🚨 Update on the recent phishing emails 🚨
Brevo, the email service provider used by CoinTracking, has now provided further information about its security incident that led to the phishing emails sent to CoinTracking users.
The security vulnerability did not affect the CoinTracking platform. It occurred at our external third-party provider Brevo.
Brevo has confirmed that an attacker exploited a vulnerability related to SAML SSO to gain access to customer accounts.
The entry point used by the attacker was closed on September 10, all active sessions were reset, and Brevo reports no further attacker activity since then.
The phishing emails were sent through legitimate infrastructure. This is why they passed standard email authentication checks and appeared genuine.
Brevo has since disabled all links contained in these emails. As a precaution, please continue not to click on any links in the phishing email.
We are still waiting for further information specific to CoinTracking’s Brevo account and will update you as soon as we have it.