Brevo Email Marketing Provider Breached, Crypto Firms Hit with Targeted Phishing Attacks
A recent breach of email marketing provider Brevo has led to targeted phishing attacks against its customers, particularly those in the cryptocurrency and adjacent fields.
The attack, a supply-chain phishing campaign, exploited a flaw in how Brevo handles SAML SSO to gain access to 138 customer accounts.
Six of these accounts were used to send phishing emails to their contact lists, while 43 had their contacts exported, potentially for use in future targeted attacks.
Crypto companies Trezor, CoinTracking, and BitBox confirmed they were among the affected customers, with Trezor warning its nearly 350,000 newsletter subscribers about a security incident at a third-party provider.