Trezor का कहना है कि ईमेल प्रदाता को हैक किया गया, जिससे उसके वैध डोमेन से फिशिंग ईमेल भेजे गए
Updated — view changes (3)
· body · New information from a source
Trezor said a third-party breach of its email provider enabled attackers to send phishing messages from what appeared to be legitimate Trezor domains, according to The Block.The fake alerts claimed a hardware flaw could expose users' recovery phrases.The breach follows a separate incident at shipping provider ShipMonk last month that exposed personal information of Trezor customers, The Block reported.- Trezor said hackers breached its third-party email provider and used the access to send phishing emails from the company's legitimate domain, according to Decrypt and The Block.
- The fraudulent messages claimed a hardware flaw in Trezor devices could expose users' recovery phrases, according to Decrypt.
- Because the emails originated from Trezor's real domain, they could appear authentic to recipients.
- The Block reported that Trezor confirmed the breach originated with a third-party provider and noted the incident follows an earlier security breach at shipping provider ShipMonk, which exposed the personal information of Trezor customers.
- Recovery phrases are used to restore access to crypto wallets, and phishing attempts that target them are a common vector for draining funds.
- Neither Decrypt nor The Block reported that any user funds were lost as a result of the phishing emails.
· summary · New information from a source
Hackers breached Trezor's email provider and sent fake security alerts claiming hardware flaws could expose user recovery phrases.- Trezor says attackers compromised its email provider and sent phishing messages from the company's real domain, falsely warning of a hardware flaw that could expose users' recovery phrases.
· headline · New information from a source
Trezor hardware wallet maker hit by email provider breach, phishing campaign launched- Trezor Says Email Provider Was Breached, Enabling Phishing Emails Sent From Its Legitimate Domain
Every change made to this story after publication is recorded here automatically. A factual error gets a correction as well, on the corrections page.
Trezor का कहना है कि हैकर्स ने कंपनी के तीसरे पक्ष के ईमेल प्रदाता को हैक किया और कंपनी के वैध डोमेन से फिशिंग ईमेल भेजने के लिए इस एक्सेस का उपयोग किया, Decrypt और The Block की रिपोर्ट के अनुसार।
नकली संदेशों में दावा किया गया कि Trezor डिवाइस में एक हार्डवेयर खामी उपयोगकर्ताओं के रिकवरी फ्रेज को उजागर कर सकती है, Decrypt के अनुसार। क्योंकि ईमेल Trezor के असली डोमेन से आए थे, वे प्राप्तकर्ताओं को प्रामाणिक प्रतीत हो सकते थे।
The Block ने रिपोर्ट किया कि Trezor ने पुष्टि की कि ब्रीच एक तीसरे पक्ष के प्रदाता की ओर से था और घटना शिपिंग प्रदाता ShipMonk में एक पहली सुरक्षा ब्रीच के बाद हुई, जिसने Trezor ग्राहकों की व्यक्तिगत जानकारी उजागर की।
रिकवरी फ्रेज क्रिप्टो वॉलेट तक एक्सेस बहाल करने के लिए उपयोग किए जाते हैं, और फिशिंग प्रयास जो उन्हें लक्ष्य करते हैं, फंड ड्रेन करने का एक सामान्य तरीका हैं। Decrypt और The Block दोनों ने रिपोर्ट नहीं किया कि फिशिंग ईमेल के परिणामस्वरूप कोई उपयोगकर्ता फंड खो गया।
यह लेख केवल सूचना के उद्देश्य से है और वित्तीय सलाह नहीं है।
बाज़ार ने क्या किया
हर आंकड़ा इस साइट का अपना पाठ है, साथ में यह भी कि उसे किसके मुक़ाबले मापा गया। ख़ाली जगह का मतलब है वह पाठ किसी ने लिया ही नहीं, शून्य नहीं। सुर्खी-से-पहले वाली खिड़की बताती है कि कोई भी एक घंटा उसी सीमा को कितनी बार पार करता है, क्योंकि नल के बिना हिट दर कोई निष्कर्ष नहीं।
अब तक की कहानी 2 अपडेट्स
- फ्लैशTrezor hardware wallet maker hit by email provider breach, phishing campaign launchedपहली बार सूचित · 2 स्रोतdecrypt.co · theblock.co
- स्टोरीTrezor Says Email Provider Was Breached, Enabling Phishing Emails Sent From Its Legitimate Domainअपडेट · 2 स्रोतdecrypt.co · theblock.co
Cite this
Archived copy · an independent capture of this page at the Internet Archive, kept so this report can be checked against what it said on the day
← और Bytes