Trezor disclosed that the scope of data breach has widened: An additional 67,000 users were affected by old records left by mailing partners
Hardware wallet maker Trezor recently updated its estimates of the number of people affected by recent data breaches. According to reports from multiple media outlets such as Protos, AMBCrypto, Cryptopolitan and Finbold, the company confirmed that the personal information of approximately 80,700 U.S. users was exposed in the breach. That number is about 67,000 more people than Trezor originally disclosed.
Trezor blamed the expansion of the leak on its third-party performance and email service provider ShipMonk. ShipMonk reportedly retained older versions of customer records that should have been cleared or updated, and these outdated data was subsequently leaked, leading to the involvement of additional users who were not originally within the scope of Trezor's initial notice.
Third-party risks in the supply chain
Given existing reports, Trezor has not disclosed specific categories of personal information involved in the newly identified affected user groups. However, in the cryptocurrency industry, data breaches involving hardware wallet companies are particularly sensitive. Such devices are marketed specifically as offline secure storage tools for digital assets, and customers often expect their personal data to be protected as strictly as private keys.
The involvement of third-party suppliers highlights recurring vulnerabilities in the cryptographic hardware supply chain. Even companies like Trezor, which are committed to building high-security devices, rely on external partners for shipping, mailing and logistics management. If these partners fail to maintain the same security standards, exposure points can be created outside the company's direct control.
The difference between device security and data security
Trezor has established a reputation for its device-level security, protecting private keys through cold storage and offline signature technologies. However, the core of this incident lies in customer data processed outside the device itself. This distinction is crucial for users to assess actual risk because the exposed mailing or contact information is fundamentally different from the stolen wallet credentials or private keys.
Trezo chose to revise the scope of the leak upwards rather than just dwell on the initial data, indicating that it is conducting an ongoing internal review of ShipMonk's data processing practices. As Trezor continues to audit records held by its suppliers, more updates may be released in the future.
Market Impact and Industry Outlook
Since private key and device-level security were not reported in this incident, data breaches by hardware wallet companies often have reputation impacts rather than direct financial market fluctuations. Still, the widening scope of the leak could erode customers 'trust in vendor management practices across the hardware wallet industry.
Other companies that rely on third-party logistics or mail providers may face more stringent scrutiny of how their partners store and retain customer data. Analysts and security researchers are expected to pay close attention to Trezor's response, including any compensation or security commitments it makes to affected customers, which could set a precedent for how the industry handles vendor-related leaks in the future.
Trezo's expanded leak disclosure highlights the fact that third-party vendors can expand the scope of data incidents far beyond the company's initial estimates. As the review of ShipMonk records continues, affected users should stay tuned for subsequent updates.
Frequently Asked Questions (FAQ)
What caused the Trezor data breach to expand?
Trezor said the increase came from its fulfillment and email partner ShipMonk, which retained older customer records that were later leaked.
How many customers are currently affected?
Trezor now estimates that approximately 80,700 U.S. customers were affected, an increase of approximately 67,000 from the number it originally disclosed.
Were private keys or wallet funds stolen?
According to existing reports, the leak involved customer data related to mailing and performance records, and did not involve device-level security or private keys.
Is ShipMonk a Trezo service?
No. ShipMonk is reportedly an independent third-party provider that Trezor uses for email delivery and order fulfillment services.

Exchange Ranking
Top Exchanges
24h Volume Ranking
Popularity Ranking
Exchange BTC Balance
Proof of Reserves
Decentralized Exchanges
Funding Rate
Funding Heatmap
Liquidation Data
Max Pain
Long/Short Ratio
Whale L/S Ratio
Binance/Okex/Huobi L/S
Bitfinex Margin L/S
ETF Tracker
Solana ETF
XRP ETF
Hong Kong ETF
Bitcoin Treasuries
Crypto Reversal
Ethereum Reserves
HyperLiquid Wallet Analysis
Hyperliquid Whale Watch
Large Transactions
On-chain Movement
Bitcoin ROI
Stablecoin Market Cap
Options Analysis
News
Articles
Economic Calendar
Features
Wallet
Contract Calculator
Security
Collections
Watchlist
Following