Trezor warns 14,000 customers after fulfilment partner suffers data breach
Trezor said nearly 14,000 customers had personal data exposed after its fulfillment partner ShipMonk suffered an unauthorized access to its systems, though its own infrastructure and wallets remain secure.
Intelligence analysis by Llama

Trezor's fulfillment partner ShipMonk suffered a data breach, exposing the names, email addresses, phone numbers, and shipping addresses of nearly 14,000 customers. Trezor has notified all affected customers via email and assured that its own systems were not compromised.
Imagine you bought a special kind of safe to store your money and important documents. The company that made the safe had a problem with one of its partners, and some of the information about the safe and its customers was stolen. This means that scammers might try to trick the customers into giving them money or information. The company is trying to fix the problem and keep its customers safe.
Analysis
Data Breach Details
Trezor's fulfillment partner ShipMonk suffered an unauthorized access to its systems, affecting nearly 14,000 customers' data. The breach exposed the names, email addresses, phone numbers, and shipping addresses of 11,742 customers, as well as the names, cities, and email addresses of another 1,947 customers. Trezor has notified all affected customers via email and assured that its own systems were not compromised.
Impact on Customers
The breach increases the risk of phishing and other scams, as scammers could use the leaked data to impersonate banks, crypto exchanges, or Trezor itself. Customers who purchased through Amazon are not affected, as those orders are fulfilled by a separate partner. Trezor has also assured that its internal firmware and on-device cryptography have never been breached remotely to steal funds.
Rise in Global Data Breaches
The breach is part of a broader rise in global data breaches, which have increased by 17% compared to 2025, with an average of 2,090 attacks worldwide each week. This trend is expected to continue, with global data breaches rising by 3% month over month since January. The consequences of data breaches can be long-lasting, with customers remaining at risk for years after the hacking event.
Previous Breaches
Trezor has experienced previous breaches, including a third-party support portal's security breach in January 2024, affecting 66,000 people, and another breach in April 2022, affecting 106,856 customers. Ledger, the maker of one of the most popular hardware wallets in crypto, has also suffered data breaches, including a breach linked to its third-party e-commerce partner, Global-e, in January, and a large-scale breach affecting nearly 300,000 users in 2020.
Key points
- Trezor's fulfillment partner ShipMonk suffered a data breach, exposing the names, email addresses, phone numbers, and shipping addresses of nearly 14,000 customers.
- Trezor has notified all affected customers via email and assured that its own systems were not compromised.
- The breach increases the risk of phishing and other scams, as scammers could use the leaked data to impersonate banks, crypto exchanges, or Trezor itself.
- Customers who purchased through Amazon are not affected, as those orders are fulfilled by a separate partner.
- Trezor's internal firmware and on-device cryptography have never been breached remotely to steal funds.
Trezor is taking steps to notify affected customers and secure its systems, which should help prevent further breaches and protect its customers' data. Additionally, the company's internal firmware and on-device cryptography have never been breached remotely to steal funds, which is a positive sign.
The breach increases the risk of phishing and other scams, which can have long-lasting consequences for customers. Additionally, the rise in global data breaches suggests that this trend may continue, putting customers at risk for years after the hacking event.



