Trezor Confirms Phishing Campaign Targeting Customers After Brevo Email Breach

What happened
On September 9, 2026, Trezor confirmed a security incident at its email provider Brevo, leading to the distribution of 347,000 phishing emails.
The Context
- Second breach in two months: This incident follows a previous data breach at shipping partner ShipMonk, affecting over 81,000 customers.
- Global impact: The phishing emails targeted Trezor newsletter subscribers worldwide, posing risks to cryptocurrency owners.
- Vendor vulnerabilities: The attack highlights the risks associated with third-party vendors in the cryptocurrency sector, where customer data can be exploited.
The Number
— This is the number of Trezor newsletter subscribers who received phishing emails, underscoring the scale of the threat to cryptocurrency security.
Takeaway
Trezor is reevaluating its vendor relationships and warns customers to remain cautious of unsolicited communications.
Startup news with frequent AI coverage.
"Covers launches, funding, and product updates in AI."
— A47 Editor
Scammers target hundreds of thousands of crypto owners after Trezor confirms data breach of email provider
Trezor has confirmed a data breach involving its email provider, leading to scammers targeting hundreds of thousands of cryptocurrency owners. This incident marks the second breach affecting a company that Trezor relies on, raising significant concer...
Real-time updates, analysis, and reports on the blockchain and cryptocurrency sectors.
"Crypto News delivers real-time updates, analysis, and reports on the blockchain and cryptocurrency sectors."
— A47 Editor
Trezor phishing attack traced to Brevo login authorization flaw
A recent phishing attack has been traced back to an authorization flaw in Brevo's login system, which allowed an attacker to access 138 customer accounts. This breach resulted in phishing emails being sent from accounts associated with Trezor, BitBox...
Covers blockchain, cryptocurrency news, project analysis, and market insights.
"Cointelegraph is a leading crypto-focused media outlet known for timely news, analysis, and educational content related to blockchain and digital assets."
— A47 Editor
Brevo login flaw enabled phishing email targeting 347K Trezor subscribers
A login flaw in Brevo's email service has led to a phishing email being sent to 347,000 Trezor subscribers, raising significant security concerns. Trezor has stated that every email address involved is considered compromised and potentially reusable ...