A data breach at Trezor's shipping partner ShipMonk has exposed the personal information of approximately 80,000 customers, including full names, emails, phone numbers, and shipping addresses. The root cause was a critical flaw in the Metabase analytics platform exploited by attackers. Trezor confirmed their systems were not compromised, and the breach's initial wave affected 13,689 customers across seven countries.
Trezor has reached out to affected individuals and advised them to be vigilant about potential phishing attempts. The company is working with ShipMonk to ensure data protection measures are improved in the future.