Trezor: 67,000 U.S. Customers Exposed Due to ShipMonk Data Breach
Trezor confirmed that a data breach at its shipping provider, ShipMonk, exposed personal information of 67,000 American customers, including names, emails, phone numbers, addresses, and order details. This exposure increases the risk of phishing and social engineering attacks targeting hardware wallet users, according to CoinTelegraph.
Trezor Confirms Exposure of an Additional 67,000 U.S. Customers
The hardware wallet manufacturer Trezor announced on X that an additional 67,000 American users were affected by a data breach at its shipping provider, ShipMonk (CoinTelegraph). The impacted customers placed their orders between November 2019 and August 2021, during which their personal information was improperly retained. Trezor specified that the exposed data includes full names, email addresses, phone numbers, delivery addresses, and order specifics. This update expands the initial estimate of 14,000 victims reported in August, highlighting the severity of the issue (CoinTelegraph).
Nature and Scope of Compromised Data
The leaked information encompasses the full customer profile, from identity to contact details, including logistical shipment specifics. This granularity allows malicious actors to reconstruct a comprehensive target profile, facilitating highly personalized phishing campaigns. Trezor emphasized that while its own systems were not infiltrated, the compromise of the shipping provider creates a significant indirect attack vector (CoinTelegraph). The inclusion of order details, such as hardware wallet models purchased, increases the risk of attempts to obtain users' seed phrases through impersonation.
Trezor attributed the breach to ShipMonk, which failed to remove customer files despite written assurances from Trezor. The provider retained the information beyond the contractual period, creating an exploitable vulnerability for cybercriminals (CoinTelegraph). This negligence contradicts the confidentiality commitments Trezor had secured, highlighting the risks associated with supply chain vulnerabilities in the digital asset sector. In response, Trezor reiterated that its servers remain intact and that it is working with ShipMonk to secure residual data.
Phishing Risks and Impact on Digital Assets
Cybercriminals can exploit the exposed information to launch phishing attacks by impersonating Trezor support, seeking to obtain seed phrases that grant access to wallets. Such deception requires no technical exploit in the wallet's code, only the ability to convince the victim to disclose their cryptographic secret. Trezor warned users to verify unsolicited emails or calls through official channels (CoinTelegraph). The risk is heightened by the perception that hardware wallets are the final line of defense, creating a false sense of security among crypto-asset holders.
According to blockchain security firm Hacken, phishing scams generated $306 million in losses in the first quarter of 2026, representing 63% of the $482 million lost in the sector (CoinTelegraph). This proportion underscores that phishing remains the most lucrative method for malicious actors, surpassing code-based vulnerabilities. A notable incident in July saw an investor lose nearly $1 million after approving a malicious token transaction on the Ethereum blockchain, illustrating the financial impact of such fraud. These figures highlight that even indirect data compromises can quickly translate into substantial monetary losses.
Security Perspectives and Expected Measures
Trezor urges customers to remain vigilant, verify all communications, and never disclose seed phrases, even to purported official contacts (CoinTelegraph). While no new security protocols have been announced yet, the company indicated it will strengthen contractual requirements with third-party providers to prevent recurrence. This situation emphasizes the need for crypto-market actors to reassess their supply chain dependencies, a factor often neglected in asset protection strategies. For French investors, the lesson is clear: crypto-asset security depends equally on technical solution robustness and external partner rigor, a point to keep in mind for secure trading practices.