A SAML SSO vulnerability at Brevo, the email marketing service formerly known as Sendinblue, allowed attackers to access 138 customer accounts between September 9 and 10, 2026. Six of these accounts were used to send phishing emails and 43 had their contact lists exported. Trezor disclosed that phishing emails reached approximately 347,000 of its newsletter subscribers, while BitBox and CoinTracking also confirmed their accounts were exploited. The phishing campaigns impersonated trusted brands by creating urgency around fabricated security issues. Solana Mobile issued a public warning recommending users to remain skeptical of unsolicited emails and never share seed phrases over email.
Source: Read the original article

