Brevo Login Flaw Exposes Customers to Phishing Attacks
A recent phishing attack targeting customers of Trezor, BitBox, and CoinTracking can be traced back to an authorization flaw in Brevo's login system.
The attacker exploited a weakness in Brevo's single sign-on system, gaining access to organizations connected to legitimate users who had been invited into the attacker-controlled account.
A total of 138 customer accounts were affected, with six used to send phishing emails and contacts exported from 43 accounts. The company did not specify whether these groups overlapped.
The compromised accounts included those used by hardware wallet makers Trezor and BitBox and crypto portfolio tracking and tax-reporting service CoinTracking.