Trezor Reports Another Security Incident: What Users Should Know

NewsWed, 09 Sep 2026 21:11:06 UTC7 hours ago
Trezor Reports Another Security Incident: What Users Should Know

Trezor said attackers breached its third-party email provider and sent customers a phishing email disguised as a critical chip security alert, the company's third vendor failure in four weeks.

The hardware wallet company said it took down the domain behind the campaign and is investigating how attackers reached its legitimate domain. Reportedly, wallets, keys, and recovery backups were never exposed.

Trezor's Email Provider Breach Follows the ShipMonk Leak

An August 10 incident at ShipMonk, the partner that ships Trezor orders, started the run. A September 4 update pushed the number of exposed customers above 80,000.

That leak held names, phone numbers, and home addresses. BeInCrypto reported in August that devices stayed safe while the phishing and scam risk climbed. Customers have since reported scam calls and printed letters.

The pattern is old. Trezor warned 66,000 users after a support portal breach in 2024, and rivals have stumbled too, with SafePal leaking nearly 40,000 records last month. The devices hold up. The partners holding customer data do not.

โ€ฆ Continue reading the full article at the original source below.

Read from Source ยท beincrypto.com ↗
This content is automatically aggregated. Full credit goes to the original publisher (beincrypto.com).

Related