Is Your Crypto Safe? Trezor Addresses Concerns Over Hack, Claims “Sophisticated Phishing Scam”

Share This Post

On March 19, Trezor’s X suffered a security breach that exposed the account’s 200,000 followers to a fake crypto presale. After the alarms were raised, most crypto users stayed vigilant while the hardware wallet company regained control.

Trezor’s team recently published a preliminary report addressing the concerns. The post also explained the elaborate phishing scam that bypassed the company’s security measures.

Is Trezor’s “Unwavering Security” Still Protecting Your Crypto?

After gaining control of the account, the hacker posted a fake presale address for a $TRZR token. Disguised as an “initiative” to help the Slerf community, the post offered a “separate bonus airdrop” from a website linked in the post that redirected to a wallet drainer.

After Trezor regained control of the account, X users expressed their worries about the incident and suggested that the hack was a “bad look” on the security-focused company. However, the company guaranteed that they had “robust security measures.”

We want to clarify that we do not make use of SMS for 2FA, and instead employ more secure methods of authentication.

The company finally addressed users’ concerns in a preliminary report. The hack is possible due to a “sophisticated phishing scam” instead of a lack of basic security measures.

The company is based on “unwavering security,” the post states; as such, all products and internal systems remain unaffected despite the breach.

Trezor, crypto hack

Sophisticated Phishing Scam Steals Pocket Change

According to Trezor, the ongoing investigation has revealed that “the breach appears to have arisen from a sophisticated and calculated phishing attack that was in the works for weeks.”

The calculated scheme began on February 29 after the attacker posed for a “credible entity” from the crypto industry. At the time of writing, the identity of the impersonated figure was not revealed.

The attacker contacted Trezor’s PR team through X using a “well-crafted social media presence.” The seemingly genuine contact aimed to schedule an interview with the company’s CEO.

According to the report, the attacker and the team had a back-and-forth conversation over several days, which made the efforts to stage a call seem more credible. However, the call agreement led to the click of the link that granted access to Trezor’s X account.

The malicious link was disguised as a Calendly invite that, upon clicking, redirected a Trezor’s team member to a page requesting the X login credentials. The team rescheduled the call as the incident raised red flags.

During the rescheduled call, the attacker pretended to have technical issues and urged Trezor’s team member “to ‘authorize’ joining the call.” This authorization connected the hacker’s Calendly app with the company’s X account. As a result, the attacker gained access to the account and published the now-deleted posts.

The hacker only stole $8,100 from the malicious link redirecting to the wallet drainer.  Impressively, just 0.96 SOL (around $162,4 at writing time’s pricing) were sent to the fake presale address.

Undoubtedly, the attack was a calculated and elaborate scheme that aimed to become a big heist. However, the hacker’s attempt was halted by the crypto community surveillance and the suspicious nature of the unauthorized posts.

BTC,BTCUSDT, crypto scam, trezor

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

Bitcoin Set To Gain If Trump Wins, JPMorgan Cites ‘Debasement Trade’ As Key Factor

According to JPMorgan analysts, a win for the Republican US presidential candidate Donald Trump could further fuel Bitcoin (BTC) price momentum Retail Investors Turn To Bitcoin For ‘Debasement

MicroStrategy About To Increase Its Bitcoin Stash By Over 4x With New $42 Billion Plan

MicroStrategy has shocked the crypto community with its latest plans to increase its Bitcoin stash by 4X with an impressive $42 billion capital plan Known for its unwavering Bitcoin accumulation

A 36-Digit Debt: Google’s Penalty in Russia Climbs Beyond Imagination

Google faces a spiraling fine from Russia, surpassing two undecillion rubles and doubling weekly, with potential service blocks looming as tensions escalate Google and the Unending Fine: How a

Bitcoin Price Takes a Sharp Dip: Is This Just a Correction?

Bitcoin price is correcting gains from the $73,500 zone BTC is back below the $70,000 level and showing a few bearish signs Bitcoin started a fresh decline from the $73,500 zone The price is trading

JPMorgan Hit with $151 Million SEC Settlement Over Misleading Customers

The post JPMorgan Hit with $151 Million SEC Settlement Over Misleading Customers appeared first on Coinpedia Fintech News JPMorgan Chase has agreed to pay $151 million to settle five SEC charges,

Coinbase Unveils $25M For Political Donations As Stocks Suffer Worst Day In Over Two Years

In a strategic move to increase its influence in the political landscape, US-based cryptocurrency exchange Coinbase has committed an additional $25 million to Fairshake, a political action committee