Solana Mobile said attackers gained unauthorized access to its account with email marketing provider Brevo in a security incident that may have exposed customer information.
The company said it disabled the affected Brevo account after discovering the breach and is now working with the provider to determine what data may have been accessed. Solana Mobile added that it has found no evidence so far that emails were sent from its account, but the review is still underway.
What Solana Mobile disclosed
The incident was tied to a broader breach at Brevo, where attackers were able to access customer accounts. Solana Mobile said the exposure involved its marketing account at the provider rather than a direct compromise of users’ crypto wallets.
In its public update, the company emphasized that the investigation is continuing and that the scope of any exposed customer information has not yet been fully determined. Its immediate response was to shut down the Brevo account involved.
How the Brevo breach unfolded
According to the information cited by Solana Mobile, the attackers exploited a flaw in Brevo’s SAML single sign-on system. Brevo said the intrusion affected 138 customer accounts before it was blocked.
The company also said contact lists were exported from 43 of those accounts, while six accounts were used to send phishing emails. In total, information linked to about 347,000 subscribers was affected by the breach.
Phishing risk rather than wallet access
The reported attacks centered on misuse of contact data. Phishing campaigns linked to the breach used malicious links intended to steal login credentials from recipients.
The source article said the attackers did not gain direct access to crypto wallets through the Brevo incident. Instead, the risk came from using subscriber information from affected accounts to target people with deceptive emails. Other companies were also reported to have experienced attacks involving Brevo accounts.
Company warning and next steps
Solana Mobile urged users to stay alert for suspicious messages. The company said it will never ask for seed phrases, private keys, or wallet recovery details.
For now, the main confirmed next step is the continuing review between Solana Mobile and Brevo to establish exactly what data, if any, was accessed through the compromised account. The company’s statement that it has seen no evidence of emails being sent from its account remains unchanged at this stage.
Source: Coin Edition