Trezor Announces Expansion of Data Breach Impacting Approximately 67,000 U.S. Customers
Trezor, a leading cryptocurrency hardware wallet provider, announced on September 4 that approximately 67,000 U.S. customers were affected by a data breach involving its shipping partner, ShipMonk.
Two days ago, we received an update from our shipping partner, ShipMonk. It is unfortunate to inform you that more customers have been affected by the recent data leak than initially anticipated. Customers who placed orders between November 2019 and August 2021 are impacted...
Initially, the damage was thought to be limited, but it was revealed that past order data had not been deleted as expected, leading to an expansion of the affected customer base to over 80,000.
Past Data That Should Have Been Deleted Remains, Expanding the Scope of Damage
The issue became apparent in August when unauthorized access to ShipMonk's system resulted in the leak of Trezor customer personal information. Initially, Trezor reported that 13,689 customers were affected and explained that the damage was limited due to operations that delete or anonymize data within 90 days of shipping.
However, on September 2, additional information from ShipMonk revealed that order data from November 2019 to August 2021 had also been leaked. This resulted in approximately 67,000 new U.S. customers being affected, with names, email addresses, phone numbers, shipping addresses, and order numbers being compromised.
Trezor stated that it had repeatedly confirmed in writing that old order data was deleted based on its contract and data policy with ShipMonk. Nevertheless, the company expressed strong disappointment that data had actually remained.
The background to the significant expansion of the damage lies in the fact that past order data, which had been confirmed as deleted, was actually left in ShipMonk's system.
Wallets Are Safe, Caution Against Phishing and Impersonation
On the other hand, Trezor emphasized that the breach occurred on ShipMonk's system and that its own systems and Trezor devices were not affected.
However, the company warned that leaked names, addresses, and contact information could be used for phishing scams and social engineering. Attackers may impersonate Trezor, financial institutions, or cryptocurrency exchanges, reaching out via email, phone, or mail.
Trezor has already notified affected customers directly via email, urging them not to enter their wallet backup information on websites or share it with third parties. The company also cautioned about potential physical security risks arising from the leaked address information.
In response to this incident, Trezor plans to conduct additional audits of its shipping partners and implement anonymous shipping to reduce the sharing of customer information.
-- Price
This content is provided for general informational purposes only and doesn't constitute financial, investment, legal, or tax advice. Any events, rewards, online promotions, or related information mentioned herein should not be considered a recommendation, solicitation, or invitation to purchase, sell, trade, or otherwise deal in any crypto assets. Crypto assets are highly volatile and may result in loss. The availability of WEEX services, products, and related events may vary by region. You are responsible for ensuring that your participation is in accordance with applicable local laws and regulations.
You may also like

OpenAI Fires Former Employee Tomek Korbak Due to Communication with METR

Xi Jinping Targets the World's Richest Chinese with a Global Campaign to Increase Taxes

OpenAI Proposes Frontier AI Training 'Safety Case' Framework, Recommends Completing Safety Documentation Before Launching

Decrypt Media and FOMO Hour’s Thought Leader Farokh Sarmad to Take Main Stage at NEXTPredict NY Conference

Bitcoin Developers Concerned About Mining Subsidy

The Three Words and One Answer from Yesterday's Press Conference: Wall Street is Pondering 'Waller's Approach'

Anthropic Introduces Context Lock for Claude to Prevent Model Distillation

New iPhone spyware can hunt for crypto wallets and extract their data every 15 seconds

Ethereum: Adam Back accuses its creators of ignoring his warnings

What happens when crypto trades stocks while Wall Street sleeps?

New York Permanently Bans Celsius Founder from Cryptocurrency Industry in $35 Million Fraud Settlement

Ledger, Coldcard... Are hardware wallets still safe in 2026?

Experts Assess the Risk of Hacking Crypto Wallets Using AI

Coin Crime: The Dark Knight of the Crypto World Fighting Against Criminal Organizations

Nasdaq: Tokenization Could Unlock Tens of Billions of Dollars in Collateral

Weekly: Over $1 Trillion with Elon Musk, USDC in Samsung, $1 Billion Investigation into Chinese Syndicate, and AI Threat to Cryptography

Bitwise Sees Bitcoin Reaching Gold Valuation

Gold: Central Banks Buy 39 Tons in August, China Leads

Bubblemaps accuses Pump.fun influencer Ethan of $125K scam

Billions of Dollars in Crypto Assets Exposed to Risk: Who Will Insure Them?

Robinhood Chain transactions drop 42%: What’s next?

Bitcoin companies are learning that holding forever takes cash

Trading Boom and Industrial Constraints: Why is South Korea's Crypto Industry in a Structural Dilemma?

Fact or Fiction: Bitcoin Always Protects Your Wealth During Global Unrest

Fugitive since 2022 for bitcoin scams in Salta, arrested in Australia and will be extradited next week

Kaia vs TON: Comparing Messenger Blockchains in 2026

Analysis of STRK Surge by 唐华斑竹

How Pearl, an L1 Blockchain, Prices GPU Computing Power with a Surge of Over 7 Times from a Low Point?

Post-World Cup Analysis of the Prediction Market Industry Landscape and Trends




