Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Trezor Users Targeted by Phishing After Brevo Data Breach

Trezor Users Targeted by Phishing After Brevo Data Breach

Posted on September 11, 2026 By CWS

In a significant cybersecurity incident, Trezor, a leading provider of cold storage for cryptocurrencies, reported that approximately 347,000 of its users received phishing emails. This follows a breach of Brevo, a third-party marketing service used by Trezor.

Details of the Brevo Security Breach

The security breach involved the marketing platform Brevo, which Trezor utilizes for distributing newsletters. Brevo disclosed that an attacker exploited their SAML Single Sign-On (SSO) configuration, which allowed unauthorized access to 138 accounts. The attacker created a Brevo account, enabled SSO, and then invited legitimate users into this configuration, gaining access as those users through their own identity provider.

Brevo admitted that the access was not properly restricted, inadvertently allowing the attacker to reach all organizations the users could access, rather than just the intended single organization. This oversight enabled the attacker to send phishing emails using compromised accounts.

Impact on Trezor and Its Customers

The breach led to phishing messages being sent to email addresses associated with six compromised accounts. Trezor was among the affected, with the attacker sending phishing emails to 347,000 email addresses stored in Brevo’s system. The emails bore the subject line “Critical Security Alert: STM32 Entropy Vulnerability” and directed recipients to a malicious website.

Trezor cautioned users against interacting with the site, warning that funds could be lost if wallet information was entered. Despite the threat, Trezor confirmed that only 2,500 users clicked on the link before the malicious site was shut down, 20 minutes after the breach was detected. The extent of potential financial loss remains unclear.

Broader Implications and Previous Incidents

The Brevo breach also impacted other cryptocurrency services, including BitBox and CoinTracking, although they have yet to disclose details. This incident comes shortly after another breach involving Trezor, where a third-party shipping provider, ShipMonk, exposed the personal information of nearly 14,000 users. An update revealed an additional 67,000 US customers were affected, with compromised data including names, emails, and shipping details.

These incidents highlight ongoing risks for Trezor users, as phishing attempts may increase in the wake of these breaches. Users are urged to remain vigilant and monitor communications for suspicious activity.

As the cryptocurrency industry continues to grow, ensuring robust cybersecurity measures is crucial to protect sensitive user data and maintain trust in digital asset management services.

Security Week News Tags:Brevo, Brevo hack, crypto news, crypto wallet, cryptocurrency security, Cybersecurity, data breach, email phishing, hardware wallet, Phishing, SAML SSO, Trezor, Trezor security

Post navigation

Previous Post: SloppyRAT Malware: New Tactics via ClickFix Uncovered
Next Post: Exploited JFrog Artifactory Vulnerabilities Risk Supply Chains

Related Posts

RSAC 2026: Key Highlights from Days 3-4 RSAC 2026: Key Highlights from Days 3-4 Security Week News
Klue Hack Affects Multiple Cybersecurity Firms Klue Hack Affects Multiple Cybersecurity Firms Security Week News
Matters.AI Raises .25 Million to Safeguard Enterprise Data Matters.AI Raises $6.25 Million to Safeguard Enterprise Data Security Week News
Researchers Uncover K Exploit Chain in Samsung Phones Researchers Uncover $50K Exploit Chain in Samsung Phones Security Week News
Dior Says Personal Information Stolen in Cyberattack Dior Says Personal Information Stolen in Cyberattack Security Week News
Rein Security Emerges From Stealth With M, Bringing Inside-Out AppSec Approach Rein Security Emerges From Stealth With $8M, Bringing Inside-Out AppSec Approach Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Windows 11 Update Disrupts Always On VPN Connections
  • Check Point Addresses Severe VPN Security Flaws
  • Rethinking Security: Focus on Medium Risks
  • Exploited JFrog Artifactory Vulnerabilities Risk Supply Chains
  • Trezor Users Targeted by Phishing After Brevo Data Breach

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Windows 11 Update Disrupts Always On VPN Connections
  • Check Point Addresses Severe VPN Security Flaws
  • Rethinking Security: Focus on Medium Risks
  • Exploited JFrog Artifactory Vulnerabilities Risk Supply Chains
  • Trezor Users Targeted by Phishing After Brevo Data Breach

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark