The post Why did I receive a Trezor phishing email from Substack? appeared on BitcoinEthereumNews.com. Last night I was unfortunate enough to join the long list of individuals who have been targeted by crude phishing attempts claiming to be from hardware wallet maker Trezor. This email, which had the subject line “Quantum Vulnerability Disclosure,” claimed that it was notifying me of a new firmware for my wallet that would help protect it against a fictitious exploit rooted in “recent breakthroughs in quantum technology” that “have revealed vulnerabilities in existing encryption.” The email encouraged me to “take immediate action to protect [my] information” by making sure to upgrade my device’s firmware. Read more: Crypto phishing blitz hits CoinMarketCap, Cointelegraph, and Trezor It falsely claimed that the upgrade was “necessary to safeguard your assets and prevent exposure to these evolving threats.” The most interesting thing about the email, however, was that it wasn’t from Trezor but rather [email protected]. How it works Greg Lockard runs the Greg Expectations newsletter in which he provides “updates about the comic books and graphic novels I am working on as both a writer and an editor.” According to a follow-up email that was sent from his Substack after the apparent compromise, he encouraged his subscribers to ignore the phishing email, noting that his Substack was hacked and claiming he was working with Substack to rectify the problem. Once Lockard’s Substack was hacked, it appears it was possible for the hacker to add emails to its list, a feature intended to make it easier for creators to import their email lists from other platforms. This meant that even though I wasn’t previously a subscriber, they were able to add me as one without confirmation. Screenshot from one of the emails. The hacker was aided in their quest to target crypto users by Trezor’s security failures, with a third-party support portal it used being… The post Why did I receive a Trezor phishing email from Substack? appeared on BitcoinEthereumNews.com. Last night I was unfortunate enough to join the long list of individuals who have been targeted by crude phishing attempts claiming to be from hardware wallet maker Trezor. This email, which had the subject line “Quantum Vulnerability Disclosure,” claimed that it was notifying me of a new firmware for my wallet that would help protect it against a fictitious exploit rooted in “recent breakthroughs in quantum technology” that “have revealed vulnerabilities in existing encryption.” The email encouraged me to “take immediate action to protect [my] information” by making sure to upgrade my device’s firmware. Read more: Crypto phishing blitz hits CoinMarketCap, Cointelegraph, and Trezor It falsely claimed that the upgrade was “necessary to safeguard your assets and prevent exposure to these evolving threats.” The most interesting thing about the email, however, was that it wasn’t from Trezor but rather [email protected]. How it works Greg Lockard runs the Greg Expectations newsletter in which he provides “updates about the comic books and graphic novels I am working on as both a writer and an editor.” According to a follow-up email that was sent from his Substack after the apparent compromise, he encouraged his subscribers to ignore the phishing email, noting that his Substack was hacked and claiming he was working with Substack to rectify the problem. Once Lockard’s Substack was hacked, it appears it was possible for the hacker to add emails to its list, a feature intended to make it easier for creators to import their email lists from other platforms. This meant that even though I wasn’t previously a subscriber, they were able to add me as one without confirmation. Screenshot from one of the emails. The hacker was aided in their quest to target crypto users by Trezor’s security failures, with a third-party support portal it used being…

Why did I receive a Trezor phishing email from Substack?

For feedback or concerns regarding this content, please contact us at crypto.news@mexc.com

Last night I was unfortunate enough to join the long list of individuals who have been targeted by crude phishing attempts claiming to be from hardware wallet maker Trezor.

This email, which had the subject line “Quantum Vulnerability Disclosure,” claimed that it was notifying me of a new firmware for my wallet that would help protect it against a fictitious exploit rooted in “recent breakthroughs in quantum technology” that “have revealed vulnerabilities in existing encryption.”

The email encouraged me to “take immediate action to protect [my] information” by making sure to upgrade my device’s firmware.

Read more: Crypto phishing blitz hits CoinMarketCap, Cointelegraph, and Trezor

It falsely claimed that the upgrade was “necessary to safeguard your assets and prevent exposure to these evolving threats.”

The most interesting thing about the email, however, was that it wasn’t from Trezor but rather [email protected].

How it works

Greg Lockard runs the Greg Expectations newsletter in which he provides “updates about the comic books and graphic novels I am working on as both a writer and an editor.”

According to a follow-up email that was sent from his Substack after the apparent compromise, he encouraged his subscribers to ignore the phishing email, noting that his Substack was hacked and claiming he was working with Substack to rectify the problem.

Once Lockard’s Substack was hacked, it appears it was possible for the hacker to add emails to its list, a feature intended to make it easier for creators to import their email lists from other platforms.

This meant that even though I wasn’t previously a subscriber, they were able to add me as one without confirmation.

Screenshot from one of the emails.

The hacker was aided in their quest to target crypto users by Trezor’s security failures, with a third-party support portal it used being compromised in 2024.

Users who received this email and then clicked the “Upgrade Firmware” button in the newsletter were directed to quantumshield-trezor[dot]io, which is currently unavailable.

This domain would presumably host the website that would encourage users to either install malware or attempt to trick them into revealing their seed phrase.

Protos reached out to Substack to determine what steps they take to prevent this type of attack and how this one specifically managed to avoid it, but it did not immediately respond.

Do we need to be worried about quantum vulnerability?

While quantum computers are still progressing and may eventually pose a threat to a variety of encryption types currently in use, as it stands, the systems are expensive and lack the capacity to break most encryption.

Once quantum computers are deployed, they’ll be controlled by a small number of actors and will likely initially focus on a small number of targets.

Read more: The internet is laughing at El Salvador’s ‘quantum-safe’ bitcoin | Protos

There is also active and substantial development work underway on various chains in an effort to come up with mitigation strategies to reduce the likelihood of these attacks being successful.

In general, be extraordinarily cautious whenever any email or website suggests that you need to give it access to your wallets. Phishing is a much larger risk than quantum computing at this time and for the near future.

Got a tip? Send us an email securely via Protos Leaks. For more informed news, follow us on X, Bluesky, and Google News, or subscribe to our YouTube channel.

Source: https://protos.com/why-did-i-receive-a-trezor-phishing-email-from-substack/

Market Opportunity
Ambire Wallet Logo
Ambire Wallet Price(WALLET)
$0.00923
$0.00923$0.00923
+1.42%
USD
Ambire Wallet (WALLET) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact crypto.news@mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Franklin Templeton CEO Dismisses 50bps Rate Cut Ahead FOMC

Franklin Templeton CEO Dismisses 50bps Rate Cut Ahead FOMC

The post Franklin Templeton CEO Dismisses 50bps Rate Cut Ahead FOMC appeared on BitcoinEthereumNews.com. Franklin Templeton CEO Jenny Johnson has weighed in on whether the Federal Reserve should make a 25 basis points (bps) Fed rate cut or 50 bps cut. This comes ahead of the Fed decision today at today’s FOMC meeting, with the market pricing in a 25 bps cut. Bitcoin and the broader crypto market are currently trading flat ahead of the rate cut decision. Franklin Templeton CEO Weighs In On Potential FOMC Decision In a CNBC interview, Jenny Johnson said that she expects the Fed to make a 25 bps cut today instead of a 50 bps cut. She acknowledged the jobs data, which suggested that the labor market is weakening. However, she noted that this data is backward-looking, indicating that it doesn’t show the current state of the economy. She alluded to the wage growth, which she remarked is an indication of a robust labor market. She added that retail sales are up and that consumers are still spending, despite inflation being sticky at 3%, which makes a case for why the FOMC should opt against a 50-basis-point Fed rate cut. In line with this, the Franklin Templeton CEO said that she would go with a 25 bps rate cut if she were Jerome Powell. She remarked that the Fed still has the October and December FOMC meetings to make further cuts if the incoming data warrants it. Johnson also asserted that the data show a robust economy. However, she noted that there can’t be an argument for no Fed rate cut since Powell already signaled at Jackson Hole that they were likely to lower interest rates at this meeting due to concerns over a weakening labor market. Notably, her comment comes as experts argue for both sides on why the Fed should make a 25 bps cut or…
Share
BitcoinEthereumNews2025/09/18 00:36
Strategy leans on STRC to accelerate Bitcoin buying in 2026

Strategy leans on STRC to accelerate Bitcoin buying in 2026

The post Strategy leans on STRC to accelerate Bitcoin buying in 2026 appeared on BitcoinEthereumNews.com. Strategy has found a new gear in its Bitcoin accumulation
Share
BitcoinEthereumNews2026/03/11 03:18
Senator Alsobrooks warns that the CLARITY Act middle ground will leave everyone "a little bit unhappy"

Senator Alsobrooks warns that the CLARITY Act middle ground will leave everyone "a little bit unhappy"

Speaking at the American Bankers Association summit in Washington, US Senator from Maryland, Angela Alsobrooks, spoke bluntly to a room full of community bankers
Share
Cryptopolitan2026/03/11 03:25