⚠️JUST IN: Trezor's e-mail provider has been breached
Trezor has came out with a public statement that their third-party e-mail provider has been compromised, which gave the attackers access over the official Trezor.io domain.
Phishing mails containing a "critical security alert" of a "STM32 Entropy Bug" are being sent to Trezor users.
Email features a "entropy check tool" as a link.
It is yet unclear, how the attackers gained access over the domain, but Trezor stated publicly that they have taken down the domain, and are actively investigating the incident.
@arch
Post #48
932

- ❤ 3