What Trezor reported
The Prague-based hardware wallet maker expanded an earlier incident, saying a third-party shipping provider's breach touched far more people than first disclosed. The newly identified 67,000 U.S. customers are on top of the roughly 13,700 users named in August, a substantial jump. Trezor said it has contacted everyone included in this latest group and reiterated that its own systems and devices were not compromised.
In its statement, the company added: "No wallet backup, private key or device was involved, so there's nothing anyone needs to do to their Trezor. And no legitimate Trezor representative will ever ask for a wallet backup, in any circumstances."
When unexpected security news surfaces, keeping a steady investing plan matters, so download the free Always Be Buying E-Book
What data was exposed and the timeline
The added group consists of customers who placed orders from November 2019 through August 2021. The exposed records included personal identifiers and contact details. According to Trezor, the data set covered customer names, email and phone contacts, along with the address used for shipping.
Why it matters for crypto holders
Trezor urged users to "be alert for fake emails, phone calls, fraudulent letters, and potential risks to physical security." That warning is timely. For crypto owners, leaked names and home addresses can invite both online scams and real-world threats. Physical attacks have surged this year; according to Chainalysis, 2026 has already seen criminals take over $30 million from crypto holders, a pace that could push totals past last year's record of $58 million. The takeaway for your money is straightforward: even if your hardware wallet stays locked down, exposed personal info can open doors to targeted scams and in-person risks.
