Trezor disclosed a breach at Brevo, a third-party email platform, enabling convincing phishing emails to ~347,000 users; ~2,500 clicked malicious links seeking wallet backups. While Trezor contained the issue quickly and reports no core-system compromise, repeated supply-chain and vendor leaks across wallet providers (Trezor, Ledger-related Globale, SafePal) elevate operational and custody-risk perception, potentially pressuring near-term crypto sentiment and retail confidence.
Impact level
● Medium
Affected assets
BTC/USDT-1.94%
AI Insight · BTC/USDTAI Insight
▼ Bearish
Trade now
⚠️ AI-generated insights are based on news content and are provided for informational purposes only. They do not constitute investment advice or represent the views of BingX. Investing involves risk. Please trade responsibly.
ChainCatcher reported that Trezor, the maker of Bitcoin hardware wallets, warned customers of a breach involving Brevo, a third-party marketing platform it uses to distribute newsletters. The incident allowed attackers to send phishing emails to 347,000 Trezor customers.
Trezor said the attackers leveraged a Trezor domain to make the messages appear legitimate. The emails included malicious links aimed at prompting recipients to download apps and submit wallet backups.
The company said it disabled the affected domain at the DNS level within 20 minutes, cutting off access to the phishing links. About 2,500 users had already clicked the links before access was blocked. Trezor added that it has suspended its Brevo account to stop further email distribution and stressed that no other Trezor systems were impacted.
Trezor reiterated that it never asks customers to provide their wallet backups.
The disclosure follows earlier third-party incidents. Last month, Trezor said its fulfillment partner ShipMonk was compromised, exposing data tied to 11,742 customers. Last week, it reported that personal information for another 67,000 U.S. customers was exposed, including names, email addresses, phone numbers, shipping addresses, and order numbers.
Separately, earlier this year payment processor Globale, used by crypto wallet maker Ledger, and wallet provider SafePal also reported breaches. SafePal said unauthorized parties accessed order information for about 39,800 customers.