Trezor, BitBox warn users about fake hardware wallet security alerts
Summary
Trezor and BitBox warned users about phishing emails that appeared to be urgent security alerts, likely sent after third-party email providers were compromised. Trezor said a fake message titled “Critical Security Alert: STM32 Entropy Vulnerability” was fraudulent and told users not to click links. BitBox said its newsletter provider was likely breached and that several Bitcoin companies may have been targeted through the same provider. The warnings follow a series of recent security incidents in the hardware-wallet sector, including Trezor-related data exposures from shipping and other providers.
