A data breach at ShipMonk has compromised the personal information of nearly 14,000 customers who use hardware crypto wallets from Trezor. While Trezor’s own systems were not affected, hackers gained access to sensitive customer data through a vulnerability in ShipMonk’s Metabase tool.
The incident is believed to have been carried out by the notorious extortion group ShinyHunters, which claimed responsibility for an attack on Metabase earlier this week. The group leaked data allegedly stolen from the data analytics solutions provider, but it remains unclear how many other companies or individuals may be affected by the breach.
Trezor customers in the US, UK, Sweden, Colombia, Brazil, Italy, and Portugal who placed orders between May 10 and August 8 are at risk. The compromised information includes full names, phone numbers, email addresses, and shipping addresses. In some cases, hackers also accessed partial exposure of customer data, potentially putting these individuals at higher risk for targeted phishing attempts.
The breach is limited due to Trezor’s strict 90-day data storage policy, which requires third-party shipping providers like ShipMonk to adhere to the same terms. However, this does not eliminate the potential threat posed by the compromised data, and customers are being advised to be wary of suspicious communication that requests personal information or prompts for immediate action.
Trezor has notified all impacted customers via email and is working closely with ShipMonk to establish an exact timeline of events and determine the full scope of the breach. While Trezor’s own systems were not compromised, the incident serves as a reminder of the importance of robust third-party security measures in protecting sensitive customer data.
The recent rise of targeted attacks on logistics and shipping providers has raised concerns about the vulnerability of supply chains to cyber threats. As more companies rely on third-party services for order fulfillment, the risk of data breaches and other types of cyber incidents increases. In this context, Trezor’s proactive notification of affected customers and its efforts to mitigate the impact of the breach serve as a model for responsible data handling in the face of cyber threats.
In light of this incident, it is essential for all customers of online services to remain vigilant about their personal information. This includes being cautious when receiving unsolicited emails or phone calls that request sensitive details, and regularly reviewing account settings and permissions to prevent unauthorized access. By staying informed and taking proactive steps to protect themselves, individuals can minimize the risk of falling victim to targeted phishing attempts and other types of cyber attacks.
Source: SecurityWeek — 2026-08-14