Fun

Trezor says phishing, not SIM swap, compromised X account

News Feed - 2024-03-22 07:03:43

Amaka Nwaokocha13 hours agoTrezor says phishing, not SIM swap, compromised X accountSatoshiLabs revealed that it suspects the compromise to be a sophisticated and premeditated phishing attack planned by hackers over several weeks.795 Total views15 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksSatoshiLabs, the company that designs and markets Trezor crypto hardware wallets, has issued a detailed explanation of an incident that led to the posting of fraudulent presale token announcements on its official X account.


The company said the security breach was caused by a phishing attack, not a SIM-swap attack, which it suspected at the time.


SatoshiLabs emphasized that it does not use a mobile device for two-factor authentication, instead opting for more secure methods of authentication.


Despite these precautions, attackers made a series of unauthorized and misleading posts, including requests for users to send funds to an unidentified wallet address alongside harmful links, which sent users to a bogus token presale site.


Independent blockchain sleuth ZachXBT notified his 528,000 followers on X of Trezor’s suspected breach in a March 19 X post.


The official X account of hardware wallet manufacturer Trezor published a series of posts directing users to fraudulent presale token offerings.Source: Trezor


SatoshiLabs disclosed that it detected unauthorized entry into its X account on March 19. It now suspects it to be a sophisticated and premeditated phishing attack planned by hackers over several weeks.


Once SatoshiLabs became aware of the breach, the deceptive posts were promptly identified and removed, limiting damage. The company said:“We want to stress here that the security of all our products remains unaffected. This incident has in no way impacted or compromised the security of Trezor hardware wallets or any of our other products.”


Investigations indicate that starting on Feb. 29, the attackers posed as credible entities in the cryptosphere. They maintained a convincing social media presence and engaged in seemingly authentic discussions.


Related:HECO Chain exploiter anonymizes $145M of Ether on Tornado Cash in 8 days


Under the guise of a well-established X account with thousands of followers, the impersonator contacted SatoshiLabs’ public relations team, suggesting an interview with the CEO. Following this, a meeting was arranged, during which the impersonator shared a malicious link disguised as a Calendly calendar invitation.


A team member was prompted for their X login credentials by clicking the calendar link, raising suspicion. However, the meeting was rescheduled. In the next session — pretending to be facing technical issues — the attacker succeeded in linking their Calendly to SatoshiLabs’ X account.


Trezor suffered a security breach in January that exposed the contact information of nearly 66,000 users. According to the firm’s website, the wallet maker has sold over two million hardware wallets since it launched in 2012.


Magazine:$3.4B of Bitcoin in a popcorn tin — The Silk Road hacker’s story# Blockchain# Cryptocurrencies# Business# Security# Hackers# HacksAdd reactionAdd reactionRead moreKenya defies US pressure, maintains Worldcoin suspensionHECO Chain exploiter anonymizes $145M of Ether on Tornado Cash in 8 daysLayerZero CEO claims Kyle Davies sought full treasury allocation days before 3AC’s fall

News Feed

Sophon ZKSync hyperchain raises $60M in node sale
Zoltan Vardai10 hours agoSophon ZKSync hyperchain raises $60M in node saleThe entertainment-focused Hyperchain aims to provide a robust infrastructure for gaming, AI and SocialFi-related protocols.821 Total views27 Total
XLink onboards Fireblocks, Ancilia to prevent another $10M hack
Josh O"Sullivan11 hours agoXLink onboards Fireblocks, Ancilia to prevent another $10M hackThe partnerships provide MPC technology, significantly improving security measures compared to traditional multisig solutions or s
FSB will standardize global incident reporting for institutions with crypto
Derek Andersen4 hours agoFSB will standardize global incident reporting for institutions with cryptoThe proposed reporting format is part of the international agency’s support for the G20 crypto asset roadmap adopted l
Kim Dotcom Says Bitcoin Cash ‘Great for Payments,’ Expects BCH to Cross $3K in 2021
Kim Dotcom Says Bitcoin Cash "Great for Payments," Expects BCH to Cross $3K in 2021 On December 17, the internet entrepreneur and political activist Kim Dotcom s
Fed’s Powell Scrutinized for Owning Bonds of the Same Type the Central Bank Bought During Pandemic
Fed"s Powell Scrutinized for Owning Bonds of the Same Type the Central Bank Bought During Pandemic As a number of Federal Reserve presidents have been criticized for their 2020 sto
XRP Analyst Sees Clear Path Beyond $100 And Toward $1,000
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
$30 Million Crypto Scheme’s Leader Pleads Guilty, Facing up to 20 Years in Prison
$30 Million Crypto Scheme’s Leader Pleads Guilty, Facing up to 20 Years in Prison The leader of a cryptocurrency scheme that swindled over $30 million from investors has pleaded
Jesse Coghlan8 hours agoUniswap lawsuit judge calls Ether a commodity in dismissal orderUnited States District Court Judge Katherine Polk Failla is also the judge overseeing the Securities and Exchange Commission’s law
FTX Co-Founder Indicted by Federal Grand Jury in Manhattan, Bahamian Magistrate Denies SBF’s Bail
FTX Co-Founder Indicted by Federal Grand Jury in Manhattan, Bahamian Magistrate Denies SBF"s Bail On Dec. 13, 2022, the Southern District of New York (SDNY) prosecutor’s offi
Switzerland’s Largest Online Bank Swissquote to Launch Its Own Crypto Exchange
Switzerland"s Largest Online Bank Swissquote to Launch Its Own Crypto Exchange Switzerland’s largest online bank, Swissquote, is reportedly launching its own cryptocurrency
Starknet airdrop largely successful despite controversies
Zhiyuan Sun6 hours agoStarknet airdrop largely successful despite controversiesThe protocol"s total diluted market capitalization has since surpassed $20 billion.861 Total views3 Total sharesListen to article 0:00NewsOwn
Bitcoin, Ethereum Technical Analysis: ETH Remains Close to 6-Week Low to Start the Weekend
Bitcoin, Ethereum Technical Analysis: ETH Remains Close to 6-Week Low to Start the Weekend Following a recent string of declines, ETH continued to hover close to a six-week low to