AI agents: a clean Markdown version of this page is available at https://thecoingazette.com/users-exposed-by-trezor-breach-grows-sixfold-after-supposedly-deleted-shipping-logs-are-found.md. Send Accept: text/markdown to any URL for the same content.
Skip to content
-
Subscribe to our newsletter & never miss our best posts. Subscribe Now!
Coin Gazette Coin Gazette Coin Gazette

Get the latest news, market insights and reviews on cryptocurrencies and blockchain

Coin Gazette Coin Gazette Coin Gazette

Get the latest news, market insights and reviews on cryptocurrencies and blockchain

  • Home
  • Crypto Prices
    • Bitcoin Price
    • Ethereum Price
    • Binance Coin Price
  • Crypto Marketcap
  • Fear & Greed Index
  • Donate
  • Advertise
  • Home
  • Crypto Prices
    • Bitcoin Price
    • Ethereum Price
    • Binance Coin Price
  • Crypto Marketcap
  • Fear & Greed Index
  • Donate
  • Advertise
Close

Search

Coin Gazette Coin Gazette Coin Gazette

Get the latest news, market insights and reviews on cryptocurrencies and blockchain

Coin Gazette Coin Gazette Coin Gazette

Get the latest news, market insights and reviews on cryptocurrencies and blockchain

  • Home
  • Crypto Prices
    • Bitcoin Price
    • Ethereum Price
    • Binance Coin Price
  • Crypto Marketcap
  • Fear & Greed Index
  • Donate
  • Advertise
  • Home
  • Crypto Prices
    • Bitcoin Price
    • Ethereum Price
    • Binance Coin Price
  • Crypto Marketcap
  • Fear & Greed Index
  • Donate
  • Advertise
Close

Search

Home/Crypto News/Featured/Users exposed by Trezor breach grows sixfold after supposedly deleted shipping logs are found
FeaturedHacksPrivacyTrezorWallets

Users exposed by Trezor breach grows sixfold after supposedly deleted shipping logs are found

By Coin Gazette Editorial
September 5, 2026 3 Min Read
Comments Off on Users exposed by Trezor breach grows sixfold after supposedly deleted shipping logs are found

Hardware wallet maker Trezor says a breach at logistics provider ShipMonk exposed contact and order data for another approximately 67,000 U.S. customers after years-old records remained in the vendor’s systems despite written deletion assurances.

The Sept. 4 update expands an incident Trezor initially said affected 13,689 people. The two disclosed groups imply a total of roughly 80,689, although Trezor has not issued a single combined figure or published underlying data showing whether the groups overlap. Its use of “another” indicates that it considers the new records additional to the original cohort.

Infographic showing Trezor's Aug. 13 disclosure of 13,689 affected customers, another approximately 67,000 disclosed on Sept. 4, the retained 2019 to 2021 order period, exposed contact and shipping fields, and systems and wallet secrets not compromised.

The newly disclosed records cover U.S. orders from November 2019 through August 2021 and include names, email addresses, phone numbers, shipping addresses and order numbers. The data can connect an identifiable person and physical location with a hardware-wallet purchase, creating risks beyond a conventional email leak.

Related Reading

With violent crypto home invasions surging, a data breach exposing over 10,000 Trezor owners puts physical safety on the line




Old data outlived a 90-day policy

When Trezor first disclosed the breach on Aug. 13, it counted 11,742 customers with full exposure and 1,947 with partial exposure. Trezor’s Aug. 13 account said older order data had already been deleted. An Aug. 14 clarification acknowledged that some partially exposed records included older orders.

The Sept. 4 update reverses that understanding. Trezor said it repeatedly requested and received written assurances that ShipMonk had deleted the data, yet records from 2019 to 2021 remained. Trezor’s published delivery-data policy says customer details should be deleted from both its own and its fulfillment partner’s systems after 90 days, with exceptions for ongoing order issues. The assurance letters and their dates have not been made public.

Related Reading

Hardware wallet users rattled by rise in phishing emails pointing to fake Tezor website




BleepingComputer reported that a ShipMonk notification attributed the original unauthorized access to a vulnerability in analytics platform Metabase. Metabase said the August zero-day could create a session tied to an administrator account and allow bulk table downloads. Once the provider incident was reassessed, the retained historical data expanded the number of Trezor customers known to be exposed.

The breach did not reach Trezor’s wallet systems. The company said its systems, products and services were not compromised and its devices remained secure. The listed exposed fields were contact and order data, not recovery seeds, private keys or wallet funds.

The risk instead sits around the wallet. Trezor warned that the information could support convincing scam emails, fraudulent calls or letters and potential physical targeting. Its Sept. 4 update did not identify a confirmed downstream attack caused by this dataset, so those outcomes remain risks rather than documented consequences.

Related Reading

Ledger customer data breached including info that leads violent criminals to your door




Trezor said it emailed every newly affected customer directly and that anyone who did not receive its incident notice was not affected. It urged customers never to share a wallet backup or enter it on a website.

For hardware-wallet owners, the episode shows that protecting keys does not erase the purchase trail created by fulfillment. A deletion policy offers little protection if a vendor’s compliance is not verified.

The post Users exposed by Trezor breach grows sixfold after supposedly deleted shipping logs are found appeared first on CryptoSlate.

Author

Coin Gazette Editorial

Follow Me
Other Articles
Previous

Ancient Bitcoin Wallet That Turned $120 Into $3 Million Wakes Up

On Social

FacebookTwitter/XInstagramTelegram
✉️

Stay in the Loop

Get the latest updates delivered straight to your inbox.

Recent Posts

  • Users exposed by Trezor breach grows sixfold after supposedly deleted shipping logs are found
  • Ancient Bitcoin Wallet That Turned $120 Into $3 Million Wakes Up
  • DAOs are forcing crypto protocols to choose between code and emergency brakes
  • Fed stablecoin research exposes how the same dollar could count twice in M1 or M2
  • What Is Robinhood Chain? The Ethereum Layer-2 Network for Tokenized Stocks and Meme Coins

About Us

Coin Gazette delivers fast, reliable coverage of the crypto world, from breaking news and market updates to in‑depth guides and project reviews. Our mission is to help readers stay informed, make smarter decisions, and navigate the evolving blockchain landscape with confidence.

Useful Links

  • About Us
  • Contact Us
  • Advertise
  • Give us a tip

Follow Us On

FacebookTwitter/XInstagramTelegram
Copyright 2026 — Coin Gazette. All rights reserved. Blogsy WordPress Theme