<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Trezor Says ShipMonk Breach Exposed 67,000 U.S. Customers' Data It Said Was Deleted]]></title><description><![CDATA[<p dir="auto">Hardware wallet maker <em>Trezor</em> has disclosed that a breach at its third-party logistics partner, <strong>ShipMonk</strong>, has exposed personal information belonging to an additional <strong>67,000 U.S. customers</strong>. This incident reportedly involves data Trezor previously believed had been deleted.</p>
<p dir="auto">The compromised records pertain to orders placed between <strong>November 2019 and August 2021</strong>. According to the company, the exposed fields include:</p>
<ul>
<li>Customer names</li>
<li>Email addresses</li>
<li>Phone numbers</li>
<li>Shipping addresses</li>
<li>Order numbers</li>
</ul>
<p dir="auto">Trezor was quick to clarify that this incident does <em>not</em> compromise the security of the hardware wallets themselves, as the breach is confined to customer service and logistics data rather than cryptographic keys or device firmware.</p>
<p dir="auto">This is the second time in recent months that Trezor has dealt with a data exposure via a third-party vendor. While the company maintains that the financial and cryptographic integrity of user funds remains untouched, the leak of personal details such as physical addresses and phone numbers presents a significant risk for targeted phishing schemes and social engineering attacks.</p>
<p dir="auto">Source: <a href="https://thehackernews.com/2026/09/trezor-says-shipmonk-breach-exposed.html" target="_blank" rel="noopener noreferrer nofollow ugc">The Hacker News</a></p>
<p dir="auto">Given that your physical address and phone number are now floating around from a 2021 order, how is your team adjusting its anti-phishing training for customers who hold crypto assets?</p>
]]></description><link>https://xploitlk.com/topic/227/trezor-says-shipmonk-breach-exposed-67-000-u.s.-customers-data-it-said-was-deleted</link><generator>RSS for Node</generator><lastBuildDate>Sat, 05 Sep 2026 19:02:23 GMT</lastBuildDate><atom:link href="https://xploitlk.com/topic/227.rss" rel="self" type="application/rss+xml"/><pubDate>Sat, 05 Sep 2026 16:30:29 GMT</pubDate><ttl>60</ttl></channel></rss>