logo

Trezor support site breach exposes personal data of 66,000 customers

ID: 1b2dce5b-fbaa-5c9a-bc95-0f11fe536526

STIX ID: report--1b2dce5b-fbaa-5c9a-bc95-0f11fe536526

Feed Name: Bleeping Computer

Threat Score
70/100

Date Published: 2024-01-22

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

Trezor disclosed a breach of its third-party support ticketing portal on January 17 that exposed names, usernames, and email addresses for approximately 66,000 users who contacted support since December 2021; attackers have leveraged the exposed data in phishing emails requesting 24-word recovery seeds (41 exploitation cases confirmed). Trezor states no user funds were observed stolen, the unauthorized access has been terminated, and affected users were warned to never disclose their seed phrases.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.