Hackers target Trezor crypto wallet users after mailing list got compromised

cryptoslate發佈於 2022-04-05更新於 2022-04-05

文章摘要

Hardware cryptocurrency wallet manufacturer Trezor has divulged that its customers are being targeted by so-called “phishing” attacks after Mailchimp.

Hardware cryptocurrency wallet manufacturer Trezor has divulged that its customers are being targeted by so-called “phishing” attacks after Mailchimp, the firm’s email automation service provider, was “compromised by an insider targeting crypto companies.”

“We are currently investigating how many customers might have been affected following an insider compromise of a newsletter database hosted on Mailchimp,” Trezor wrote in a blog post today, adding:

“The Mailchimp security team disclosed that a malicious actor accessed an internal tool used by customer-facing teams for customer support and account administration. The bad actor gained access to this tool as a result of a successful social engineering attack on Mailchimp employees.”

Keep your app close, keep your seed phrase closer

Further, the attacker is specifically targeting crypto-related companies, Trezor noted. As a result, its wallet users began receiving phishing emails on Sunday, April 3, asking them to click a link that leads to the download page for a “Trezor Suite lookalike app.”

A copy of the phishing email. Image: Trezor
A copy of the phishing email. Image: Trezor

A copy of the phishing email. Image: Trezor

If an unsuspecting user falls into this trap, the malicious app then asks for their seed phrase—basically the private key that gives the perpetrators full access to their crypto holdings. Once entered, the seed gets compromised and users’ funds are immediately transferred to the attackers’ wallet.

“This attack is exceptional in its sophistication and was clearly planned to a high level of detail. The phishing application is a cloned version of Trezor Suite with very realistic functionality, and also included a web version of the app.”

Luckily, since potential victims have to actually install the malware on their devices (although there is also a web version), contemporary operating systems should alarm them about its unknown source. “This warning should not be ignored, all official software is digitally signed by SatoshiLabs,” Trezor pointed out.

Stay vigilant

According to Trezor, the firm has already shut down the phishing domain. However, if some users have entered their seed phrases after all, they should immediately move their crypto to a newly generated address (unless it’s already too late, of course).

“If you have not received such an email, there is still a chance your email address has been leaked, so it is best to remain vigilant in case a new wave of emails appear. Compromised email addresses may be targeted again in future so please report any new phishing attempts directly to [email protected]

Until this issue is resolved, the wallet manufacturer has ceased any newsletter activity. Additionally, users should “not open any emails appearing to come from Trezor until further notice” and make sure they are using anonymous email addresses for “Bitcoin-related activity,” the firm urged.

你可能也喜歡

卡尔达诺(Cardano)要完了吗?查尔斯·霍斯金森警告“失败浪潮”将至——他自己的社区怒不可遏

卡尔达诺(Cardano)联合创始人查尔斯·霍斯金森近日发布视频警告,称2026年下半年该生态系统将出现项目失败潮、被迫整合及DeFi关闭。此番言论引发其社区强烈不满。此次预警的导火索是卡尔达诺核心数据分析平台TapTools于6月2日宣布将在两周内停止运营,原因是基础设施成本与开发支出难以为继,团队多名核心成员也已离职。 霍斯金森将此事视为生态系统深层压力的征兆,指出许多早期项目已不具备投资价值,并承认自己曾提议的国库资助指数计划未能落实。他随后在X平台上表示将“休息一下”,此言在当下时点引发更多猜测。 加密社区反应迅速且尖锐。Nansen首席执行官安德烈亚斯·斯瓦内维克等人批评霍斯金森过往对卡尔达诺的机构潜力与开发采用做出了不切实际的承诺,导致社区期望落空。数据显示,卡尔达诺总锁仓价值(TVL)仅约1.2385亿美元,排名第28位,远远落后于以太坊等公链。此外,2026年卡尔达诺峰会被取消,工程预算遭大幅削减,ADA价格也跌至五年多来最低点约0.20美元。 霍斯金森的言论让社区不得不面对一个尖锐问题:在其创始人近乎“末日预言”的描述下,卡尔达诺能否逆转颓势?目前,生态系统尚未给出明确答案。

bitcoinist3 小時前

卡尔达诺(Cardano)要完了吗?查尔斯·霍斯金森警告“失败浪潮”将至——他自己的社区怒不可遏

bitcoinist3 小時前

交易

現貨
合約
活动图片