Hardware wallet manufacturer Trezor announced that a data breach at its shipping partner, ShipMonk, exposed the personal details of 13,689 customers across seven countries who ordered devices between May 10 and August 8, 2026. The breach, caused by a Metabase SQL injection vulnerability, leaked names, emails, phone numbers, and shipping addresses. While Trezor's own systems and devices remain secure, the company warned users of heightened phishing and social engineering risks.
Story comments
Loading comments…