The impact of hardware wallet provider Trezor’s data breach was larger than initially estimated, expanding to an additional 67,000 US customers.
The breach may endanger more US users who ordered between November 2019 and August 2021, Trezor said in a Friday X post, citing the latest update from its shipping provider, ShipMonk.Â
These customers had their full details exposed, including name, email, number, shipping address and order specifics. Trezor blamed the shipping provider for not deleting the data from these orders, despite saying it had received written assurances from ShipMonk.
While Trezor systems were not compromised, the data breach may threaten the digital asset holdings of the 67,000 customers, as attackers may use the information for phishing attacks impersonating Trezor, in a bid to steal users’ seed phrases controlling their wallets.
In August, Trezor initially estimated that only 14,000 users had their data exposed…