Trezor Expands Data Breach Scope to 67,000 US Customers

iconBitcoinsistemi
Share
AI summary iconSummary
Trezor has updated its security breach report, revealing that 67,000 more US customers were affected due to a logistics provider incident. The exposed data includes names, emails, phone numbers, and order details from 2019 to 2021. The company confirmed no internal systems were compromised and warned of potential phishing attacks. The incident highlights the risks tied to third-party data handling, especially amid rising inflation data and increased digital asset adoption. All impacted users were notified directly.

Hardware wallet manufacturer Trezor has announced that the data breach at logistics provider ShipMonk is far more extensive than initially reported. The company revealed that the personal and order information of an additional 67,000 US customers has been exposed.

According to Trezor, the newly identified customers consist of users who placed orders between November 2019 and August 2021. The exposed data includes customers’ first and last names, email addresses, phone numbers, delivery addresses, and order numbers.

The company stated that all affected customers were sent direct emails, and users who did not receive a notification were not affected by the breach.

Trezor stated that during its period of working with ShipMonk, it repeatedly requested the deletion of the customer data in question and received written confirmation that the data had been deleted.

The company stated that this process should have been carried out in accordance with contracts, data policies, and previous correspondence between the parties, and expressed great disappointment that ShipMonk continued to retain the data in their systems despite the confirmations provided.

The latest announcement significantly expands the scope of the data breach previously reported by Trezor. The initial announcement stated that the data of 11,742 customers who placed orders in the 90-day period prior to August 8, 2026, was fully exposed, while the data of 1,947 customers was partially exposed.

Trezor added that despite the new development, their own systems were not breached and that they maintained the security of users’ hardware wallets.

However, the company warned users that the leaked personal information could be used in fake emails, phone calls, fraudulent letters, and social engineering attacks. Risks to physical security due to the leakage of physical addresses were also highlighted.

Trezor reiterated that users should not share their wallet backups or recovery keywords with anyone and should not visit any websites to do so.

*This is not investment advice.

Continue Reading: The Second Wave Hack of a Popular Bitcoin Wallet—Even Bigger Than the Last One

Disclaimer: The information on this page may have been obtained from third parties and does not necessarily reflect the views or opinions of KuCoin. This content is provided for general informational purposes only, without any representation or warranty of any kind, nor shall it be construed as financial or investment advice. KuCoin shall not be liable for any errors or omissions, or for any outcomes resulting from the use of this information. Investments in digital assets can be risky. Please carefully evaluate the risks of a product and your risk tolerance based on your own financial circumstances. For more information, please refer to our Terms of Use and Risk Disclosure.