Trezor User Reports New Wave of Phishing
A Trezor user has reported phishing emails containing a fake warning about a critical vulnerability in the device's firmware. The company has confirmed a new wave of attacks, noting that the attackers may be using data from various leaks. User x3ideRaven received a phishing email disguised as a message from Trezor and began receiving fraudulent messages after purchasing the device. The fake email mentioned a critical entropy vulnerability in the firmware, claiming that a bug in the 2021 update could affect the generation of seed phrases. The email indicated that vulnerable firmware versions might have used a non-cryptographic pseudorandom number generator, reducing the entropy of seed phrases from 128 to 40 bits. Trezor confirmed the new wave of phishing, stating that attackers are using data from various leaks in cryptocurrency service databases, and that some KYC data may have been compromised. The company reminded users of a previous security incident involving a third-party tool and has taken steps to prevent further leaks. Two weeks prior, Trezor reported a data breach affecting 13,689 customers due to a hack of its logistics partner ShipMonk.
-- Price
This content is provided for general informational purposes only and doesn't constitute financial, investment, legal, or tax advice. Any events, rewards, online promotions, or related information mentioned herein should not be considered a recommendation, solicitation, or invitation to purchase, sell, trade, or otherwise deal in any crypto assets. Crypto assets are highly volatile and may result in loss. The availability of WEEX services, products, and related events may vary by region. You are responsible for ensuring that your participation is in accordance with applicable local laws and regulations.
You may also like

Ethereum EIP-8363 Draft Sparks Controversy Over Reward Burning Proposal

Ukraine Allocated $10.5 Million for Agricultural Harvest Storage

Latvia Bans Import of Goods from Russia and Belarus Starting September 1

FHToken Security Breach: How a Bug Drained $20,000 on PancakeSwap?

HashKey On-Chain and Conflux Network Reach Strategic Cooperation

Cosmos Labs Faces Criticism Over Disclosure Bug Issue, Leading to Recommendations for EVM Chains to Halt Operations

16 Years Ago, 'Stone Man' Lost 9000 BTC in a Legendary Incident! Discover the Lesson Learned

Iranian Deputy Foreign Minister Says Strait of Hormuz Requires Iran's Consent to Reopen

What’s Happening at OpenAI with Executive Departures?

Darline Graham wins Republican primary to succeed her brother Lindsey Graham

XRP Ledger Developing Lending and Confidential Transfer Features

Tron Inc. Accumulates 711 Million TRX After Purchasing 144,606 Units

Saudi Arabia Leads Mecca Agreement, Oil Dollar System Faces New Trust Test

Trump Beats the Fed: How Trading Boom Explodes in the UAE

BitGo Begins Institutional Support for Stacks-based sBTC

Firefox Discovers 40 Malicious Cryptocurrency Wallet Extensions Stealing Mnemonics

Interview: Aptos CEO on AI Agents, Stablecoins, and Machine Commerce

Iranian Media Allegedly Threatens Barron Trump, US Secret Service Launches Investigation

BlackRock Lowers Minimum Investment for Bitcoin ETF to $1 Million

AI Security Startup Alice Raises $140 Million, Valuation Approaches $1 Billion

AI: Hugging Face explores a sale that could value it at $13 billion

There Will Be No Mobilization of Women in Ukraine

YZi Labs Announces 24 Projects for EASY Residency Season 4, Each Receiving $500,000 Investment

Binance Wallet Accounts for 75% of Overall Trading Volume, Processing Over $13 Billion Daily

Linux 7.3 Expands Support for New RISC-V Extensions

Mozilla prepares default JPEG-XL support in Firefox 157

Ministry of Defense Announces Tender for Ground Robotic Complexes

Anthropic Asks San Francisco Employees to Work from Home Due to Potential Security Staff Strike

Telegram: Two Years After His Arrest, Pavel Durov Accuses France












