A third-party shipping partner breach exposed personal details of Trezor hardware wallet buyers, though no private keys were compromised.
Trezor revealed a data breach at ShipMonk, its fulfillment partner, exposing personal information of 13,689 customers. Full names, phone numbers, email addresses, and shipping addresses were taken for 11,742 individuals, while 1,947 had partial data exposed.
The breach affected customers who placed orders between May 10 and August 8, shipped to the U.S., U.K., Sweden, Colombia, Brazil, Italy, or Portugal. Trezor confirmed its systems and customer private keys remained secure, attributing the limited scope to partner data policies.
No immediate market reaction was reported, as the incident involved a third-party vendor rather than Trezor’s core security infrastructure.