Multiple crypto companies warn customers of phishing emails after alleged provider breach
Multiple cryptocurrency companies, including Trezor and CoinTracking, are warning their customers about phishing emails following a breach of an email provider, Brevo. Hackers leveraged the compromised access to send out emails mimicking legitimate security alerts, urging recipients to click malicious links and visit fake platforms. This follows a trend of increasing wrench attacks targeting wealthy crypto owners, with significant financial losses reported.
Multiple cryptocurrency companies, including Trezor, CoinTracking, and BitBox, have issued warnings to their customers regarding a surge in phishing emails. The incidents stem from a breach of Brevo, an email service provider, which allowed attackers to send out emails appearing to be from the affected companies. These emails, such as the ‘Critical Security Alert: STM32 Entropy Vulnerability’ email sent to Trezor customers, urged recipients to take immediate action by clicking on links and visiting websites that closely resembled the legitimate platforms.
CoinTracking reported receiving an email titled ‘Data Breach Notice: Please refresh API Keys as soon as possible’ containing a malicious link. BitBox explained that it sent a phishing warning to all its newsletter subscribers and contacted Brevo to report the phishing domains. Many of the phishing links have been taken down, but the companies are still investigating the situation and will provide updates as they become available.
This incident follows a trend of increasing ‘wrench attacks’ – real-world assaults targeting wealthy cryptocurrency owners. Blockchain security audit company CertiK reported a 33% year-over-year increase in wrench attacks, with losses reaching $124 million so far this year. The rise in these attacks is linked to the theft of cryptocurrency owner data from various cryptocurrency companies.
Recent incidents, such as the data breach involving Trezor’s shipping and logistics provider, where customers received malicious QR codes by postal mail, highlight the ongoing vulnerability of the industry. The DOJ noted that criminals use lists of stolen cryptocurrency owner data to prioritize targets. The situation underscores the need for heightened vigilance and robust security measures within the cryptocurrency sector.
