{"id":51183,"date":"2023-05-16T19:11:15","date_gmt":"2023-05-16T19:11:15","guid":{"rendered":"http:\/\/egrowonline.com\/?p=51183"},"modified":"2023-05-16T19:11:15","modified_gmt":"2023-05-16T19:11:15","slug":"trusted-marketplace-sold-fake-trezor-wallets-stealing-crypto-kaspersky","status":"publish","type":"post","link":"http:\/\/egrowonline.com\/?p=51183","title":{"rendered":"\u2018Trusted\u2019 marketplace sold fake Trezor wallets stealing crypto: Kaspersky"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div data-v-2f4c2c70=\"\">\n<p>Amid the rising popularity of <a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/top-people-in-crypto-and-blockchain-2023\/hardware-wallets\" rel=\"noopener\">hardware cryptocurrency wallets<\/a>, the Russian cybersecurity firm Kaspersky has reminded users about the importance of using authentic crypto devices.<\/p>\n<p>Kaspersky cyber incident expert Stanislav Golovanov on May 10 <a target=\"_blank\" href=\"https:\/\/www.kaspersky.com\/blog\/fake-trezor-hardware-crypto-wallet\/48155\/\" rel=\"noopener nofollow\">reported<\/a> on an issue with fake hardware wallets impersonating major wallet firm Trezor. The incident occured in March 2022.<\/p>\n<p>According to the blog post, the fake\u00a0Trezor wallet allowed fraudsters to steal Bitcoin (<a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/bitcoin-price\" rel=\"noopener\">BTC<\/a>) via a replaced microcontroller, which enabled attackers to take over control of the <a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/what-happens-if-you-lose-or-break-your-hardware-crypto-wallet\" rel=\"noopener\">user\u2019s private keys<\/a>.<\/p>\n<p>The victim reportedly purchased a tampered hardware wallet that posed as Trezor\u2019s advanced crypto wallet Trezor Model T. The fake wallet appeared to be exactly the same as a genuine Trezor Model T wallet, providing a standard set of wallet functions.<\/p>\n<p>\u201cWhen handling the wallet, nothing felt suspicious either: all the functions worked as they should, and the user interface was no different from the original one,\u201d Golovanov wrote.<\/p>\n<p>The fake wallet was tampered from the inside, though. According to the Kaspersky team, attackers managed to access users\u2019 crypto assets by replacing the inner firmware. \u201cThe actual mechanism of the theft remains unclear,\u201d Golovanov noted, adding that the issue was caused by a \u201ctypical supply chain attack.\u201d<\/p>\n<figure><img decoding=\"async\" src=\"https:\/\/s3.cointelegraph.com\/uploads\/2023-05\/101fbaf3-3404-46ac-a70d-5bb97681f619.jpeg\" \/><figcaption style=\"text-align: center\"><em>Genuine Trezor Model T (on the left) wallet versus a fake one (on the right). Source: Kaspersky<\/em><\/figcaption><\/figure>\n<p>To prevent supply chain attacks, Kaspersky\u2019s cybersecurity experts advised users to only buy hardware wallets directly from the official vendor. The firm noted that the victim bought the fake Trezor wallet through a \u201ctrusted seller through a popular classifieds website.\u201d<\/p>\n<p>Golovanov declined to specify the name of seller to Cointelegraph, but mentioned that the purchase was made through a &#8220;popular marketplace.&#8221;<\/p>\n<p>&#8220;This is an advertisement website with sections devoted to general goods for sale, jobs, real estate, cars for sale, and services. Such marketplaces are known to have fraudulent sellers who resell fake or infected devices,&#8221; the cybersecurity expert noted.<\/p>\n<p>The issue described by Kaspersky isn\u2019t something new for the crypto community. Trezor publicly <a target=\"_blank\" href=\"https:\/\/blog.trezor.io\/stay-safe-shopping-for-hardware-wallets-543f144e3d24\" rel=\"noopener nofollow\">addressed<\/a>\u00a0the security incident involving tampered Trezor Model T devices in May 2022.<\/p>\n<p>According to Trezor\u2019s blog post, the described issue was mostly present on Trezor Model T wallets, with all devices being obtained from vendors on the Russian market. The firm wrote:<\/p>\n<blockquote><p>\u201cSome internal components had been replaced, allowing the malicious actors to spoof the device\u2019s behavior and make its security features redundant.\u201d<\/p><\/blockquote>\n<p>According to Trezor\u2019s official website, the firm currently <a target=\"_blank\" href=\"https:\/\/trezor.io\/resellers\" rel=\"noopener nofollow\">has<\/a> about 50 officially authorized resellers across the world. The sellers are located in many jurisdictions, including Canada, the United States, Singapore, India, Israel, Belarus, Ukraine and others.<\/p>\n<p><strong><em>Related: <\/em><\/strong><a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/to-catch-a-scammer-kraken-builds-fake-crypto-account-to-bait-fraudsters\" rel=\"noopener\"><strong><em>To catch a scammer: Kraken builds fake crypto account to \u2018bait\u2019 fraudsters<\/em><\/strong><\/a><\/p>\n<p>In addition to security measures related to the supply chain, Trezor also <a target=\"_blank\" href=\"https:\/\/trezor.io\/learn\/a\/authenticate-trezor-model-t\" rel=\"noopener nofollow\">advises<\/a> its users to follow steps to authenticate their Trezor wallets, <a target=\"_blank\" href=\"https:\/\/trezor.io\/learn\/a\/authenticate-trezor-model-one\" rel=\"noopener nofollow\">providing<\/a> official guides for Model One and Model T.<\/p>\n<p>Trezor\u2019s software also signals any potential firmware issues by alerting the issue on the app screen.<\/p>\n<figure><img decoding=\"async\" src=\"https:\/\/s3.cointelegraph.com\/uploads\/2023-05\/13937404-f9c5-4c2b-9ca2-0c8969c60afc.png\" \/><figcaption style=\"text-align: center\"><em>Warning on unofficial firmware on Trezor Suite. Source: Trezor<\/em><\/figcaption><\/figure>\n<p>\u201cWe would like to point out that we have a warning system in the Trezor Suite that alerts users if their device uses an unofficial firmware,\u201d a spokesperson for Trezor told Cointelegraph.<\/p>\n<p><strong><em>Magazine<\/em><\/strong>: <a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/magazine\/3-4-billion-bitcoin-popcorn-tin-silk-road-hacker\/\" rel=\"noopener\"><strong><em>$3.4B of Bitcoin in a popcorn tin \u2014 The Silk Road hacker\u2019s story<\/em><\/strong><\/a><\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/cointelegraph.com\/news\/trusted-seller-vends-fake-trezor-wallets-stealing-crypto-kaspersky\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Amid the rising popularity of hardware cryptocurrency wallets, the Russian cybersecurity firm Kaspersky has reminded users about the importance of using authentic crypto devices. Kaspersky cyber incident expert Stanislav Golovanov on May 10 reported on an issue with fake hardware wallets impersonating major wallet firm Trezor. The incident occured in March 2022. According to the [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":51184,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","enabled":false}}},"categories":[37],"tags":[62,3711,740,308,6066,2245,4366,5627,833],"class_list":["post-51183","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-bitcoin","tag-crypto","tag-fake","tag-kaspersky","tag-marketplace","tag-sold","tag-stealing","tag-trezor","tag-trusted","tag-wallets"],"jetpack_publicize_connections":[],"jetpack_sharing_enabled":true,"jetpack_featured_media_url":"http:\/\/egrowonline.com\/wp-content\/uploads\/2023\/05\/d17af245-e5a2-49fa-ad58-9f5bf687e63b.jpg","_links":{"self":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts\/51183","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=51183"}],"version-history":[{"count":1,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts\/51183\/revisions"}],"predecessor-version":[{"id":51185,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts\/51183\/revisions\/51185"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/media\/51184"}],"wp:attachment":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=51183"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=51183"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=51183"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}