Trezor says data breach affects another 67K US customers

概要:An additional 67,000 US users who ordered Trezor wallets between 2019 and mid-2021 may have been exposed to the shipping providers data breach, creating pathways to phishing attacks.

The impact of hardware wallet provider Trezors data breach was larger than initially estimated, expanding to an additional 67,000 US customers.

The breach may endanger more US users who ordered between November 2019 and August 2021, Trezor said in a Friday X post, citing the latest update from its shipping provider, ShipMonk.

These customers had their full details exposed, including name, email, number, shipping address and order specifics. Trezor blamed the shipping provider for not deleting the data from these orders, despite saying it had received written assurances from ShipMonk.

While Trezor systems were not compromised, the data breach may threaten the digital asset holdings of the 67,000 customers, as attackers may use the information for phishing attacks impersonating Trezor, in a bid to steal users seed phrases controlling their wallets.

In August, Trezor initially estimated that only 14,000 users had their data exposed through the shipping provider. Trezor reported in January 2024 that about 66,000 users were at risk of phishing attacks if they had contacted the companys support team since December 2021.

Phishing attacks and social engineering don‘t require exploiting code vulnerabilities. Still, these impersonation-based scams drove the majority of the crypto industry’s losses in the first quarter of the year, accounting for $306 million of the total $482 million lost, according to blockchain security company Hacken.

In July, a crypto investor lost nearly $1 million after signing a malicious phishing token approval transaction on Ethereum.

免責事項

このコンテンツの見解は筆者個人的な見解を示すものに過ぎず、当社の投資アドバイスではありません。当サイトは、記事情報の正確性、完全性、適時性を保証するものではなく、情報の使用または関連コンテンツにより生じた、いかなる損失に対しても責任は負いません。
前へ

MEXC Venturesが「Alpha Arena Bali」決勝戦を支援=ライブデモコンテスト優勝者が決定