Trezor says third-party security breach led to phishing emails from legitimate domain

60-second summary
Trezor reports that a third‑party security breach caused phishing emails to be sent from its legitimate domain, exploiting compromised credentials after last month’s ShipMonk breach that exposed customers’ personal data. The incident forces users to verify communications carefully, while the crypto hardware wallet market faces heightened scrutiny, potentially prompting tighter vendor security standards and affecting investor confidence.
This follows last month's security breach at shipping provider ShipMonk, which exposed the personal information of Trezor customers.