Fun

Trezor says phishing, not SIM swap, compromised X account

News Feed - 2024-03-22 07:03:43

Amaka Nwaokocha13 hours agoTrezor says phishing, not SIM swap, compromised X accountSatoshiLabs revealed that it suspects the compromise to be a sophisticated and premeditated phishing attack planned by hackers over several weeks.795 Total views15 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksSatoshiLabs, the company that designs and markets Trezor crypto hardware wallets, has issued a detailed explanation of an incident that led to the posting of fraudulent presale token announcements on its official X account.


The company said the security breach was caused by a phishing attack, not a SIM-swap attack, which it suspected at the time.


SatoshiLabs emphasized that it does not use a mobile device for two-factor authentication, instead opting for more secure methods of authentication.


Despite these precautions, attackers made a series of unauthorized and misleading posts, including requests for users to send funds to an unidentified wallet address alongside harmful links, which sent users to a bogus token presale site.


Independent blockchain sleuth ZachXBT notified his 528,000 followers on X of Trezor’s suspected breach in a March 19 X post.


The official X account of hardware wallet manufacturer Trezor published a series of posts directing users to fraudulent presale token offerings.Source: Trezor


SatoshiLabs disclosed that it detected unauthorized entry into its X account on March 19. It now suspects it to be a sophisticated and premeditated phishing attack planned by hackers over several weeks.


Once SatoshiLabs became aware of the breach, the deceptive posts were promptly identified and removed, limiting damage. The company said:“We want to stress here that the security of all our products remains unaffected. This incident has in no way impacted or compromised the security of Trezor hardware wallets or any of our other products.”


Investigations indicate that starting on Feb. 29, the attackers posed as credible entities in the cryptosphere. They maintained a convincing social media presence and engaged in seemingly authentic discussions.


Related:HECO Chain exploiter anonymizes $145M of Ether on Tornado Cash in 8 days


Under the guise of a well-established X account with thousands of followers, the impersonator contacted SatoshiLabs’ public relations team, suggesting an interview with the CEO. Following this, a meeting was arranged, during which the impersonator shared a malicious link disguised as a Calendly calendar invitation.


A team member was prompted for their X login credentials by clicking the calendar link, raising suspicion. However, the meeting was rescheduled. In the next session — pretending to be facing technical issues — the attacker succeeded in linking their Calendly to SatoshiLabs’ X account.


Trezor suffered a security breach in January that exposed the contact information of nearly 66,000 users. According to the firm’s website, the wallet maker has sold over two million hardware wallets since it launched in 2012.


Magazine:$3.4B of Bitcoin in a popcorn tin — The Silk Road hacker’s story# Blockchain# Cryptocurrencies# Business# Security# Hackers# HacksAdd reactionAdd reactionRead moreKenya defies US pressure, maintains Worldcoin suspensionHECO Chain exploiter anonymizes $145M of Ether on Tornado Cash in 8 daysLayerZero CEO claims Kyle Davies sought full treasury allocation days before 3AC’s fall

News Feed

xSigma Prepares to Launch Its Stablecoin DEX With Major Backers
xSigma Prepares to Launch Its Stablecoin DEX With Major Backers press release PRESS RELEASE. xSigma is a decentralized exchange and liquidity mining platform that
Arijit Sarkar1 hour agoDubai lures AI, Web3 enterprises with 90% subsidized commercial licensesIn addition to attracting talent, Dubai has also given out operational licenses to crypto exchanges over the past several mon
How a Trezor Wallet Passphrase Taking a Lifetime to Brute Force Was Cracked by KeychainX Experts in 24 Hours
How a Trezor Wallet Passphrase Taking a Lifetime to Brute Force Was Cracked by KeychainX Experts in 24 Hours sponsored Have you lost the passphrase for an hardware wallet and lookin
Iran Returns Seized Crypto Mining Equipment to Miners
Iran Returns Seized Crypto Mining Equipment to Miners A government body responsible for state property in Iran has released some of the hardware seized from illegal crypto mining f
US Bank Quontic Launches Bitcoin Rewards Checking Account With Debit Card
US Bank Quontic Launches Bitcoin Rewards Checking Account With Debit Card Quontic Bank is launching a bitcoin rewards checking account with a debit card. Custome
Hamster Kombat teases new details about ‘largest airdrop in crypto history’
Zoltan Vardai10 hours agoHamster Kombat teases new details about ‘largest airdrop in crypto history’The update comes a week after Hamster Kombat surpassed 300 million players and teased the launch of the “largest a
Banks in Mexico Pose Greater Money Laundering Risk Than Crypto Firms, Says Report
Banks in Mexico Pose Greater Money Laundering Risk Than Crypto Firms, Says ReportCommercial banks by far pose the greatest risk of money laundering in Mexico compared to crypto-rela
Investment Firm Arcane Crypto to Go Public via $33 Million Reverse Merger
Investment Firm Arcane Crypto to Go Public via $33 Million Reverse MergerArcane Crypto, a Norway-based investment company, said Thursday that it is planning to go public through a r
Derek Andersen6 hours agoEthics watchdog rats out Circle for links to Tron in letter to Sens. Warren, BrownThe Campaign for Accountability wanted to let the anti-crypto senators know that the threat of terrorist financin
‘Magnificent seven’ stocks shed $2.6T in lead-up to busy earnings week
Martin Young3 hours ago‘Magnificent seven’ stocks shed $2.6T in lead-up to busy earnings weekThe world’s best-performing tech stocks have bled an average $125 billion market cap per day for the past 20 days while c
Industrial metaverse prototype makes managing workers look like a tycoon game
Tristan Greene7 hours agoIndustrial metaverse prototype makes managing workers look like a tycoon gameBosses of the future may be able to view employee physiological status at a glance, thanks to the industrial metaverse
Bank of Russia Allows Sberbank to Issue Digital Financial Assets
Bank of Russia Allows Sberbank to Issue Digital Financial Assets Sberbank, Russia’s largest bank, has been authorized by the country’s monetary policy regulator to is