Trezor says data breach affects another 67K US customers

요약:An additional 67,000 US users who ordered Trezor wallets between 2019 and mid-2021 may have been exposed to the shipping providers data breach, creating pathways to phishing attacks.

The impact of hardware wallet provider Trezors data breach was larger than initially estimated, expanding to an additional 67,000 US customers.

The breach may endanger more US users who ordered between November 2019 and August 2021, Trezor said in a Friday X post, citing the latest update from its shipping provider, ShipMonk.

These customers had their full details exposed, including name, email, number, shipping address and order specifics. Trezor blamed the shipping provider for not deleting the data from these orders, despite saying it had received written assurances from ShipMonk.

While Trezor systems were not compromised, the data breach may threaten the digital asset holdings of the 67,000 customers, as attackers may use the information for phishing attacks impersonating Trezor, in a bid to steal users seed phrases controlling their wallets.

In August, Trezor initially estimated that only 14,000 users had their data exposed through the shipping provider. Trezor reported in January 2024 that about 66,000 users were at risk of phishing attacks if they had contacted the companys support team since December 2021.

Phishing attacks and social engineering don‘t require exploiting code vulnerabilities. Still, these impersonation-based scams drove the majority of the crypto industry’s losses in the first quarter of the year, accounting for $306 million of the total $482 million lost, according to blockchain security company Hacken.

In July, a crypto investor lost nearly $1 million after signing a malicious phishing token approval transaction on Ethereum.

면책 성명

본 기사의 견해는 저자의 개인적 견해일 뿐이며 본 플랫폼은 투자 권고를 하지 않습니다. 본 플랫폼은 기사 내 정보의 정확성, 완전성, 적시성을 보장하지 않으며, 개인의 기사 내 정보에 의한 손실에 대해 책임을 지지 않습니다.
전편

AMC CEO, Robinhood의 토큰화 주식 계획 비판

다음

Trezor, 데이터 유출로 미국 고객 6만7,000명 추가 영향