The company disclosed that the personal information of nearly 14,000 clients was affected by unauthorized access to the third-party performing partner ' s ShipMonk system. The incident did not affect Trezor ' s own infrastructure or the security of hardware wallets, but the users were at higher risk of fishing and fraud.
The leak covers the telephone and the address of the receipt.
Térezor states that the names, e-mails, telephone numbers and receiving addresses of 11,742 clients were leaked, while the names, cities and mailboxes of 1,947 clients were affected. The affected users are located in the United States, the United Kingdom, Sweden, Colombia, Brazil, Italy and Portugal.
According to the company, all affected customers were notified by e-mail. Users who did not receive notification were not affected by the incident. Clients who pass through Amazon are not affected, as this part of the order is performed by another partner.
The company claims that the wallet and internal system were not broken.
Trezor states that the incident occurred on the side of ShipMonk, that the company ' s own system was not invaded and that the hardware wallet equipment remained secure. To date, the company has not discovered that the leaking data was made public, sold or disseminated, nor has it been established that fraud or attacks were directly related to the incident.
However, the company cautions that the risk arises mainly from subsequent impersonations. The attackers may use leaked mailboxes, telephones and addresses to disguise themselves as banks, encrypted trading platforms or Trezor itself, contacting users and committing fraud.
For the first time in history, we leaked receipt information.
Térezor states that this was the first time in its 13-year history that a client ' s telephone number and receiving address had been leaked. Previously, in January 2024, Satoshi Labs, behind Trezor, disclosed that security incidents had occurred in the third-party passenger service portal, affecting some 66,000 people; in April 2022, a further 106,856 Trezor customer data had been leaked.
Hardware wallet manufacturers face long-term follow-up risks from third-party data leakage. Such logistics and contact information, if diverted to the black market, are often used repeatedly for such schemes as fishing, extortion and the sending of counterfeit equipment. In contrast, Trezor stressed that its internal solidware and equipment end-of-the-way encryption mechanism had not to date led to the theft of user funds as a result of a remote attack.
Additional information:Trezor states that there is currently no evidence that this leak has been published, shared or placed for sale.
