OneKey responds to reports of users receiving abnormal verification code emails: the attacker bulk-triggered them; safety restrictions have been implemented
Wu Shuo learned that OneKey stated in a post that recently a small number of users received OneKey ID verification code emails without having actively logged in. After investigation, the attackers used lists of leaked email addresses from other platforms or public email lists to bulk initiate login and registration requests, triggering the sending of verification code emails. OneKey said that it has implemented safety restriction measures on the sending of verification codes. Receiving a verification code does not mean the account has been stolen, and the requester will not receive the verification code as a result. If users have not taken any action, they should ignore the related emails and never disclose the verification codes to anyone.
Wu Shuo learned that OneKey stated in a post that recently a small number of users received OneKey ID verification code emails without having actively logged in. After investigation, the attackers used lists of leaked email addresses from other platforms or public email lists to bulk initiate login and registration requests, triggering the sending of verification code emails. OneKey said that it has implemented safety restriction measures on the sending of verification codes. Receiving a verification code does not mean the account has been stolen, and the requester will not receive the verification code as a result. If users have not taken any action, they should ignore the related emails and never disclose the verification codes to anyone.
