{"id":262425,"date":"2026-09-11T13:32:54","date_gmt":"2026-09-11T13:32:54","guid":{"rendered":"https:\/\/entertainment.runfyers.com\/index.php\/2026\/09\/11\/scammers-target-hundreds-of-thousands-of-crypto-owners-after-trezor-confirms-data-breach-of-email-provider-techcrunch\/"},"modified":"2026-09-11T13:32:54","modified_gmt":"2026-09-11T13:32:54","slug":"scammers-target-hundreds-of-thousands-of-crypto-owners-after-trezor-confirms-data-breach-of-email-provider-techcrunch","status":"publish","type":"post","link":"https:\/\/entertainment.runfyers.com\/index.php\/2026\/09\/11\/scammers-target-hundreds-of-thousands-of-crypto-owners-after-trezor-confirms-data-breach-of-email-provider-techcrunch\/","title":{"rendered":"Scammers target hundreds of thousands of crypto owners after Trezor confirms data breach of email provider | TechCrunch"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p id=\"speakable-summary\" class=\"wp-block-paragraph\">Hardware crypto wallet maker Trezor is warning customers for the second time in as many months that one of the companies it relies on was hacked, exposing the data of Trezor\u2019s customers to hackers.<\/p>\n<p class=\"wp-block-paragraph\">In <a rel=\"nofollow noopener\" href=\"https:\/\/trezor.io\/blog\/news\/security-incident-at-brevo-our-third-party-email-provider\" target=\"_blank\">a blog post this week<\/a>, the hardware wallet maker said a cyberattack on Brevo, a marketing tech company that Trezor uses to send newsletters, allowed hackers to send around 347,000 phishing emails to Trezor customers with a malicious link purporting to come from the wallet maker.<\/p>\n<p class=\"wp-block-paragraph\">The link, when tapped, downloads an app that asks the victim for their wallet backup password. According to Trezor, one of the email subject lines said: \u201cCritical Security Alert: STM32 Entropy Vulnerability.\u201d\u00a0<\/p>\n<p class=\"wp-block-paragraph\">With a stolen wallet password, a hacker can irreversibly steal the person\u2019s funds on the public blockchain.<\/p>\n<p class=\"wp-block-paragraph\">Brevo said in <a rel=\"nofollow noopener\" href=\"https:\/\/status.brevo.com\/incidents\/01M266V1CZKJQNGZRNEGFD5CQE\/write-up\" target=\"_blank\">an incident status post<\/a> that the hackers were able to access 138 Brevo accounts to send out the mass volume of phishing messages. Brevo said that the hackers abused a flaw that meant the hackers\u2019 access was \u201cnot properly scoped.\u201d The company said that the hackers\u2019 access was \u201cwrongly granted\u201d to all organizations that the hackers\u2019 accounts could reach.<\/p>\n<p class=\"wp-block-paragraph\">The breach highlights a common security incident, where hackers compromise data held by third-party companies that are necessary for fulfilling orders or purchases from customers. Trezor says none of its products, wallets, or account system was affected by the incident.<\/p>\n<p class=\"wp-block-paragraph\">This is the second breach in recent weeks affecting Trezor, after the company alerted customers in August that one of its shipping partners was <a rel=\"nofollow\" href=\"https:\/\/x.com\/Trezor\/status\/2087885428313543059\" target=\"_blank\">compromised in a data breach<\/a>. The incident at the mailing company ShipMonk exposed the names, phone numbers, email addresses, and postal addresses of <a rel=\"nofollow noopener\" href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/trezor-data-breach-impact-now-reaches-81-000-customers\/\" target=\"_blank\">at least 81,000 people<\/a> who bought and received Trezor wallet hardware.<\/p>\n<p class=\"wp-block-paragraph\">The data breach could put crypto owners and other wealthy individuals at risk of <a href=\"https:\/\/techcrunch.com\/2026\/08\/17\/crypto-hardware-wallet-owners-face-fresh-security-risks-after-recent-spate-of-personal-data-thefts\/\" target=\"_blank\" rel=\"noopener\">targeted violence and so-called \u201cwrench\u201d attacks<\/a>, which rely on physical attacks to extract passwords from people.<\/p>\n<p class=\"wp-block-paragraph\">In the weeks following the breach at ShipMonk, some people have received letters by mail claiming to be from Trezor, featuring a QR code that, when scanned, opens up a fake page that attempts to steal the victim\u2019s crypto wallet password.<\/p>\n<p class=\"wp-block-paragraph\">Trezor said it was reevaluating its relationships with its vendors and warned customers that their email addresses may be used again for future phishing attacks.<\/p>\n<\/div>\n<p><em>When you purchase through links in our articles, <a href=\"https:\/\/techcrunch.com\/techcrunch-affiliate-monetization-standards\/\" target=\"_blank\" rel=\"noopener\">we may earn a small commission<\/a>. This doesn\u2019t affect our editorial independence.<\/em><\/p>\n<p><br \/>\n<br \/><a href=\"https:\/\/techcrunch.com\/2026\/09\/11\/scammers-target-hundreds-of-thousands-of-crypto-owners-after-trezor-confirms-data-breach-of-email-provider\/\" target=\"_blank\" rel=\"noopener\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Hardware crypto wallet maker Trezor is warning customers for the second time in as many months that one of the companies it relies on was hacked, exposing the data of Trezor\u2019s customers to hackers. In a blog post this week, the hardware wallet maker said a cyberattack on Brevo, a marketing tech company that Trezor [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":262426,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[14],"tags":[],"class_list":{"0":"post-262425","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-tech"},"_links":{"self":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/262425","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/comments?post=262425"}],"version-history":[{"count":0,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/posts\/262425\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/media\/262426"}],"wp:attachment":[{"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/media?parent=262425"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/categories?post=262425"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/entertainment.runfyers.com\/index.php\/wp-json\/wp\/v2\/tags?post=262425"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}