Trezor said its third-party email service provider was compromised, leading to a phishing email campaign disguised as an official security alert.
The email, titled "Critical Security Alert: STM32 Entropy Vulnerability," used a forged sender address, help@trezor.io. Trezor said the message was not official communication, warned users not to click links in the email, and said the related malicious domain has been taken down. The incident remains under investigation.
Trezor Warns of Phishing Email After Third-Party Provider Breach
Disclaimer: The content provided on Phemex News is for informational purposes only. We do not guarantee the quality, accuracy, or completeness of the information sourced from third-party articles. The content on this page does not constitute financial or investment advice. We strongly encourage you to conduct you own research and consult with a qualified financial advisor before making any investment decisions.
