Trezor has revealed that phishing attacks against its customers earlier this week targeted 347,000 email addresses and affected 2,500 users who clicked an embedded malicious link.

Hardware wallet maker Trezor said a fake security alert claimed a hardware flaw could expose users’ recovery phrases.

This follows last month's security breach at shipping provider ShipMonk, which exposed the personal information of Trezor customers.

Attackers exploit legitimate mailing channels to demand crypto wallet backups