Trezor Data Breach Exposes Personal Details of 67,000 More US Customers
Cryptocurrency trading is speculative and your capital is at risk when you trade. We may earn affiliate commissions from some of the products on this page - at no extra cost to you.

Highlights:
- Trezor says ShipMonk breach exposed another 67,000 US customers, including names, emails, phone numbers and addresses.
- The newly affected customers placed orders between November 2019 and August 2021.
- Trezor says its systems and devices remain secure but warns affected users about phishing and physical risks.
Trezor, one of the world’s best-known hardware crypto wallet makers, has revealed that a data breach at its shipping provider, ShipMonk, affected around 67,000 more customers in the United States than previously known. The newly identified exposure involves older customer orders and includes names, email addresses, phone numbers, shipping addresses and order numbers.
Trezor announced the update on September 4 after ShipMonk informed the hardware wallet company two days earlier that the breach was larger than first reported. The newly affected customers placed orders between November 2019 and August 2021. The company said it contacted all customers in the newly identified group directly by email. Customers who did not receive a notification from Trezor are not affected, according to the company.
Two days ago, we received an update from our shipping provider, ShipMonk. We're deeply saddened to share the news that the recent data breach affects more customers than originally thought.
Another 67,000 customers from the US who ordered between November 2019 and August 2021… https://t.co/yDQvTlAA2S
— Trezor (@Trezor) September 4, 2026
Trezor Says Older Customer Data Should Have Been Deleted
The latest findings have raised questions over why ShipMonk still held customer information from several years ago. Trezor said it had repeatedly asked ShipMonk to delete customer information under its agreed data policy. According to the company, ShipMonk also provided written confirmation that it had removed the information.
Trezor said it was “very disappointed” to discover that the data had remained in ShipMonk’s systems despite those assurances. The breach does not involve Trezor’s own systems or hardware wallets. Trezor said its devices remain secure, meaning the incident did not directly expose users’ crypto wallets or wallet backups.
However, leaked personal information could still create serious security risks for affected customers. Criminals could use names, phone numbers and home addresses to make phishing attempts appear more convincing. Trezor warned users to be careful with suspicious emails, phone calls and fraudulent letters. The company also said affected customers should consider possible physical security risks because shipping addresses were among the exposed information.
Breach Was Initially Thought to Affect Far Fewer Customers
Trezor first disclosed the ShipMonk breach on August 13. At the time, the company said 11,742 customers had suffered full exposure, including their names, emails, phone numbers and shipping addresses. Another 1,947 customers initially had partial information exposed. The earlier incident involved customers in the US, UK, Sweden, Colombia, Brazil, Italy and Portugal.
Trezor originally said its 90-day customer data retention policy had limited the breach. However, the discovery of customer records dating back to 2019 showed that some information had remained with ShipMonk much longer than expected.
Trezor Warns Customers About Phishing Attempts
While Trezor devices were not compromised, the company is urging affected customers to treat unexpected messages with caution. Users should never give their wallet backup, recovery phrase or seed phrase to anyone. Trezor also warned customers never to enter their wallet backup into a website, even if a message appears to come from the company.
Meanwhile, Trezor said it is working on an anonymous delivery option designed to reduce the amount of personal information customers need to expose when ordering hardware wallets. The company apologized to affected customers and said it is treating the incident seriously as it continues responding to the breach.
Best Crypto Exchange
- Over 90 top cryptos to trade
- Regulated by top-tier entities
- User-friendly trading app
- 30+ million users
eToro is a multi-asset investment platform. The value of your investments may go up or down. Your capital is at risk. Don’t invest unless you’re prepared to lose all the money you invest. This is a high-risk investment, and you should not expect to be protected if something goes wrong.







