
Trezor warns 13,689 customers after a breach at shipping provider ShipMonk exposed names, email addresses, phone numbers, and shipping addresses. Phishing risk is the main concern.
Trezor, the hardware wallet manufacturer, told customers on August 13 that a breach at its shipping provider ShipMonk exposed personal data for roughly 13,689 people who placed orders in the three months before August 8, 2026. ShipMonk alerted Trezor on August 10 that an unauthorized party had gained access to its systems.
Of the affected group, 11,742 customers had their full names, email addresses, phone numbers, and shipping addresses leaked. Trezor posted the disclosure on X the same day.
"Unfortunately, one of our shipping providers has experienced a data breach that exposed sensitive order data," Trezor wrote. "This affects new customers in the US, UK, Sweden, Colombia, Brazil, Italy, and Portugal who received an order within the 90 days prior to August 8th, 2026."
The incident represents the first time Trezor has had customer phone numbers and physical addresses exposed since the company launched in 2013. Trezor emphasized that its own systems and hardware wallets were not compromised. The warning centered on phishing risk.
"Our systems and devices remain secure, but affected customers could experience an increase in phishing attempts," the company said. "NEVER enter your wallet backup on a website or share it with anyone, and only check for updates on official Trezor channels."
Trezor’s 90-day data retention policy limited the scope. The policy requires fulfillment partners to delete or anonymize customer information after three months, so older orders were not in ShipMonk’s database at the time of the breach.
Trezor said it is working with ShipMonk to determine exactly what data was accessed and how. ShipMonk has secured the affected systems and added additional security measures, according to Trezor.
For hardware wallet users, the exposure of shipping addresses and phone numbers opens a new vector for social engineering. Attackers who pair the leaked order details with a spoofed Trezor support call or a fake firmware update email could make phishing attempts harder to spot. Trezor has previously warned users never to share seed phrases, and this breach raises the stakes for that advice.
The breach did not extend to payment card data or wallet credentials, Trezor said. The company did not disclose how long the unauthorized access lasted or whether law enforcement has been notified.
Drafted by a large language model from the source reporting linked above, then screened by automated publishing checks. It is not read by a journalist before publication. Some articles cite our Alpha Score. Verify prices and figures against the original source. Educational coverage, not personalized advice.