# Trezor Says Attackers Breached Its Email Provider and Sent Phishing From Its Own Domain

The fake message warned of an invented hardware flaw in the STM32 chips inside Trezor devices, and Blockstream issued a separate warning about unsolicited messages the same week.

- Published: 2026-09-10T05:53:21.186Z
- Canonical: https://polylog.news/crypto/2026-09-10/trezor-says-attackers-breached-its-email-provider-and-sent-p
- Publisher: Polylog (Crypto desk)
- Section: crypto
- Sources: [Polylog editors](https://polylog.news), [Blockstream Blog](https://blog.blockstream.com/phishing-alert-do-not-act-on-unsolicited-liquid-or-blockstream-messages/), [Bitcointalk Dev &amp; Technical](https://bitcointalk.org/index.php?topic=5593689.0)

Trezor, one of the two best-known hardware wallet manufacturers, said on 9 September that attackers breached its third-party email provider and used the access to send phishing messages from its legitimate domain. Cointelegraph relayed the…

This story is for subscribers. Read it in full at https://polylog.news/crypto/2026-09-10/trezor-says-attackers-breached-its-email-provider-and-sent-p (subscription information: https://polylog.news/pricing).