Wednesday, September 16, 2026

Creating liberating content

CoinEx quits after 9...

Crypto exchange CoinEx is shutting down after nine years, citing shrinking revenue and...

Bitcoin, BTC-Related Stocks Tumble...

Bitcoin’s price tumbled — along with crypto-related stocks — following the blockage of...

Bitcoin Core v32 RC1:...

Bitcoin Core v32.0rc1 has turned the Sept. 14–Oct. 10 window into a concentrated...

AI Could Be Bitcoin’s...

Artificial intelligence may turn out to be an unexpected driver of...

Attackers exploit fake STM32 vulnerability alert to target Trezor and BitBox holders

Hardware-wallet makers Trezor and BitBox warned users on Sept. 9 about phishing emails impersonating their brands, urging recipients to avoid the messages’ links and instructions.

Trezor said its third-party email provider had been breached and reiterated on Sept. 10 that its wallets remained safe.

Trezor identified an email titled “Critical Security Alert: STM32 Entropy Vulnerability” as a phishing attempt. The company said the message did not come from Trezor and told recipients not to click any link. The technical-sounding subject was part of the fake security alert, rather than a vulnerability announcement from the wallet maker.

In its Sept. 9 warning, Trezor said it had taken down the domain and was investigating how attackers accessed its legitimate domain. The following day, Trezor said its wallets were still safe and again described the incident as a breach at a third-party email provider.

Read More:  Trump’s crypto disclosure exposes an institutional problem that markets price in real time

BitBox issued its own impersonation warning on Sept. 9, telling users not to follow the phishing email’s instructions while it investigated. In a subsequent update that day, BitBox said its preliminary review found it very likely that its newsletter provider had been compromised.

BitBox also said other Bitcoin companies had been targeted and appeared to share the same newsletter provider. BitBox said it had warned all newsletter subscribers, contacted the provider and reported the phishing domains.