Skip to content
tag — crypto

grep -rl "crypto" ./articles

#crypto

4 articles

The Trezor phishing needed no stolen password. Brevo's SSO let the attacker sign in as the people they invited

2026-09-15Security

Phishing that reached 347,000 Trezor newsletter subscribers came from Trezor's genuine Brevo account, so it passed every sender check. Brevo's post-mortem says the attacker created an account, switched on single sign-on, invited real Brevo users into it, and was then let into every organisation those users could reach. Early coverage spoke of stolen login details. Brevo's account involves none.

The deletion was contractual, confirmed in writing, and did not happen

2026-09-07Security

Trezor says it repeatedly asked its logistics provider to delete customer data and repeatedly received written confirmation that it had been. On 5 September it disclosed that 67,000 US customers' names, phone numbers and home addresses from 2019 to 2021 were in a breach at that provider — matched, in every case, to the purchase of a hardware wallet.