security fixes particularly require re-verification through the official website or official channels of the device manufacturers.

Tip
$0
Like
0
Save
0
Views 15
WalletJYS reminds readers to view blockchain rationally, stay aware of risks, and beware of virtual token issuance and speculation. All content on this site represents market information or related viewpoints only and does not constitute any form of investment advice. If you find sensitive content, please click“Report”,and we will handle it promptly。
Submit
Comment 0
Hot
Latest
No comments yet. Be the first!
Related
Automattic Board of Directors Arranges for CEO Matt Murrenwieg to Take a Vacation
Automattic The board of directors has arranged for CEO Matt Mulenwig to take a vacation, and CFO Mark Davies will temporarily take over his position. The company has not disclosed the reasons for this.
TechCrunch
·2026-09-10 07:31:16
17
Foreign media: Terence Tao warns that AI is squeezing the space for mathematical research
Tao Zhe-xuan warns that the rapid solving of mathematical problems by AI may change the pace and evaluation methods of open research.
Coinpaper
·2026-09-10 07:17:01
18
web3 : If XRP equals the market value of Bitcoin, it would correspond to a price of about $25.
Based on the current market value of Bitcoin, for XRP to catch up with Bitcoin in terms of market value, the corresponding price would be around $25. The article also mentions changes in the capital flow and institutional holdings of XRP ETF.
Coinpaper
·2026-09-10 05:15:45
27
web3: Bessent urges the Senate to advance the CLARITY legislation
U.S. Treasury Secretary Besant calls on the Senate to advance the CLARITY legislation, with the Senate expected to conduct a procedural vote on September 15.
U.Today
·2026-09-10 05:01:27
17
Foreign media: Apple Watch's AI monitoring feature may intensify privacy controversies
TechCrunch reports that Apple Watch has added AI audio transcription and summarization features, which may also lead to the normalization of "continuous device monitoring," sparking discussions regarding privacy and law.
TechCrunch
·2026-09-10 04:47:57
26
View More