← All stories
● Covered by 1 source · 1 reportMedium impact1 negative

Trezor Discloses ShipMonk Breach Exposed Data of 67,000 U.S. Customers

🔄 Updated 1h ago
New to BrevFeed? We gather this story from every outlet covering it into one summary — ranked by real-world impact, not just the latest headline — so you never miss what matters. What is BrevFeed? →

Key points

  • 67,000 U.S. Trezor customers affected by ShipMonk data breach.
  • Exposed data includes names, emails, phone numbers, shipping addresses, order numbers.
  • Trezor had received written assurances from ShipMonk that data was deleted.
  • ShinyHunters gang is reportedly behind the breach, exploiting a critical Metabase flaw.

Customer Data Exposed in ShipMonk Breach

Trezor, a hardware wallet manufacturer, revealed that 67,000 U.S. customers were impacted by a data breach at its shipping partner, ShipMonk. The exposed information includes customer names, email addresses, phone numbers, shipping addresses, and order numbers for orders placed between November 2019 and August 2021. This incident does not compromise the security of Trezor's hardware wallets themselves.

Failure to Delete Data Despite Assurances

Trezor stated that it had repeatedly requested and received written confirmation from ShipMonk regarding the deletion of customer data, in accordance with their contract and data policy. Despite these assurances, the data was not deleted from ShipMonk's systems, leading to its exposure. This breach adds to a previous disclosure of 13,689 customers whose data was partially or fully exposed.

Breach Details and Attacker Attribution

ShipMonk informed Trezor of the breach on August 10, 2026, following unauthorized access to its systems. The logistics company has reportedly secured the affected systems and improved its security. The breach involved the zero-day exploitation of CVE-2026-72898, a critical SQL injection flaw in Metabase. Enterprise blockchain security firm Holborn attributes the breach to the ShinyHunters extortion gang.

Customer Notification and Security Warnings

Trezor has directly notified affected customers. The company also issued a warning for users to be vigilant against social engineering attacks and scams. Bad actors could use the leaked information to send phishing emails, make fraudulent calls, or impersonate Trezor in communications to trick targets into unintended actions.

✨ This summary was generated by AI from the outlets' reporting listed below. It is not independently verified and may contain errors — check the original sources. How BrevFeed works →

The daily brief

One email each morning: the day's tech stories, clustered across outlets and summarized. No account needed.

One email a day. Unsubscribe in one click, any time.

Today's brief

Spend a few minutes, get the whole day. Every topic's top stories in one hands-free rundown — listen, watch, or read the transcript.

~15 min · 12 stories · Sep 05

▶ Play today's brief Listen on Spotify

New every morning, and the back catalogue is archived by date.

Reporting from

Hardware wallet manufacturer Trezor announced that 67,000 U.S. customers had their personal data exposed due to a breach at its shipping provider, ShipMonk. This incident is significant because it adds to previously disclosed exposures and highlights the risks associated with third-party data handling, even after assurances of data deletion.