Bitcoin Forum
May 14, 2024, 08:07:49 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: Trezor site phishing alert  (Read 143 times)
gentlemand (OP)
Legendary
*
Offline Offline

Activity: 2590
Merit: 3013


Welt Am Draht


View Profile
July 02, 2018, 10:04:14 AM
 #1

https://blog.trezor.io/psa-phishing-alert-fake-trezor-wallet-website-3bcfdfc3eced

I've always found the browser reliance a tad disturbing and this does little to alleviate it. All it takes is one lapse of concentration for stuff like this to catch you out and they're only going to get more sophisticated.

1715674069
Hero Member
*
Offline Offline

Posts: 1715674069

View Profile Personal Message (Offline)

Ignore
1715674069
Reply with quote  #2

1715674069
Report to moderator
1715674069
Hero Member
*
Offline Offline

Posts: 1715674069

View Profile Personal Message (Offline)

Ignore
1715674069
Reply with quote  #2

1715674069
Report to moderator
Bitcoin addresses contain a checksum, so it is very unlikely that mistyping an address will cause you to lose money.
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
1715674069
Hero Member
*
Offline Offline

Posts: 1715674069

View Profile Personal Message (Offline)

Ignore
1715674069
Reply with quote  #2

1715674069
Report to moderator
1715674069
Hero Member
*
Offline Offline

Posts: 1715674069

View Profile Personal Message (Offline)

Ignore
1715674069
Reply with quote  #2

1715674069
Report to moderator
OmegaStarScream
Staff
Legendary
*
Offline Offline

Activity: 3472
Merit: 6135



View Profile
July 02, 2018, 09:31:29 PM
 #2

The warning is definitely appreciated but I doubt anyone would fall for this and type his seed. What was the URL of the phishing sites by the way? A screenshot has been posted but it shows the original site in the address bar.

█▀▀▀











█▄▄▄
▀▀▀▀▀▀▀▀▀▀▀
e
▄▄▄▄▄▄▄▄▄▄▄
█████████████
████████████▄███
██▐███████▄█████▀
█████████▄████▀
███▐████▄███▀
████▐██████▀
█████▀█████
███████████▄
████████████▄
██▄█████▀█████▄
▄█████████▀█████▀
███████████▀██▀
████▀█████████
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
c.h.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀█











▄▄▄█
▄██████▄▄▄
█████████████▄▄
███████████████
███████████████
███████████████
███████████████
███░░█████████
███▌▐█████████
█████████████
███████████▀
██████████▀
████████▀
▀██▀▀
gentlemand (OP)
Legendary
*
Offline Offline

Activity: 2590
Merit: 3013


Welt Am Draht


View Profile
July 02, 2018, 09:35:42 PM
 #3

The warning is definitely appreciated but I doubt anyone would fall for this and type his seed. What was the URL of the phishing sites by the way? A screenshot has been posted but it shows the original site in the address bar.

"The fake Trezor Wallet website was served to some users who attempted to access wallet.trezor.io — the legitimate address. We do not yet know which attack vector was used, but the signs point toward DNS poisoning or BGP hijacking."

It would've appeared as the correct URL.

You have to type your seed into the computer anyway if I remember rightly. It's the order that you don't reveal and that's what this site was angling for. If you haven't done anything with your seed since you got the device it's possible you wouldn't remember that bit.
BitMaxz
Legendary
*
Offline Offline

Activity: 3248
Merit: 2972


Block halving is coming.


View Profile WWW
July 02, 2018, 10:45:12 PM
Last edit: July 03, 2018, 08:53:19 AM by BitMaxz
 #4

It also looks like a plugin or extension that redirect the user to the fake site and pretending as trezor but the url is correct.
The only difference is the fake site is using non https in the url unlike the legit trezor that used secured https in the url.

I'm trying to access the non https but looks like only affected users can redirect to the fake site.

█▀▀▀











█▄▄▄
▀▀▀▀▀▀▀▀▀▀▀
e
▄▄▄▄▄▄▄▄▄▄▄
█████████████
████████████▄███
██▐███████▄█████▀
█████████▄████▀
███▐████▄███▀
████▐██████▀
█████▀█████
███████████▄
████████████▄
██▄█████▀█████▄
▄█████████▀█████▀
███████████▀██▀
████▀█████████
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
c.h.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀█











▄▄▄█
▄██████▄▄▄
█████████████▄▄
███████████████
███████████████
███████████████
███████████████
███░░█████████
███▌▐█████████
█████████████
███████████▀
██████████▀
████████▀
▀██▀▀
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!