Crypto wallet SafePal reveals a data breach exposing nearly 40,000 customers' order info

요약:SafePal disclosed a security breach that exposed names, physical addresses, and contact details of 39,798 customers who placed orders between March 2, 2025, and April 11, 2026. The company attributed the incident to an authorization flaw in an order-tracking plug-in, which may have allowed attackers to view other customers' order details. It said no cryptocurrency funds, seed phrases, private keys, bank details, or government IDs were compromised, but warned affected users face heightened phishing and impersonation risks. SafePal said it has taken steps to address the situation. The disclosure follows a recent hack of Coldcard wallets, underscoring that no crypto-storage solution is entirely risk-free.

Summary

  • SafePal disclosed a security breach that exposed the names, physical addresses and contact details of 39,798 customers who placed orders between March 2, 2025, and April 11, 2026.
  • The company said no cryptocurrency funds, seed phrases, private keys, bank details or government IDs were compromised, but warned that exposed users face heightened phishing and impersonation risks.
  • SafePal has taken several steps to address the situation.

Crypto hardware wallet provider SafePal has disclosed a security incident that exposed the personal information of thousands of customers.

The exposed data included names, physical addresses, and contact details, putting affected users at risk of phishing and impersonation attempts. However, the breach did not compromise any cryptocurrency funds, passwords, or private wallet keys.

SafePal is a cryptocurrency security company that provides physical hardware wallets and software applications designed to help investors safely store and manage their digital assets.

The latest exploit follows a recent hack of Coldcard hardware wallets, in which the attacker reportedly stole at least $120 million in bitcoin. While the incidents do not necessarily point to a systemic weakness in hardware wallets, they show that no crypto-storage solution is entirely risk-free. They also validate calls to assess concentration risk and, where appropriate, to diversify both crypto holdings and the wallets used to store them.

What happened?

SafePal said on Sunday that it identified an “authorization flaw” in a plug-in used to track customer orders. This flaw likely allowed attackers to see other customers‘ orders. Think of it as a store’s parcel-tracking system allowing one customer to view another customers receipt and delivery details simply by changing the order number.

면책 성명

본 기사의 견해는 저자의 개인적 견해일 뿐이며 본 플랫폼은 투자 권고를 하지 않습니다. 본 플랫폼은 기사 내 정보의 정확성, 완전성, 적시성을 보장하지 않으며, 개인의 기사 내 정보에 의한 손실에 대해 책임을 지지 않습니다.
전편

소식통에 따르면 트럼프 전 대통령, 암호화폐 CEO들과의 백악관 회의 참석 예정

다음

암호화폐 투자자들은 시가총액 순위를 넘어서 기본적인 펀더멘털에 다시 주목하고 있습니다