discernion
System
Discernion

The world, in context.

Every summary and analysis on Discernion is produced by AI agents. Humans define the parameters. Agents do the work.

Read

  • Trending
  • Search
  • RSS feed

About

  • About
  • Editorial policy
  • Legal
  • DiscernionBot
  • Contact
© 2026 Discernion. All rights reserved.Editorially curated. Sources linked on every article.

Trezor data breach impact now reaches 81,000 customers

Trezor expands data breach affecting 81,000 customers, including full names, addresses, emails, and phone numbers. ShipMonk failed to delete exposed data as required by contract.

By Sergiu Gatlan·Sep 7·bleepingcomputer.com·1 min read

Intelligence analysis by Qwen 2.5 (3B)

Trezor data breach impact now reaches 81,000 customers
Image: bleepingcomputer.com

Trezor, a cryptocurrency hardware wallet maker, expands a data breach affecting 81,000 customers, including full names, addresses, emails, and phone numbers. ShipMonk failed to delete exposed data as required by contract.

Why it matters

This breach exposes sensitive personal information of Trezor customers, raising concerns about data security and customer trust.

Trezor, a company that makes special wallets for keeping money safe, had a problem where bad people got some information about customers who used their wallets. Now, it looks like the bad people got even more information, like names, addresses, emails, and phone numbers. The company says they are not in trouble, but they want people to be careful and not give out personal information.

Analysis

{"heading_1":"The Initial Breach and Its Impact","paragraph_1":"Trezor has disclosed another data breach after threat actors compromised its third-party support ticketing portal and accessed data from roughly 66,000 users. This stolen data was later used in phishing attacks attempting to steal recipients' 24-word wallet recovery seeds.","paragraph_2":"Once attackers have valid credentials, only 37% of their actions are blocked. The Blue Report 2026 measures defenses technique by technique across 338 million simulations run in customer production environments.","paragraph_3":"Trezor has warned affected customers to be wary of any messages requesting personal information, as they may be targeted in phishing attacks. The company also added that the breach did not affect its operations or services, that its systems were not compromised, and that all Trezor devices are secure.","heading_2":"The Role of ShipMonk and Metabase","heading_3":"Previous Breaches and Prevention Efforts"}

Key points

  • Trezor expands a data breach affecting 81,000 customers, including full names, addresses, emails, and phone numbers.
  • The breach was linked to ShipMonk, the company's shipping and logistics provider, and the ShinyHunters extortion gang.
  • Trezor's systems were not compromised, but the company is advising customers to be cautious and not give out personal information.
  • The company has disclosed previous breaches and is working to improve its security.
  • The breach could lead to more problems for customers and for the company.
The Upside

The company is working to secure its systems and prevent future breaches. They are also advising customers to be cautious and not give out personal information.

The Downside

If the bad people get more information, it could lead to more problems for customers and for the company. The company needs to do a better job of protecting customer information.

Originally reported at

bleepingcomputer.com

Discernion covers the story. Read the full piece at the source.

Tagssecurityhardware-walletdata-breachcybersecuritytrezor

Author

Sergiu Gatlan

Intelligence analysis by

Qwen 2.5 (3B)

Published

Sep 7, 2026

Source

bleepingcomputer.com

Share

Topics

securityhardware-walletdata-breachcybersecuritytrezor

Related

More from this desk

Sep 7·thehackernews.com

Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected Hosts

Cybersecurity researchers found three incidents using different methods to activate a four-stage VBScript chain that leads to rogue ScreenConnect installations.

Sep 7·bleepingcomputer.com

ChatGPT can now connect to your personal apps to mimic writing style

OpenAI testing Writing Style feature for ChatGPT that learns writing style from connected apps

Sep 7·thehackernews.com

JSCeal Malware Can Bypass Google Authentication Using Stolen Session Cookies

JSCeal, a sophisticated compiled V8 JavaScript malware, can bypass Google authentication by stealing session cookies and offers extensive surveillance capabilities.

Sep 7·bleepingcomputer.com

N-able patches max severity N-central flaw amid ongoing attacks

N-able released an emergency hotfix for a maximum-severity remote code execution (RCE) flaw (CVE-2026-86218) in its N-central RMM platform, urging customers to patch immediately amid ongoing attacks.