Hardware wallet manufacturer Trezor announced that one of its shipping providers experienced a data breach exposing sensitive order data. The incident affects new customers in the US, UK, Sweden, Colombia, Brazil, Italy, and Portugal who received an order within the 90 days prior to August 8, 2026. The exposed data includes full names, shipping addresses, phone numbers, and email addresses, impacting 11,742 customers with full exposure and 1,947 with partial exposure.
Trezor noted that the breach's scope was limited due to its strict 90-day data storage policy, and all affected customers have been notified individually via email. Trezor emphasized that its systems and devices remain secure, though affected users may experience an increase in phishing attempts, and reminded users never to enter wallet backups on websites or share them with anyone.
