Hardware wallet maker Trezor disclosed a data breach affecting nearly 14,000 customers after its shipping provider ShipMonk was compromised.
Trezor revealed the breach occurred through ShipMonk, the logistics partner handling shipments for the cryptocurrency hardware wallet company. The incident exposed customer data stored in ShipMonk's systems.
Trezor has not disclosed specific details about what customer information was accessed. The company is investigating the scope of the breach and notifying affected users.
ShipMonk is a third-party logistics provider serving numerous e-commerce businesses. The breach underscores the risks associated with data stored by vendor partners, even when primary companies maintain strong security practices.
Trezor's hardware wallets are used to store cryptocurrency offline, isolating private keys from internet-connected devices. While the breach affects customer data rather than wallet security directly, it highlights vulnerabilities in supply chain infrastructure.
The company recommends affected customers monitor accounts for suspicious activity and remain vigilant against phishing attempts. Trezor is working with ShipMonk to understand the incident's full extent and implement additional safeguards.
Flock's CEO acknowledged the company failed to prevent law enforcement misuse of its tracking data and announced new policy changes to address the problem.
Meta is rolling out Scam Alert, an optional feature that uses on-device machine learning to detect suspicious messages on WhatsApp. The tool joins existing scam detection for device linking requests.
The US government has reversed decades of cybersecurity policy by allowing private companies to conduct offensive cyber operations. The new order permits 'hack back' attacks previously prohibited under federal law.
Flock Safety is implementing new privacy guardrails for its automated license plate reader technology following backlash over misuse concerns and mass surveillance allegations.