Get 40% Off
🚨 Volatile Markets? Find Hidden Gems for Serious Outperformance
Find Stocks Now

Trezor Investigates Data Breach Following Ongoing Phishing Attack

Published 04/04/2022, 09:40 AM
Updated 04/04/2022, 10:00 AM
Trezor Investigates Data Breach Following Ongoing Phishing Attack

  • Trezor has launched an investigation into a potential data breach.
  • In the ongoing attack, multiple Trezor users have been contacted by unauthorized actors claiming to be from the company.
  • Trezor has confirmed that the source of the breach is Mailchimp, an American email marketing service provider.

Trezor, the cryptocurrency hardware wallet provider, has launched an investigation into a potential data breach that may have compromised a number of users’ email addresses and other personal information.

Members of the Crypto Twitter (NYSE:TWTR) community warned Trezor users on Sunday about an ongoing email phishing campaign that specifically targets Trezor users via their registered email addresses.

In the ongoing attack, multiple Trezor users have been contacted by unauthorized actors claiming to be from the company. These users received an email that asked them to download an application from the “trezor.us” domain – a domain that is different to the official Trezor domain name, “trezor.io”.

The cybercriminals attempted to trap the recipients of the compromised email addresses into using the fake version of the Trezor Suite software and entering their wallet’s seed phrase – unwillingly giving the attackers full access to their funds.

It was initially suspected by the firm that the compromised email addresses belong to a list of users who signed up for newsletters. These newsletters are hosted on Mailchimp, which is an American email marketing service provider.

After looking into the Mailchimp matter, Trezor announced that “MailChimp have confirmed that their service has been compromised by an insider targeting crypto companies.”

3rd party Ad. Not an offer or recommendation by Investing.com. See disclosure here or remove ads .

Trezor stated in a subsequent post, “We have managed to take the phishing domain offline.”

As Trezor tries to determine the total number of email addresses that have been compromised, users have been advised to not click on any links coming from unofficial sources until further notice. The firm also advised users to use anonymous email addresses for any crypto-related activity.

To further protect users, Trezor has stated that they will not be communicating by newsletter until the situation is resolved.

Continue reading on CoinQuora

Latest comments

Risk Disclosure: Trading in financial instruments and/or cryptocurrencies involves high risks including the risk of losing some, or all, of your investment amount, and may not be suitable for all investors. Prices of cryptocurrencies are extremely volatile and may be affected by external factors such as financial, regulatory or political events. Trading on margin increases the financial risks.
Before deciding to trade in financial instrument or cryptocurrencies you should be fully informed of the risks and costs associated with trading the financial markets, carefully consider your investment objectives, level of experience, and risk appetite, and seek professional advice where needed.
Fusion Media would like to remind you that the data contained in this website is not necessarily real-time nor accurate. The data and prices on the website are not necessarily provided by any market or exchange, but may be provided by market makers, and so prices may not be accurate and may differ from the actual price at any given market, meaning prices are indicative and not appropriate for trading purposes. Fusion Media and any provider of the data contained in this website will not accept liability for any loss or damage as a result of your trading, or your reliance on the information contained within this website.
It is prohibited to use, store, reproduce, display, modify, transmit or distribute the data contained in this website without the explicit prior written permission of Fusion Media and/or the data provider. All intellectual property rights are reserved by the providers and/or the exchange providing the data contained in this website.
Fusion Media may be compensated by the advertisers that appear on the website, based on your interaction with the advertisements or advertisers.
© 2007-2024 - Fusion Media Limited. All Rights Reserved.