Trezor user reports new wave of phishing

cryptonews.ruPublicado a 2026-08-26Actualizado a 2026-08-26

Resumen

A Trezor user reported receiving a phishing email disguised as a message from the hardware wallet provider. The fake email claimed there was a critical entropy vulnerability in the firmware, alleging that a 2021 update could have weakened the seed phrase generation on some devices. Trezor acknowledged this new wave of phishing attacks, stating that attackers are likely using a combination of data from past leaks at various cryptocurrency services, which may include compromised KYC information. The company referenced a prior security incident involving a third-party tool and mailing list subscriber emails as a possible link. Trezor also noted it has taken measures to prevent further data leaks. This follows a recent report from Trezor about a data breach affecting 13,689 customers due to a hack at its logistics partner, ShipMonk, approximately two weeks earlier.

X user under the pseudonym x3ideRaven reported receiving a phishing email disguised as a message from Trezor. According to him, he purchased a device the day after the company's reported data breach period, but still started receiving fraudulent messages.

The fake email claimed to be about a supposed "critical entropy vulnerability in the firmware." The attackers alleged that a bug in a 2021 update could affect seed phrase generation on some devices.

Specifically, the email claimed that due to a configuration error, vulnerable firmware versions could use a non-cryptographic pseudorandom number generator instead of a hardware true random number generator. Supposedly, this could reduce the seed phrase entropy from 128 to 40 bits.

Trezor stated that they are aware of the new wave of phishing.

"We have confirmed that attackers are using a combination of data from different database leaks at several cryptocurrency services. It is quite possible that some KYC data may have been compromised, and the attackers are now trying their luck," the company noted.

The team reminded about a previous security incident related to a third-party tool and mailing list subscriber email addresses. Company representatives suggested this case could be linked to the current phishing campaign.

Trezor also added that they have already taken measures to prevent further leaks.

Recall that approximately two weeks prior to this report, Trezor announced a leak of customer personal data due to a hack of their logistics partner ShipMonk. The incident affected 13,689 buyers.

end-content

Preguntas relacionadas

QWhat is the main topic of the article?

AThe article discusses a new wave of phishing emails targeting users of the Trezor hardware wallet, where attackers are impersonating the company to send fraudulent security alerts.

QWhat vulnerability did the phishing email claim to be warning users about?

AThe phishing email claimed to warn about a 'critical entropy vulnerability in the firmware,' specifically that a bug from a 2021 update could have affected seed phrase generation, potentially reducing entropy from 128 to 40 bits by using a non-cryptographic pseudorandom number generator.

QHow did Trezor explain the source of the phishing targets' contact information?

ATrezor stated that the attackers are likely using a combination of data from different database leaks across multiple cryptocurrency services, and that some KYC data may have been compromised.

QWhat previous security incident did Trezor mention in relation to this phishing campaign?

ATrezor mentioned a previous security incident involving a third-party tool and email addresses of newsletter subscribers, suggesting it might be related to the current phishing campaign.

QWhat other recent data breach was mentioned in the article that affected Trezor customers?

AThe article mentions that approximately two weeks prior, Trezor reported a leak of customer personal data due to a hack of its logistics partner, ShipMonk, which affected 13,689 buyers.

Lecturas Relacionadas

Trading

Spot
活动图片