Trezor, BitBox warn users about fake hardware wallet security alerts

摘要:Phishing emails sent to Trezor and BitBox users falsely warned of critical security flaws and attempted to lure recipients into clicking malicious links.

Hardware wallet makers Trezor and BitBox warned users about phishing emails disguised as urgent security notices after suspected compromises involving third-party email services.

On Wednesday, Trezor said its email provider had been breached and warned that a message titled “Critical Security Alert: STM32 Entropy Vulnerability” was fraudulent. The company urged recipients not to click any links.

On the same day, Bitbox warned users about a phishing email pretending to come from the company. The company said its preliminary review indicated that its newsletter provider was likely compromised, adding that multiple Bitcoin companies appeared to have been targeted through a shared provider.

The warnings come after several recent security disclosures across the hardware-wallet sector. On Aug. 13, a breach at Trezor shipping provider ShipMonk exposed data belonging to nearly 14,000 customers. On Sept. 4, Trezor disclosed that another 67,000 US customers were affected.

In July, BitBox said its devices were unaffected by a vulnerability involving Coldcards random-number generation. In August, it released an update fixing two severe firmware vulnerabilities, with no known exploitation or stolen funds reported.

Cointelegraph reached out to Trezor and BitBox for more information but did not receive responses before publication.

免责声明

本文观点仅代表作者个人观点,不构成本平台的投资建议,本平台不对文章信息准确性、完整性和及时性作出任何保证,亦不对因使用或信赖文章信息引发的任何损失承担责任
上一篇

据报道,德国财政部提议自2028年起征收25%的加密货币税

下一篇

BiyaPay 行情观察:苹果发布会后 AAPL 微跌,特努斯首秀能撑起 AI 新周期吗?