Trezor data breach expands: Another 67,000 U.S. users were affected
The data breach of hardware wallet provider Trezor exceeded initial estimates and affected another 67,000 U.S. customers. Trezor said in an article posted on Platform X (formerly Twitter) on Friday that based on the latest update from logistics service provider ShipMonk, U.S. users placing orders between November 2019 and August 2021 may face higher risks.
Trezor pointed out that details of these customers were leaked, including names, email, phone numbers, shipping addresses and order details. Although Trezor had previously received written assurances from ShipMonk that it had deleted relevant order data, the company still blamed the logistics service provider for failing to completely erase the data.
Potential security risks and phishing threats
Although Trezor's own systems have not been compromised, the data breach may still pose a threat to the digital assets of these 67,000 customers. Attackers may use the obtained information to disguise themselves as Trezor officials and carry out phishing attacks in an attempt to steal seed phrases (mnemons) that control users 'wallets.
Trezor initially estimated in early August that only about 14,000 users exposed data through logistics channels. In a January 2024 report, Trezor said that approximately 66,000 users who have contacted the company's customer service team since December 2021 are at risk of being subjected to phishing attacks.
Social engineering fraud becomes the main source of loss in the crypto industry
Phishing attacks and social engineering techniques can be implemented without exploiting code vulnerabilities. According to statistics from blockchain security company Hacken, such frauds based on identity impersonation caused most of the losses in the cryptocurrency industry in the first quarter of this year. Of the total losses of $482 million, as much as $306 million was caused by such attacks.
It is worth noting that in July this year, a cryptocurrency investor lost nearly US$1 million due to signing a malicious phishing token authorization transaction on the Ethereum network.

Exchange Ranking
Top Exchanges
24h Volume Ranking
Popularity Ranking
Exchange BTC Balance
Proof of Reserves
Decentralized Exchanges
Funding Rate
Funding Heatmap
Liquidation Data
Max Pain
Long/Short Ratio
Whale L/S Ratio
Binance/Okex/Huobi L/S
Bitfinex Margin L/S
ETF Tracker
Solana ETF
XRP ETF
Hong Kong ETF
Bitcoin Treasuries
Crypto Reversal
Ethereum Reserves
HyperLiquid Wallet Analysis
Hyperliquid Whale Watch
Large Transactions
On-chain Movement
Bitcoin ROI
Stablecoin Market Cap
Options Analysis
News
Articles
Economic Calendar
Features
Wallet
Contract Calculator
Security
Collections
Watchlist
Following
ETH