Posts

Showing posts with the label phishing

Trezor comments on phishing emails sent to community

Hardware wallet provider Trezor has explained the malicious email s sent to its users. In a post to X, Trezor explained that it had discovered an unauthorized email impersonating the Trezor team from a third-party email provider it uses. The malicious email , sent from the address “[ email  protected],” asks users to upgrade their “network” or face the loss of their funds, providing them with a malicious link leading to a web page where they must enter their seed phrase. Security Alert We've detected an unauthorized email impersonating Trezor sent from a third-party email provider we use. If you received a suspicious email with the subject line 'Assets undergoing upgrade' from the ID: [ email  protected], please do not click any links or… pic.twitter.com/RqQnQkB4hX — Trezor (@Trezor) January 24, 2024 Trezor found that an unauthorized person had accessed the newsletter subscriber email address database and used a third-part...

Trezor reveals 66,000 users could face phishing attacks

Image
The security incident happened on January 17, 2024, Trezor disclosed in a blog post published on January 20. It involved a third-party support ticketing portal that Trezor uses. Contact details included names and email addresses for up to 66,000 users were compromised. Hardware wallet Trezor has announced that a security breach at a third-party support portal may have exposed up to 66,000 users. Investigations and an audit of the incident indicates that contact details likely exposed are limited to email addresses and user names /nicknames.  “ On January 17th, 2024, 20:20 CET, we identified unauthorized access to the third-party support portal we use. This breach occurred at the level of that third-party service provider we are currently engaged with ,” Trezor noted. The breach could expose the 66,000 contacts that had interacted with the hardware wallet maker’s customer support since December 2021 to potential phishing attacks. ...

Scammers steal nearly $1M after hijacking 8+ prominent crypto twitter accounts

Image
The group of scammers have recently taken over accounts belonging to the founder of Pudgy Penguins, the CTO of OpenAI and even crypto hater Peter Schiff. Over the past few weeks, a group of scammers has hijacked more than eight Twitter accounts belonging to prominent figures in the crypto space to promote phishing scams. The group has stolen almost $1 million worth of crypto so far, according to blockchain sleuth ZachXBT. In a June 9 Twitter thread, ZachXBT outlined that he had uncovered several wallets “linked on chain” that are connected to phishing scams promoted by the recently hacked accounts . “While the majority of these attacks were the result of a SIM Swap it seems other accounts were potentially stolen with a [Twitter admin] panel,” ZachXBT noted. Over the past few weeks we have seen 8+ account takeovers connected to the same group of scammers as evident by how their addresses are linked on-chain. I hope @TwitterSafety investigates each attack closely as they have resulted...