Trezor said 13,689 customers had order data exposed. Your coins are safe, your mailbox isn't.
This is not a wallet hack. It is a phishing list with names, emails, phone numbers and home addresses.

CryptoVibe Desk · trezor · security · wallets

- →Trezor said a shipping provider breach exposed order data for 13,689 customers across seven countries.
- →The wallets were not compromised, but 11,742 customers had enough personal data leaked for targeted scams.
- →By September 30, Trezor's ShipMonk decision is the number to watch.
- phishing → Phishing is a scam where someone pretends to be a trusted company to steal passwords, seed phrases or money.
- private keys → Private keys are secret codes that control access to crypto in a wallet.
Trezor said 13,689 customers had order data exposed. The breach hit one of its shipping providers, not Trezor's own systems. Trezor said devices, wallet backups and private keys were not compromised.
That distinction matters. This is not a coin theft story. It is a targeting story.
CoinDesk reported 11,742 customers had names, emails, phone numbers and shipping addresses leaked. Another 1,947 had names, cities and email addresses exposed. The affected customers were in the U.S., UK, Sweden, Colombia, Brazil, Italy and Portugal.
Protos reported the exposed order window ran from May 10 to August 8, 2026. Trezor was informed of ShipMonk's breach on August 10, Protos said. Trezor sent warning emails to affected users on August 13.
If you got that email, your bag is not gone. But your inbox, phone and front door are now part of the threat model. The scammer does not need your hardware wallet. They need you to believe the next message is real.
Trezor also said Amazon orders were not affected, according to CoinDesk. Those orders use a separate partner. The number to watch is whether this stays limited to warning emails, or turns into impersonation attempts.
The tape matches the story. No private keys leaked, for now. The weak point was fulfillment data, and that is enough for a better scam.
Trezor's choice to route hardware-wallet orders through ShipMonk now looks costly, because leaked names, phones and addresses give scammers exactly the data they need.
By September 30, watch whether Trezor ends or keeps the ShipMonk partnership, with a public vendor update as the falsifiable marker.
Primary links and supporting reads used by the desk for this story.
Forward this.











