Hackers target Trezor crypto wallet users after mailing list got compromised

cryptoslatePubblicato 2022-04-05Pubblicato ultima volta 2022-04-05

Introduzione

Hardware cryptocurrency wallet manufacturer Trezor has divulged that its customers are being targeted by so-called “phishing” attacks after Mailchimp.

Hardware cryptocurrency wallet manufacturer Trezor has divulged that its customers are being targeted by so-called “phishing” attacks after Mailchimp, the firm’s email automation service provider, was “compromised by an insider targeting crypto companies.”

“We are currently investigating how many customers might have been affected following an insider compromise of a newsletter database hosted on Mailchimp,” Trezor wrote in a blog post today, adding:

“The Mailchimp security team disclosed that a malicious actor accessed an internal tool used by customer-facing teams for customer support and account administration. The bad actor gained access to this tool as a result of a successful social engineering attack on Mailchimp employees.”

Keep your app close, keep your seed phrase closer

Further, the attacker is specifically targeting crypto-related companies, Trezor noted. As a result, its wallet users began receiving phishing emails on Sunday, April 3, asking them to click a link that leads to the download page for a “Trezor Suite lookalike app.”

A copy of the phishing email. Image: Trezor
A copy of the phishing email. Image: Trezor

A copy of the phishing email. Image: Trezor

If an unsuspecting user falls into this trap, the malicious app then asks for their seed phrase—basically the private key that gives the perpetrators full access to their crypto holdings. Once entered, the seed gets compromised and users’ funds are immediately transferred to the attackers’ wallet.

“This attack is exceptional in its sophistication and was clearly planned to a high level of detail. The phishing application is a cloned version of Trezor Suite with very realistic functionality, and also included a web version of the app.”

Luckily, since potential victims have to actually install the malware on their devices (although there is also a web version), contemporary operating systems should alarm them about its unknown source. “This warning should not be ignored, all official software is digitally signed by SatoshiLabs,” Trezor pointed out.

Stay vigilant

According to Trezor, the firm has already shut down the phishing domain. However, if some users have entered their seed phrases after all, they should immediately move their crypto to a newly generated address (unless it’s already too late, of course).

“If you have not received such an email, there is still a chance your email address has been leaked, so it is best to remain vigilant in case a new wave of emails appear. Compromised email addresses may be targeted again in future so please report any new phishing attempts directly to [email protected]

Until this issue is resolved, the wallet manufacturer has ceased any newsletter activity. Additionally, users should “not open any emails appearing to come from Trezor until further notice” and make sure they are using anonymous email addresses for “Bitcoin-related activity,” the firm urged.

Letture associate

Preview of Warsh's Friday Speech: What Is the Market Focusing On?

Fed Chair Kevin Warsh is set to deliver his first Jackson Hole speech this Friday, a key event for markets to gauge his policy framework. The focus is on whether he will continue reducing forward guidance, thereby allowing markets to form their own rate expectations. Analyst Michael J. Kramer suggests a controversial interpretation: Warsh may tolerate a steeper yield curve, where rising long-term yields and bond volatility could tighten financial conditions without an immediate policy rate hike. This could occur through higher mortgage and corporate funding costs and lower equity valuations. Kramer points to the rising term premium on 10-year Treasuries, which, if reverting to pre-QE averages, could push yields above 5% alongside a higher assumed neutral rate. Concurrently, reduced forward guidance could structurally increase bond market volatility (as measured by the MOVE index), further tightening conditions. In this framework, long-end tightening could precede potential short-end rate cuts if it successfully cools demand and inflation. Risks include loss of Fed credibility and uncontrollable financial stress from excessive rate rises. Additionally, Japan's monetary policy normalization, with rising inflation expectations and short-term rate projections, may add upward pressure on global long-term yields. Friday's speech will be crucial for discerning whether Warsh views higher long-end yields as a usable policy tool or an uncontrolled market risk, and whether the "let the long-end do the tightening" narrative holds.

marsbit2 min fa

Preview of Warsh's Friday Speech: What Is the Market Focusing On?

marsbit2 min fa

Darknet Leader Indicates Readiness to Cooperate as $44 Million Bitcoin Kidnapping Case Develops

Tomas Jiríkovský, the main suspect in a major Czech Republic cryptocurrency money laundering case, has indicated a potential willingness to cooperate with authorities. This follows a custody hearing at the Brno City Court where judge Ivana Otrubová ruled to keep him detained. Jiríkovský, a programmer linked to darknet activities and money laundering, had previously refused to speak with investigators. Prosecutors now state he has changed his position regarding darknet marketplace operations and criminal proceeds laundering. The court ordered his continued detention citing a flight risk and the likelihood he still controls some illicit crypto funds. Prosecutors are seeking a sentence of up to 20 years and asset confiscation. Central to the scandal is Jiríkovský's controversial $44 million Bitcoin donation to the Czech Ministry of Justice, which he made in exchange for state assistance in unlocking a confiscated crypto wallet. Former Justice Minister Pavel Blažek accepted the donation, but investigators allege it was a scheme to legitimize illegal darknet proceeds. The fallout led to Blažek's resignation and criminal charges against several high-ranking officials for aiding money laundering and breach of duty. With tens of thousands of pages of evidence, the trial is expected to be lengthy as authorities work to uncover the full scale of the operation.

cryptonews.ru4 min fa

Darknet Leader Indicates Readiness to Cooperate as $44 Million Bitcoin Kidnapping Case Develops

cryptonews.ru4 min fa

Trading

Spot
活动图片