{
  "version": 1,
  "event_id": "evt_be23c92588ff2c1d",
  "url": "https://xiyu.news/events/evt_be23c92588ff2c1d/",
  "json": "https://xiyu.news/api/events/evt_be23c92588ff2c1d.json",
  "type": "security_incident",
  "status": "monitoring",
  "category": "crypto",
  "title": {
    "zh": "Trezor数据泄露扩大6.7万，受影响用户超8万",
    "en": "Trezor says mailing breach leaked 67K more users than first thought"
  },
  "current_state": {
    "zh": "Trezor今日透露，上月其邮件合作商ShipMonk遭遇的数据泄露事件实际影响了额外6.7万名美国用户，使受影响总人数超过8万。它还承认在与ShipMonk合作期间，其90天数据删除政策从未得到执行。\n\n此次披露显著扩大了涉及Trezor硬件钱包用户的隐私泄露事件规模，使用户面临更高的钓鱼和定向诈骗风险。同时，它也引发了对Trezor监督第三方数据处理商及其数据保留政策可信度的重大质疑。\n\n最初Trezor仅报告13,689名客户受影响，并以90天数据删除政策为由淡化事件。ShipMonk在8月10日告知初步泄露范围（90天内订单），随后于9月2日透露泄露实际上可追溯至2019年和2021年，而Trezor称对方反复作出的书面保证使其没有理由预期进一步泄露。",
    "en": "Trezor disclosed that its mailing partner breach actually leaked 67,000 more users than initially reported, bringing the total to over 80,000 and admitting its data-deletion policy was never enforced."
  },
  "first_seen_at": "2026-09-04T16:32:13.199417+00:00",
  "last_updated_at": "2026-09-04T16:32:13.199417+00:00",
  "last_material_change_at": "2026-09-04T16:32:13.199417+00:00",
  "confidence": 0.75,
  "updates_count": 1,
  "sources_count": 1,
  "entities": [
    "trezor"
  ],
  "identifiers": [],
  "topics": [
    "data-breach",
    "privacy",
    "trezor"
  ],
  "updates": [
    {
      "update_id": "upd_4c3b43b6a75e26a5",
      "event_id": "evt_be23c92588ff2c1d",
      "occurred_at": "2026-09-04T13:35:39Z",
      "published_at": "2026-09-04T13:35:39Z",
      "first_seen_at": "2026-09-04T16:32:13.199417Z",
      "time_precision": "published",
      "update_type": "initial",
      "material_change": true,
      "title_zh": "Trezor数据泄露扩大6.7万，受影响用户超8万",
      "title_en": "Trezor says mailing breach leaked 67K more users than first thought",
      "what_changed_zh": "Trezor今日透露，上月其邮件合作商ShipMonk遭遇的数据泄露事件实际影响了额外6.7万名美国用户，使受影响总人数超过8万。它还承认在与ShipMonk合作期间，其90天数据删除政策从未得到执行。\n\n此次披露显著扩大了涉及Trezor硬件钱包用户的隐私泄露事件规模，使用户面临更高的钓鱼和定向诈骗风险。同时，它也引发了对Trezor监督第三方数据处理商及其数据保留政策可信度的重大质疑。\n\n最初Trezor仅报告13,689名客户受影响，并以90天数据删除政策为由淡化事件。ShipMonk在8月10日告知初步泄露范围（90天内订单），随后于9月2日透露泄露实际上可追溯至2019年和2021年，而Trezor称对方反复作出的书面保证使其没有理由预期进一步泄露。",
      "what_changed_en": "Trezor disclosed that its mailing partner breach actually leaked 67,000 more users than initially reported, bringing the total to over 80,000 and admitting its data-deletion policy was never enforced.",
      "current_state_zh": "Trezor今日透露，上月其邮件合作商ShipMonk遭遇的数据泄露事件实际影响了额外6.7万名美国用户，使受影响总人数超过8万。它还承认在与ShipMonk合作期间，其90天数据删除政策从未得到执行。\n\n此次披露显著扩大了涉及Trezor硬件钱包用户的隐私泄露事件规模，使用户面临更高的钓鱼和定向诈骗风险。同时，它也引发了对Trezor监督第三方数据处理商及其数据保留政策可信度的重大质疑。\n\n最初Trezor仅报告13,689名客户受影响，并以90天数据删除政策为由淡化事件。ShipMonk在8月10日告知初步泄露范围（90天内订单），随后于9月2日透露泄露实际上可追溯至2019年和2021年，而Trezor称对方反复作出的书面保证使其没有理由预期进一步泄露。",
      "current_state_en": "Trezor disclosed that its mailing partner breach actually leaked 67,000 more users than initially reported, bringing the total to over 80,000 and admitting its data-deletion policy was never enforced.",
      "detailed_summary_zh": "Trezor disclosed that its mailing partner breach actually leaked 67,000 more users than initially reported, bringing the total to over 80,000 and admitting its data-deletion policy was never enforced.",
      "detailed_summary_en": "Trezor disclosed that its mailing partner breach actually leaked 67,000 more users than initially reported, bringing the total to over 80,000 and admitting its data-deletion policy was never enforced.",
      "background_zh": "硬件钱包是存储加密货币私钥的物理设备，通常在不使用时保持离线，因此被视为比联网“热钱包”更安全的冷存储方式。这也使硬件钱包用户成为攻击者的目标，因为泄露的身份和联系方式可用于构造极具迷惑性的钓鱼攻击，试图窃取钱包助记词或凭据。数据保留政策通常要求合作方在一段时间后删除客户数据，而此次事件的核心问题正是所要求的删除从未真正执行。",
      "background_en": "Hardware wallets are physical devices for storing cryptocurrency private keys, usually kept offline when not in use, which makes them a form of \"cold\" storage considered safer than internet-connected hot wallets. That also makes hardware wallet users attractive targets for attackers, since leaked identity and contact details can be used to craft convincing phishing attempts aimed at stealing wallet recovery seeds or credentials. Data retention policies normally require partners to delete customer data after a set period, and the core problem in this incident is that the required deletion was never actually enforced.",
      "community_discussion_zh": "",
      "community_discussion_en": "",
      "market_impact_zh": "这一事件不太可能直接影响整体加密货币市场，但可能削弱用户对Trezor的信任，并影响人们对硬件钱包产品安全性的整体看法。主要影响渠道是声誉和感知安全风险，而非直接的资金或交易所流动性，因为目前尚无资金或私钥丢失的报告。",
      "market_impact_en": "This incident is unlikely to directly move broad crypto markets, but it could affect user trust in Trezor and the perceived security of hardware wallet products more generally. The main impact channel is reputational and perceived security risk rather than direct access to funds or exchange liquidity, since no loss of funds or private keys has been reported.",
      "importance_score": 7.0,
      "references": [
        {
          "url": "https://keyst.one/",
          "title": "Keystone Wallet | Secure Open Source Crypto Solution"
        }
      ],
      "confidence": 0.75,
      "story_ids": [
        "rss:protos.com_feed_:08f06c7d3e1a35b3"
      ],
      "sources": [
        {
          "url": "https://protos.com/trezor-says-mailing-breach-leaked-67k-more-users-than-first-thought/",
          "label": "Protos",
          "source_type": "rss",
          "official": false
        }
      ]
    }
  ]
}
