< Back to all clusters
[TECHNOLOGY] · United States, United Kingdom, Sweden, Colombia, Brazil · 26 sources

started · updated

Trezor customer data exposed in ShipMonk shipping breach

Trezor, a hardware wallet manufacturer, has reported a data breach involving its third-party shipping partner, ShipMonk. An unauthorized actor gained access to ShipMonk's systems, exposing the personal information of approximately 13,689 customers who received orders between May 10 and August 8, 2026.

Of the affected individuals, 11,742 had their full names, physical addresses, phone numbers, and email addresses leaked. An additional 1,947 customers experienced partial exposure, including their names, cities, and email addresses. The breach impacted users across seven countries: the United States, United Kingdom, Sweden, Colombia, Brazil, Italy, and Portugal.

Trezor confirmed that its own internal infrastructure, hardware devices, private keys, and wallet backups remain secure and were not compromised. The company noted that the scope of the leak was limited by its 90-day data retention policy.

Due to the exposure of contact and shipping details, Trezor warned customers of an increased risk of highly targeted phishing attacks via email, phone, or physical mail. To mitigate future risks, Trezor is developing an anonymous delivery option, which it aims to launch in the EU by September 2026 and in the US by the end of the year.

Entities

ShipMonk · Sweden · Trezor · United Kingdom · United States

Claims

What the coverage asserts, and how well corroborated each claim is across sources.

Sources

about 18 hours ago
about 21 hours ago
about 14 hours ago
about 14 hours ago