← Back to Feed
Trezor: 347,000 users targeted in phishing attacks after Brevo breach
September 11, 2026 · BleepingComputer · Severity: MEDIUM
Trezor reported that 347,000 users were targeted in phishing attacks following a breach at their email service provider, Brevo. The attackers sent convincing emails impersonating Trezor to steal hardware wallet recovery seeds, though no funds were stolen. This incident highlights the risks of third-party service vulnerabilities in the cryptocurrency ecosystem.
Key Takeaways
- Trezor confirmed that 347,000 users were targeted in phishing attacks after a breach at their email service provider, Brevo. The attackers sent convincing emails impersonating Trezor to steal hardware wallet recovery seeds. No funds were reported stolen, but the incident highlights the risk of third-party service vulnerabilities.
- The phishing attacks leveraged the Brevo breach to send emails that appeared legitimate, tricking users into revealing their recovery seeds. This underscores the importance of verifying email authenticity and using hardware wallets with caution. Users should enable two-factor authentication and avoid clicking on suspicious links.
- This incident demonstrates how attackers can exploit compromised email services to target cryptocurrency users at scale. Even though no funds were stolen, the exposure of recovery seeds could lead to future theft. Organizations must vet their third-party vendors and implement robust security measures.