
{"id":225358,"date":"2026-09-10T06:10:03","date_gmt":"2026-09-10T06:10:03","guid":{"rendered":"https:\/\/mycryptomania.com\/?p=225358"},"modified":"2026-09-10T06:10:03","modified_gmt":"2026-09-10T06:10:03","slug":"fake-trezor-warning-claims-25-of-devices-are-vulnerable-in-latest-phishing-campaign","status":"publish","type":"post","link":"https:\/\/mycryptomania.com\/?p=225358","title":{"rendered":"Fake Trezor Warning Claims 25% of Devices Are Vulnerable in Latest Phishing Campaign"},"content":{"rendered":"<p>Hardware wallet maker Trezor said its third-party provider was breached and warned users that an email titled \u201cCritical Security Alert: STM32 Entropy Vulnerability\u201d was not sent by the company but was instead a phishing attempt.<\/p>\n<p>The company urged users not to click any links.<\/p>\n<h2>Trezor Phishing Scam<\/h2>\n<p>In an update on X, Trezor <a href=\"https:\/\/x.com\/Trezor\/status\/2097786518110609620\">said<\/a> it had taken down the domain and was investigating how hackers accessed its legitimate domain. The phishing message in question attempted to convince users that a serious security flaw has been found in STM32 microcontrollers used in its devices. According to the fabricated warning, STM32 microcontrollers could generate recovery phrases without enough randomness, potentially putting users\u2019 funds at risk. The email further claims that as many as 25% of devices may be affected.<\/p>\n<p>The issue may not be limited to Trezor users, according to Casa CEO and co-founder Nick Neuman. He <a href=\"https:\/\/x.com\/Nneuman\/status\/2097788564335427955\">noted<\/a> that reports of similar messages have surfaced among people using the BitBox device as well.<\/p>\n<p>This isn\u2019t the first time a third-party partner connected to Trezor has suffered a security breach. In August, the platform <a href=\"https:\/\/cryptopotato.com\/trezor-provider-shipmonk-breach-exposed-order-data-for-13689-hardware-wallet-customers\/\">disclosed<\/a> a similar security incident involving its logistics partner, ShipMonk, which compromised personal details tied to a large number of customers.<\/p>\n<p>The exposed information included contact and delivery data. An earlier disclosure put the number of affected individuals at 13,689. However, Trezor later <a href=\"https:\/\/cryptopotato.com\/trezor-breach-is-much-bigger-than-initially-thought-another-67000-customers-exposed\/\">confirmed<\/a> that roughly 67,000 additional US customers were impacted, which pushed the total to 80,689 people whose information was exposed.<\/p>\n<h2>Hardware Concerns<\/h2>\n<p>A separate security test also <a href=\"https:\/\/donjon.ledger.com\/blog\/tropic01-laser-fault-injection\/\">raised<\/a> concerns about the TROPIC01 chip found in Trezor\u2019s Safe 7 wallet. In June, Ledger\u2019s Donjon researchers found that, with specialized equipment and physical access to a device, an attacker could interfere with the chip while it checks firmware.<\/p>\n<p>The researchers used a carefully focused 1064 nm laser to trigger faults during the boot and update process. This could allow modified firmware to run. Trezor, however, said the finding does not put users\u2019 funds at risk.<\/p>\n<p>Blockchain investigator ZachXBT has been pretty blunt about hardware wallets in the past. He had earlier <a href=\"https:\/\/cryptopotato.com\/zachxbts-hardware-wallet-criticism-ignites-debate-over-crypto-self-custody\/\">said<\/a> that all hardware wallets are \u201ccomplete garbage\u201d and that he wouldn\u2019t use them for important transactions or to store funds, and suggested keeping a separate iPhone just for wallet use instead.<\/p>\n<p>The post <a href=\"https:\/\/cryptopotato.com\/fake-trezor-warning-claims-25-of-devices-are-vulnerable-in-latest-phishing-campaign\/\">Fake Trezor Warning Claims 25% of Devices Are Vulnerable in Latest Phishing Campaign<\/a> appeared first on <a href=\"https:\/\/cryptopotato.com\/\">CryptoPotato<\/a>.<\/p>","protected":false},"excerpt":{"rendered":"<p>Hardware wallet maker Trezor said its third-party provider was breached and warned users that an email titled \u201cCritical Security Alert: STM32 Entropy Vulnerability\u201d was not sent by the company but was instead a phishing attempt. The company urged users not to click any links. Trezor Phishing Scam In an update on X, Trezor said it [&hellip;]<\/p>\n","protected":false},"author":0,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[4],"tags":[],"class_list":["post-225358","post","type-post","status-publish","format-standard","hentry","category-discovery"],"_links":{"self":[{"href":"https:\/\/mycryptomania.com\/index.php?rest_route=\/wp\/v2\/posts\/225358"}],"collection":[{"href":"https:\/\/mycryptomania.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mycryptomania.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"replies":[{"embeddable":true,"href":"https:\/\/mycryptomania.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=225358"}],"version-history":[{"count":0,"href":"https:\/\/mycryptomania.com\/index.php?rest_route=\/wp\/v2\/posts\/225358\/revisions"}],"wp:attachment":[{"href":"https:\/\/mycryptomania.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=225358"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mycryptomania.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=225358"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mycryptomania.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=225358"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}