Trezor’s head of security, Jan Komarek, is warning about rising phishing attacks and AI-assisted social engineering targeting crypto users. In August 2026, a data breach at logistics partner ShipMonk exposed the information of 13,689 customers, including 11,742 with complete data such as names and contact details. Cybersecurity firm Rapid7 documented « Operation ASTERIX, » an operation using AI to create fake applications mimicking Trezor’s ecosystem to steal users’ recovery phrases via Telegram. The Trezor device itself was not compromised in any of these incidents. Trezor reiterates that it will never ask users to disclose their recovery phrase over the phone or online.
Source: Read the original article

