Hackers target Trezor crypto wallet users after mailing list got compromised

cryptoslate發佈於 2022-04-05更新於 2022-04-05

文章摘要

Hardware cryptocurrency wallet manufacturer Trezor has divulged that its customers are being targeted by so-called “phishing” attacks after Mailchimp.

Hardware cryptocurrency wallet manufacturer Trezor has divulged that its customers are being targeted by so-called “phishing” attacks after Mailchimp, the firm’s email automation service provider, was “compromised by an insider targeting crypto companies.”

“We are currently investigating how many customers might have been affected following an insider compromise of a newsletter database hosted on Mailchimp,” Trezor wrote in a blog post today, adding:

“The Mailchimp security team disclosed that a malicious actor accessed an internal tool used by customer-facing teams for customer support and account administration. The bad actor gained access to this tool as a result of a successful social engineering attack on Mailchimp employees.”

Keep your app close, keep your seed phrase closer

Further, the attacker is specifically targeting crypto-related companies, Trezor noted. As a result, its wallet users began receiving phishing emails on Sunday, April 3, asking them to click a link that leads to the download page for a “Trezor Suite lookalike app.”

A copy of the phishing email. Image: Trezor
A copy of the phishing email. Image: Trezor

A copy of the phishing email. Image: Trezor

If an unsuspecting user falls into this trap, the malicious app then asks for their seed phrase—basically the private key that gives the perpetrators full access to their crypto holdings. Once entered, the seed gets compromised and users’ funds are immediately transferred to the attackers’ wallet.

“This attack is exceptional in its sophistication and was clearly planned to a high level of detail. The phishing application is a cloned version of Trezor Suite with very realistic functionality, and also included a web version of the app.”

Luckily, since potential victims have to actually install the malware on their devices (although there is also a web version), contemporary operating systems should alarm them about its unknown source. “This warning should not be ignored, all official software is digitally signed by SatoshiLabs,” Trezor pointed out.

Stay vigilant

According to Trezor, the firm has already shut down the phishing domain. However, if some users have entered their seed phrases after all, they should immediately move their crypto to a newly generated address (unless it’s already too late, of course).

“If you have not received such an email, there is still a chance your email address has been leaked, so it is best to remain vigilant in case a new wave of emails appear. Compromised email addresses may be targeted again in future so please report any new phishing attempts directly to [email protected]

Until this issue is resolved, the wallet manufacturer has ceased any newsletter activity. Additionally, users should “not open any emails appearing to come from Trezor until further notice” and make sure they are using anonymous email addresses for “Bitcoin-related activity,” the firm urged.

你可能也喜歡

沃什周五讲话前瞻,市场重点关注什么

8月28日(周五),美联储主席凯文·沃什将首次在杰克逊霍尔全球央行年会上发表讲话。市场关注的焦点不仅是其是否会暗示利率方向,更在于他是否会延续减少前瞻指引、让市场自行形成预期的沟通路线。 文章作者迈克尔·J·克莱默提出一种推测:沃什可能无意压低长端利率,而是希望允许收益率曲线陡峭化,通过更高的期限溢价和债券波动率来收紧金融条件,从而在不立即加息的情况下抑制需求。若美联储减少对预期的管理,长端利率可能成为独立影响经济的变量。 目前,10年期美债的期限溢价已回升至约82个基点,但仍低于量化宽松前约150个基点的历史平均水平。如果期限溢价回归均值,叠加中性利率假设,10年期美债收益率或升至5%以上。同时,减少前瞻指引可能推高债券隐含波动率,使每次议息会议都成为“开放事件”,进一步收紧金融条件。 克莱默设想,美联储或可先让长端利率完成紧缩,为后续短端降息创造空间。但这一路径存在风险,如长端利率升幅失控可能损害经济。此外,日本利率正常化预期也可能给全球长债带来额外上行压力。 周五的讲话将检验沃什如何看待长端利率上升:是视为已完成的紧缩,还是不可控的风险?这将帮助判断“让长端替美联储加息”是其政策框架的一部分,还是市场的自行解读。

marsbit5 分鐘前

沃什周五讲话前瞻,市场重点关注什么

marsbit5 分鐘前

暗网头目在4,400万美元比特币盗窃案进展之际表示愿意合作

捷克共和国一起重大加密货币洗钱案的主要被告、暗网领袖托马斯·伊尔日科夫斯基首次表示可能愿意与当局合作。此前,布尔诺市法院的伊瓦娜·奥特鲁博娃法官在拘留听证会上决定,在案件审理期间继续将其羁押。 伊尔日科夫斯基此前一直拒绝与调查人员交谈,即使在宪法法院对其拘留程序作出有利裁决后也保持沉默。然而,检察官卢西·什拉莫娃表示,在最近一次法庭听证会后,被告的立场发生了变化。她指出,被告已就暗网平台活动和犯罪所得洗钱行为改变了态度,并暗示了合作的可能性,检察官办公室将致力于推动其配合调查。 法院维持羁押决定的理由是存在逃跑风险,且被告可能仍控制着部分非法加密货币资金。检察官指控他运营暗网平台并清洗大量犯罪所得,要求判处其最高20年监禁并没收资产。 此案的核心是一笔存在争议的4400万美元比特币捐款,伊尔日科夫斯基将其捐赠给了捷克司法部。他提议将没收的加密钱包中30%的资金交给国家,以换取帮助解锁钱包。时任司法部长帕维尔·布拉热克接受了捐款并声称资金合法,但调查人员指称这是一项旨在合法化暗网非法收入的计划,由此引发了重大政治丑闻,导致布拉热克辞职,多名高级官员因涉嫌协助洗钱和渎职被刑事起诉。由于调查材料长达数万页,预计由奥特鲁博娃法官主持的审判将历时长久,以揭露该计划的全部规模。

cryptonews.ru7 分鐘前

暗网头目在4,400万美元比特币盗窃案进展之际表示愿意合作

cryptonews.ru7 分鐘前

“熊市周期已结束”:加密货币市场有哪些主要新闻

俄罗斯媒体《РБК-Крипто》发布加密货币市场动态摘要。8月26日早间,比特币($BTC)交易价格低于7.9万美元,以太坊($ETH)约为2450美元,24小时内均下跌约2%。市场总市值维持在2.65万亿美元以上,恐惧与贪婪指数为65(贪婪区域),显示投资者倾向买入。 在市值前100的加密货币中,跨链互操作项目LayerZero的$ZRO代币涨幅最大(+10%),而Monad(MON)跌幅最大(-13%)。8月24日,比特币ETF单日资金流入超3.14亿美元,以太坊ETF流入近1.79亿美元。 比特币方面,其价格于8月25日短暂触及81300美元后遭遇阻力回落。专家指出该价位附近存在50周移动平均线(SMA)这一关键技术指标,历史上向上突破该均线常预示牛市开端。分析公司CryptoQuant负责人Ki Young Ju则认为“熊市周期已经结束”,并指出当前出现了与2023年1月类似的早期看涨信号。 市场分析显示,近期资金正从比特币流向以太坊及更高风险的加密资产,这可能预示着“山寨币季节”的到来。尽管当前许多代币的上涨属于从年内低点反弹,例如$ZRO自8月17日以来已上涨超60%,但其在7月底曾交易于历史最低价位附近,类似情况在市值前100的项目中至少还有十多个。 (注:本文不构成投资建议,加密货币为波动性资产,可能导致财务损失。)

cryptonews.ru8 分鐘前

“熊市周期已结束”:加密货币市场有哪些主要新闻

cryptonews.ru8 分鐘前

交易

現貨
活动图片