Skip to content
Back to Guavy Wire
Crypto

Trezor Sounds Phishing Alarm: Avoid Entering Recovery Seeds Online

Share

Trezor's head of security has sounded the alarm on phishing attacks and AI-assisted social engineering threats targeting crypto users.

A recent breach at a third-party logistics partner, ShipMonk, exposed the contact details of 11,742 customers in August 2026. Trezor immediately warned affected users to be vigilant for phishing emails, phone calls, and fake customer support outreach.

The company also highlighted an operation called 'Operation ASTERIX,' which used AI tools to build counterfeit applications mimicking Trezor's software environment. The attackers would query exchange APIs to identify potential victims with significant crypto balances, then direct them to the fake apps.

Trezor emphasized that recovery seeds should never be entered into anything online and that users should only enter their seed phrase on the device itself during a legitimate recovery process. Komarek specifically warned against voice phishing, where attackers impersonate Trezor support staff and ask users to read their seed phrase aloud.

More on Crypto

Disclaimer: Guavy is a data and market intelligence provider, not an investment adviser. The information, signals, and market analysis provided by the Guavy API and related services are for informational purposes only and are not intended as financial advice, investment recommendations, or an endorsement of any particular trading strategy. Trading in volatile markets, including cryptocurrency, carries significant risk and may not be suitable for all investors. Past performance is not indicative of future results. Users should consult with a qualified financial professional before making any investment decisions. Guavy makes no guarantee of trading profits or financial returns.

Market sentiment intelligence for apps, funds & agents

Location

729 55 Ave SW
Calgary AB T2V 0G4
Canada

© 2026 Guavy Inc