Crypto hardware wallet provider Trezor has issued a security caution to its users, warning of a new tactic being used by malicious actors to impersonate the company and phish for sensitive information. In a post on June 23 via social…Crypto hardware wallet provider Trezor has issued a security caution to its users, warning of a new tactic being used by malicious actors to impersonate the company and phish for sensitive information. In a post on June 23 via social…

Trezor issues security alert after contact form exploit used in phishing scam

2025/06/23 21:01

Crypto hardware wallet provider Trezor has issued a security caution to its users, warning of a new tactic being used by malicious actors to impersonate the company and phish for sensitive information.

In a post on June 23 via social media platform X (formerly Twitter), Trezor warned users that it has identified a security flaw where attackers abused its contact form to send scam emails appearing as legitimate Trezor support replies.

According to the wallet provider, the scam emails appear authentic but are phishing attempts by malicious actors preying on unsuspecting users to obtain sensitive information and compromise their accounts. 

Clarifying the situation, Trezor confirmed there was no breach of its internal email systems. Instead, the attackers submitted support requests using the email addresses of targeted users. This triggered Trezor’s automated system to send what looked like valid support replies, adding a layer of credibility to the phishing messages.

Trezor emphasized that the issue has been contained and said it is continuing to investigate while rolling out additional safeguards to prevent future incidents.

However, this is not the first time Trezor has been targeted. Back in January, the firm flagged an incident in which attackers accessed its newsletter subscriber email database and used a third-party service to impersonate the Trezor team, sending out malicious emails to users.

The repeated incidents have drawn scrutiny over Trezor’s security levels. Recently, researchers from Ledger Donjon, the security division of rival wallet maker Ledger, raised concerns over the Trezor Safe models, warning that they may not offer full protection against sophisticated attacks.

Trezor is now urging users to stay alert and follow strict security practices to keep their assets safe.

Sorumluluk Reddi: Bu sitede yeniden yayınlanan makaleler, halka açık platformlardan alınmıştır ve yalnızca bilgilendirme amaçlıdır. MEXC'nin görüşlerini yansıtmayabilir. Tüm hakları telif sahiplerine aittir. Herhangi bir içeriğin üçüncü taraf haklarını ihlal ettiğini düşünüyorsanız, kaldırılması için lütfen [email protected] ile iletişime geçin. MEXC, içeriğin doğruluğu, eksiksizliği veya güncelliği konusunda hiçbir garanti vermez ve sağlanan bilgilere dayalı olarak alınan herhangi bir eylemden sorumlu değildir. İçerik, finansal, yasal veya diğer profesyonel tavsiye niteliğinde değildir ve MEXC tarafından bir tavsiye veya onay olarak değerlendirilmemelidir.

Ayrıca Şunları da Beğenebilirsiniz

U.S. Court Finds Pastor Found Guilty in $3M Crypto Scam

U.S. Court Finds Pastor Found Guilty in $3M Crypto Scam

The post U.S. Court Finds Pastor Found Guilty in $3M Crypto Scam appeared on BitcoinEthereumNews.com. Crime 18 September 2025 | 04:05 A Colorado judge has brought closure to one of the state’s most unusual cryptocurrency scandals, declaring INDXcoin to be a fraudulent operation and ordering its founders, Denver pastor Eli Regalado and his wife Kaitlyn, to repay $3.34 million. The ruling, issued by District Court Judge Heidi L. Kutcher, came nearly two years after the couple persuaded hundreds of people to invest in their token, promising safety and abundance through a Christian-branded platform called the Kingdom Wealth Exchange. The scheme ran between June 2022 and April 2023 and drew in more than 300 participants, many of them members of local church networks. Marketing materials portrayed INDXcoin as a low-risk gateway to prosperity, yet the project unraveled almost immediately. The exchange itself collapsed within 24 hours of launch, wiping out investors’ money. Despite this failure—and despite an auditor’s damning review that gave the system a “0 out of 10” for security—the Regalados kept presenting it as a solid opportunity. Colorado regulators argued that the couple’s faith-based appeal was central to the fraud. Securities Commissioner Tung Chan said the Regalados “dressed an old scam in new technology” and used their standing within the Christian community to convince people who had little knowledge of crypto. For him, the case illustrates how modern digital assets can be exploited to replicate classic Ponzi-style tactics under a different name. Court filings revealed where much of the money ended up: luxury goods, vacations, jewelry, a Range Rover, high-end clothing, and even dental procedures. In a video that drew worldwide attention earlier this year, Eli Regalado admitted the funds had been spent, explaining that a portion went to taxes while the remainder was used for a home renovation he claimed was divinely inspired. The judgment not only confirms that INDXcoin qualifies as a…
Paylaş
BitcoinEthereumNews2025/09/18 09:14