Trezor says data breach affects another 67K US customers

摘要:An additional 67,000 US users who ordered Trezor wallets between 2019 and mid-2021 may have been exposed to the shipping providers data breach, creating pathways to phishing attacks.

The impact of hardware wallet provider Trezors data breach was larger than initially estimated, expanding to an additional 67,000 US customers.

The breach may endanger more US users who ordered between November 2019 and August 2021, Trezor said in a Friday X post, citing the latest update from its shipping provider, ShipMonk.

These customers had their full details exposed, including name, email, number, shipping address and order specifics. Trezor blamed the shipping provider for not deleting the data from these orders, despite saying it had received written assurances from ShipMonk.

While Trezor systems were not compromised, the data breach may threaten the digital asset holdings of the 67,000 customers, as attackers may use the information for phishing attacks impersonating Trezor, in a bid to steal users seed phrases controlling their wallets.

In August, Trezor initially estimated that only 14,000 users had their data exposed through the shipping provider. Trezor reported in January 2024 that about 66,000 users were at risk of phishing attacks if they had contacted the companys support team since December 2021.

Phishing attacks and social engineering don‘t require exploiting code vulnerabilities. Still, these impersonation-based scams drove the majority of the crypto industry’s losses in the first quarter of the year, accounting for $306 million of the total $482 million lost, according to blockchain security company Hacken.

In July, a crypto investor lost nearly $1 million after signing a malicious phishing token approval transaction on Ethereum.

免責聲明

本文觀點僅代表作者個人觀點,不構成本平台的投資建議,本平台不對文章信息準確性、完整性和及時性作出任何保證,亦不對因使用或信賴文章信息引發的任何損失承擔責任
上一篇

Strive斥資1.43億美元購入1,800枚比特幣,成為第五大企業持有者

下一篇

韓國監管機構推出代幣化證券路線圖