Trezor says data breach affects another 67K US customers
Trezor said an additional 67,000 US users were affected by its shipping provider’s data breach, opening the path to potential phishing attacks and social engineering scams.
Hardware wallet manufacturer Trezor has disclosed that an additional 67,000 customers in the United States have been affected by a data breach originating from its third-party shipping provider. The breach exposed personal information belonging to these users, raising immediate concerns about their vulnerability to phishing attacks and social engineering scams targeting crypto holders.
The incident adds to a growing pattern of security challenges facing hardware wallet providers and their supply chain partners. Trezor had previously acknowledged data exposure incidents involving its service providers, and this latest disclosure indicates the scope of the breach is broader than initially reported. The compromised data from shipping records typically includes names, physical addresses, and contact details — information that bad actors can exploit to craft convincing fraudulent communications.
The revelation carries significant implications for the broader cryptocurrency hardware security industry, as it highlights that even companies specializing in digital asset protection remain exposed to vulnerabilities within their physical logistics and fulfillment networks. Users affected by such breaches become prime targets for criminals who may impersonate Trezor representatives or fabricate urgent security alerts designed to extract seed phrases or private keys.
Affected users are advised to remain vigilant against unsolicited communications claiming to be from Trezor, particularly any messages requesting sensitive wallet information. The company is expected to provide further guidance to impacted customers while the investigation into the full extent of the shipping provider's breach continues.
Source: Cointelegraph