Trezor hit by phishing attack via third-party provider flaw, emails sent from real domain

Digital FinanceRegulation
โดย efin.finance·GLOBAL·Read original
Summary · why it matters

Trezor, the hardware crypto wallet maker, disclosed a security vulnerability involving a third-party provider that was exploited to send phishing emails from the company's genuine domain. The incident marks a fresh security flaw affecting users of a major hardware wallet, with attackers able to send fraudulent emails that appear to come directly from Trezor, making users more likely to be deceived. The issue is tied to a third-party provider used by Trezor and falls within a group of cyber threats targeting hardware wallets such as Trezor and Ledger, along with previously seen phishing and other crypto scams.

Impact on stocks 0

Off-coverage companies 2

TrezorPrivate▼ Negative
Technologyrelevance

Trezor disclosed a security vulnerability in a third-party provider that let attackers send phishing emails from its genuine domain.

Ledger SASPrivate± Mixed
relevance