Trezor said on Thursday that a data incident at a third-party shipping provider has exposed personal information belonging to thousands of its customers.
The Prague-based hardware wallet maker reported that 11,742 customers had full personal data exposed, including names, shipping addresses, email addresses and phone numbers. In addition, 1,947 customers had partial personal information compromised, the company said.
According to Trezor, the breach is limited to customers who received an order within the 90 days prior to Aug. 8. The company said it had deleted older records and that the compromised dataset does not include customers who received deliveries earlier than that 90-day window.
Trezor emphasized that its internal systems and the hardware devices it produces remain secure. At the same time, the company warned that customers affected by the breach should be vigilant for an uptick in phishing attempts. "We absolutely understand how serious this is and the potential risks it poses to our customers and are deeply sorry to those affected," the company said in an emailed statement.
Security concerns in the wake of the breach extend beyond digital phishing, the company noted. Exposed contact and shipping details could be used to mount targeted cyber intrusions or even physical attacks against customers. Security firm CertiK reported about 52 physical attacks on cryptocurrency holders worldwide in the first half of 2026, an increase of 33% compared with the same period in 2025.
The incident at the shipping partner follows a similar security event at Coinkite Inc., another maker of hardware wallets based in Toronto, highlighting repeated risks in the supply and logistics chain for cryptocurrency hardware.
What Trezor says:
- The exposed information includes names, addresses, email addresses and phone numbers for 11,742 customers; 1,947 customers had partial data compromised.
- The affected cohort comprises customers who received orders within the 90 days before Aug. 8; older data had been deleted.
- Trezor maintains that its systems and hardware devices remain secure but has alerted customers to potential phishing and targeted attack risks.
Context and implications: The company framed the event as a breach at a logistics partner rather than a compromise of its own infrastructure. While asserting device security, Trezor acknowledged the potential for increased scams and targeted threats that leverage exposed contact and shipping information.
Next steps for customers: Trezor's statement signals that affected customers should expect proactive communications and heightened vigilance for suspicious messages or contacts. The company did not provide additional remediation details beyond the deletion of older data and the warning to customers.
Note: This article was generated with the support of AI and reviewed by an editor. For more information see our T&C.