Brevo login flaw enabled phishing email targeting 347K Trezor subscribers
The platform did not specify whether the categories overlapped. The attacker created a Brevo account, enabled single sign-on and invited legitimate Brevo users into the configuration.
