SafePal data breach impacts 39,798 customers, stolen info for sale
August 16, 2026 · BleepingComputer · Severity: CRITICAL
SafePal, a cryptocurrency hardware wallet provider, has disclosed a data breach impacting approximately 39,798 customers. The breach occurred when an unidentified flaw was exploited, allowing attackers to access and steal customer order information, including potentially sensitive details related to purchases. SafePal has notified affected users and is working to secure its systems, while urging customers to remain vigilant against phishing attempts and unauthorized activity. Following the incident, a threat actor has publicly claimed to be selling the stolen data, raising concerns about further misuse of the information. This event highlights ongoing vulnerabilities in the crypto ecosystem, where even hardware wallet providers face risks of data compromise through system exploits. Customers are advised to monitor their accounts and personal information for signs of fraudulent use.
Key Takeaways
- SafePal data breach exposed order info of 39,798 customers due to an exploited flaw.
- A threat actor is now selling the stolen customer data on underground forums.
- The incident underscores security risks in cryptocurrency hardware wallet supply chains.