
Trezor said Thursday that the personal data of thousands of customers was exposed in a breach at one of its logistics providers.
The Prague-based cryptocurrency hardware wallet maker reported that 11,742 customers had their names, shipping addresses, email addresses, and phone numbers exposed. Another 1,947 customers had their personal data partially compromised.
The breach affected customers in the US, UK, Sweden, Colombia, Brazil, Italy, and Portugal who received orders within 90 days of August 8. The company said older data had already been deleted.
Trezor stated that its systems and devices remain secure, but warned that affected customers may face increased phishing attacks. "We understand the seriousness of this and the potential risks it poses to our customers, and we deeply regret this incident," Trezor said in an emailed statement.
The disclosed personal data could be used for targeted cyberattacks or physical attacks against customers. Cybersecurity company CertiK recorded approximately 52 physical attacks on cryptocurrency owners worldwide in the first half of 2026—a 33% increase compared to the same period in 2025.
The incident follows a similar incident at Coinkite Inc., a Toronto-based company that also produces hardware cryptocurrency wallets.