ZachXBT Exposes Hacker Attack on Trezor Account; $8,100 Stolen in Solana Network's $TRZR Token Presale Scam
On-chain detective ZachXBT has issued a warning regarding a suspected hack on Trezor’s X account. The hacker promoted a fake presale token offering for "$TRZR" on the Solana Network, directing users to send funds to a fraudulent Solana wallet address.
The hacker's posts referenced another memecoin, Slerf, to attract users to wallet drainer contracts. Despite swift removal, the hacker managed to siphon approximately $8,100 from Trezor’s Zapper account. Crypto security platform Scam Sniffer confirmed the breach.
Jon Hyde refers to the Trezor security breach as a significant event, emphasizing its severity
Crypto security researcher Jon Holmquist labeled the incident a "major L for from a security company," highlighting the severity despite the limited stolen value.
Recent vulnerabilities include XSS and CSRF issues, impacting over two million Trezor devices worldwide. Additionally, cybersecurity firm Unciphered claimed physical break-in methods. Previous breaches leaked contact information of over 66,000 users.
The hack is attributed to an email phishing campaign targeting Trezor's social platforms. SatoshiLabs, Trezor's operator, is yet to address the situation.
The breach involved hackers gaining unauthorized access to the Trezor hardware wallet infrastructure, possibly through phishing attacks or vulnerabilities in the system. This breach allowed them to create and distribute counterfeit versions of the Solana token, a popular cryptocurrency, potentially tricking users into sending their assets to fraudulent addresses.
Users who own Trezor hardware wallets and store Solana tokens or other cryptocurrencies may be at risk of falling victim to this scam. If they unknowingly interact with the counterfeit tokens or send their assets to the fraudulent addresses, they could lose their funds permanently.
Trezor, the manufacturer of the hardware wallets, has likely issued warnings and guidance to its users regarding the breach. They may have also taken steps to enhance security measures and mitigate the risk of similar incidents in the future. It's crucial for users to follow any instructions provided by Trezor and to stay informed about security updates.
For users affected by the scam, the process of recovering lost funds can be challenging and may depend on various factors, including the nature of the breach and the actions taken by Trezor and law enforcement agencies. Additionally, incidents like these can erode trust in the affected platforms and may prompt users to seek alternative storage solutions or adopt additional security measures.