Close Menu
InvesthenaInvesthena
    What's Hot

    Frozen Savings Meet Bitcoin’s Explosive Rally

    September 13, 2026

    Lifesaving Lincoln Laboratory device wins 2026 Excellence in Technology Transfer Award | MIT News

    September 13, 2026

    Your TFSA Owns 3 ETFs: It May Still Be 1 Big Technology Bet

    September 13, 2026
    InvesthenaInvesthena
    • Business
    • Economy
    • Investing
    • Stocks
    • Best Savings Accounts
    InvesthenaInvesthena
    Home»Investing»Trezor breach exposes another 67,000 customers
    Investing

    Trezor breach exposes another 67,000 customers

    September 6, 2026
    Trezor breach exposes another 67,000 customers
    Share
    Facebook Twitter LinkedIn Pinterest Email


    Hardware wallet maker Trezor says a breach at logistics provider ShipMonk exposed contact and order data for another approximately 67,000 U.S. customers after years-old records remained in the vendor’s systems despite written deletion assurances.

    The Sept. 4 update expands an incident Trezor initially said affected 13,689 people. The two disclosed groups imply a total of roughly 80,689, although Trezor has not issued a single combined figure or published underlying data showing whether the groups overlap. Its use of “another” indicates that it considers the new records additional to the original cohort.

    Infographic showing Trezor's Aug. 13 disclosure of 13,689 affected customers, another approximately 67,000 disclosed on Sept. 4, the retained 2019 to 2021 order period, exposed contact and shipping fields, and systems and wallet secrets not compromised.

    The newly disclosed records cover U.S. orders from November 2019 through August 2021 and include names, email addresses, phone numbers, shipping addresses and order numbers. The data can connect an identifiable person and physical location with a hardware-wallet purchase, creating risks beyond a conventional email leak.

    Old data outlived a 90-day policy

    When Trezor first disclosed the breach on Aug. 13, it counted 11,742 customers with full exposure and 1,947 with partial exposure. Trezor’s Aug. 13 account said older order data had already been deleted. An Aug. 14 clarification acknowledged that some partially exposed records included older orders.

    The Sept. 4 update reverses that understanding. Trezor said it repeatedly requested and received written assurances that ShipMonk had deleted the data, yet records from 2019 to 2021 remained. Trezor’s published delivery-data policy says customer details should be deleted from both its own and its fulfillment partner’s systems after 90 days, with exceptions for ongoing order issues. The assurance letters and their dates have not been made public.

    The Daily Brief

    The signal, before the noise.

    Start your day with the crypto stories moving markets, decoded by CryptoSlate’s editors.

    One email. Everything that matters.

    Free to join. Unsubscribe any time.

    Whoops, looks like there was a problem. Please try again.

    You’re on the list. Your next Daily Brief is on its way.

    BleepingComputer reported that a ShipMonk notification attributed the original unauthorized access to a vulnerability in analytics platform Metabase. Metabase said the August zero-day could create a session tied to an administrator account and allow bulk table downloads. Once the provider incident was reassessed, the retained historical data expanded the number of Trezor customers known to be exposed.

    The breach did not reach Trezor’s wallet systems. The company said its systems, products and services were not compromised and its devices remained secure. The listed exposed fields were contact and order data, not recovery seeds, private keys or wallet funds.

    The risk instead sits around the wallet. Trezor warned that the information could support convincing scam emails, fraudulent calls or letters and potential physical targeting. Its Sept. 4 update did not identify a confirmed downstream attack caused by this dataset, so those outcomes remain risks rather than documented consequences.

    Trezor said it emailed every newly affected customer directly and that anyone who did not receive its incident notice was not affected. It urged customers never to share a wallet backup or enter it on a website.

    For hardware-wallet owners, the episode shows that protecting keys does not erase the purchase trail created by fulfillment. A deletion policy offers little protection if a vendor’s compliance is not verified.



    Source link

    Previous Article3 Reasons Why Dogecoin (DOGE) Is Ready for a Breakout
    Next Article Why Victoria’s Secret Stock Plummeted This Week

    Related Posts

    Frozen Savings Meet Bitcoin’s Explosive Rally

    September 13, 2026

    Revolut Exposed Passports and Bitcoin Records After Fake Government Request: Report

    September 13, 2026

    Nasdaq market surveillance cannot settle tokenized rules

    September 12, 2026

      Subscribe to Updates

      Subscribe to our newsletter for early access to new products, exclusive deals, and exciting updates. Don't miss out! Our subscribers are always the first to hear about limited-time offers and new arrivals. Plus, you'll get sneak peeks and bonus content that adds value to your experience.

      By opting in you agree to receive emails from us and our affiliates. Your information is secure and your privacy is protected.

      Top Posts

      Frozen Savings Meet Bitcoin’s Explosive Rally

      September 13, 2026

      Revolut Exposed Passports and Bitcoin Records After Fake Government Request: Report

      September 13, 2026

      Nasdaq market surveillance cannot settle tokenized rules

      September 12, 2026

      Investhena is a digital news blog covering the latest updates in crypto, global economy, and investing. We focus on clear, timely insights to help readers stay informed and understand market trends without unnecessary complexity.

      Letest News

      Frozen Savings Meet Bitcoin’s Explosive Rally

      September 13, 2026

      Lifesaving Lincoln Laboratory device wins 2026 Excellence in Technology Transfer Award | MIT News

      September 13, 2026
      LEGAL INFORMATION
      • Contact us
      • Terms & Conditions
      • Privacy Policy
      Copyright © 2026 investhena.com | All Rights Reserved

      Type above and press Enter to search. Press Esc to cancel.