Trezor says ShipMonk exposed 67,000 more US buyers from 2019–2021 despite deletion assurances, widening the breach to about 80,700 customers.
A Coldcard Wave 3 operator moved about 20.5 BTC into Ether through THORChain, the first spend from the original addresses across three attack waves.
Zilliqa's post-mortem confirmed 683.13 million ZIL was stolen through a flaw in its legacy Ledger app, exposing 6,772 accounts and freezing legacy transactions.
SafePal says an order-tracking flaw exposed data from 39,798 hardware-wallet buyers and is reviewing claims that the dataset is being offered for sale.
TRM Labs traced roughly 1,816 Bitcoin, worth about $116 million at its August 5 snapshot, from more than 5,200 addresses in four Coldcard-related attack waves.
Trezor says a ShipMonk breach exposed names, addresses, phone numbers and emails for 11,742 customers, creating a targeted-phishing risk but no reported wallet compromise.
Galaxy Research's August 4 update put confirmed Coldcard-related thefts at 1,596 BTC from about 7,300 addresses, while a separate suspected fourth wave could lift the estimate further.
Ledger researchers said a $250,000 laboratory laser attack can reset a Tangem card password and steal associated funds, while Tangem says the physical attack is not scalable.
Coldcard says a seed-generation flaw affects legacy and current hardware-wallet models; firmware updates do not repair seeds created before the fix.
Freedom Factory has unveiled the $179 PQ1 hardware wallet, which it says uses post-quantum signing through an ERC-4337 smart account and will ship in Q4 2026.
CertiK recorded 52 verified physical crypto coercion attacks in the first half of 2026, with $124.1 million in exposure and France accounting for 33 cases.
Two Texas brothers admitted using guns and zip ties to force a Minnesota family to transfer more than $8 million in cryptocurrency.
The FBI logged 149,686 crypto-related complaints and more than $9.3 billion in losses in 2024, while fake wallet apps and weak key management keep Ledger and Trezor users exposed.
Joe Grand's new wallet-hacking video confirms a $2.24 million KeepKey recovery, teases an older Trezor case he says is worth more than $60 million, and sets up a public-relations problem for Trezor.
Ledger customer contact data was exposed in a third-party Global‑e incident. No keys leaked, but phishing risk rises—what to do next.