Crypto Times Logo Black
Google News Follow Banner
  • News
    • Market
    • Bitcoin
    • Ethereum
    • Altcoins
    • Regulations & Policies
    • DeFi News
    • Blockchain News
    • Industry
  • Exclusive
    ExclusiveShow More
    Is ‘Paul Le Roux’ Really Satoshi Nakamoto What the Record Actually Shows
    Is ‘Paul Le Roux’ Really Satoshi Nakamoto? What the Record Actually Shows
    Bitget exchange coin token set in front of a blurred FTX building backdrop.
    Is Bitget the Next FTX? What the $351.6 Million Hack Does and Doesn’t Have in Common
    Gold Bitcoin BTC coin standing vertically in front of a rising green financial candlestick chart
    Inside Bitcoin’s September 2026 Rally: BTC Reclaiming $87K, $2B in ETF Inflows and a Short Squeeze
    CLARITY Act Fails 49-50 in US Senate as SEC & CFTC Move Ahead on Crypto Rules Within 48 Hours
    CLARITY Act Fails 49-50 in US Senate as SEC & CFTC Move Ahead on Crypto Rules Within 48 Hours
    Illustrated collage featuring diverse people surrounded by crypto symbols and a corporate boardroom backdrop.
    Quiet Racism in Crypto Gets “Obvious” During Circle’s Arc Mainnet Launch
  • Opinion
    OpinionShow More
    Comparison of Bybit 12-hour, Bitget 85-hour, and WazirX 463-day response timers
    Bitget, Bybit Paid in Hours; WazirX Lost Least in Hacks at $235M, Held Users Hostage for 463 Days
    Jackson Hole 2026: Crypto Is No Longer Outside the Fed’s Door
    Jackson Hole 2026: Crypto Is No Longer Outside the Fed’s Door
    The Architecture of Trust Same Routes, New Risks in Global Tokenisation
    The Architecture of Trust: Same Routes, New Risks in Global Tokenisation
    The Architecture of Trust What 4,000 Years of Trade Teach Us About RWA Tokenisation
    The Architecture of Trust: What 4,000 Years of Trade Teach Us About RWA Tokenisation
    One P2P Trade, Months of Limbo Why Innocent Indian Crypto Users Keep Paying the Price
    One P2P Trade, Months of Limbo: Why Innocent Indian Crypto Users Keep Paying the Price
  • Learn
    • Explained
    • How To
    • Insights
  • IndicesNew
    • India USDT Premium Index
    • India USDC Premium Index
  • Videos
  • More
    • About Us
    • Our Authors
    • Contact Us
    • Editorial Policy
    • Daily Crypto Puzzles
The Crypto TimesThe Crypto Times
  • All News
  • Market
  • Bitcoin
  • Ethereum
  • Altcoins
  • Regulations & Policies
  • Blockchain
  • DeFi
  • Industry
  • Exclusive
  • Opinion
Search
  • News
    • Market
    • Bitcoin
    • Ethereum
    • Altcoins
    • Regulations & Policies
    • Blockchain
    • DeFi
    • Industry
    • Exclusive
    • Opinion
  • Learn
    • Explained
    • How To
    • Insights
  • IndicesNew
    • India USDT Premium Index
    • India USDC Premium Index
  • Quick Links
    • About Us
    • Our Authors
    • Contact Us
    • Editorial Policy
    • AI Policy
    • Sponsored & Advertorial Policy
    • Daily Crypto Puzzles
  • Videos
  • Glossary
Follow US
© 2026 By Crypto Times. All Rights Reserved.
Industry

Binance-Backed SafePal Data Leak Sparks Phishing Fears for 40K Buyers

SafePal said 39,798 buyers had their personal data exposed through an order-tracking flaw, while seed phrases, private keys and funds remained secure.

Written By Dishita Malvania
Published 2026-08-16·Updated 1 month ago
Make The Crypto Times preferred on GoogleGoogle
Binance-Backed SafePal Data Leak Sparks Phishing Fears for 40K Buyers

Crypto hardware wallet provider SafePal has disclosed a security breach that exposed the personal information of nearly 40,000 customers, marking the latest in a wave of data leaks striking the hardware wallet industry. 

The Binance Labs-backed company confirmed that names, physical addresses, and contact details were compromised through an authorization flaw in one of its order-tracking plug-ins, though it stressed that seed phrases, private keys, and customer funds remain fully secure.

AI Summary
Show
A flaw in SafePal’s order-tracking system allowed unauthorized access to customer data, including names and addresses, for nearly 40,000 users.
The breach occurred due to an authorization flaw in a plug-in, enabling others to view order details by changing the order number, between March 2025 and April 2026.
SafePal has patched the vulnerability, notified affected customers, and taken down over 30 fraudulent websites tied to the stolen data to mitigate further phishing risks.

What Happened

According to SafePal’s official disclosure posted on Sunday, the incident stemmed from an “authorization flaw” in a plug-in used to track customer orders. The vulnerability allowed unauthorized parties to view other customers’ order details, functioning much like a parcel-tracking system that lets one customer see another’s receipt and delivery information simply by changing the order number.

The breach affected 39,798 customers who placed orders between March 2, 2025, and April 11, 2026. Exposed data included customer names, physical addresses, and phone numbers, according to disclosures.

The company emphasized that its core wallet security was never touched, confirming that users’ seed phrases, private keys, bank passwords, bank account information, payment card numbers, and government-issued IDs were not compromised. However, SafePal warned that anyone who has already shared their private keys or seed phrases through a phishing email, phone call, or letter should treat their wallet as compromised and immediately move assets to a new wallet.

SafePal’s Response

SafePal said it has patched the vulnerability and rolled out additional security measures. The company notified all affected customers by email from security@safepal.com on Sunday and hired an independent third-party security firm to audit the fix and review its order-processing systems.

The wallet maker also confirmed it has identified and taken down more than 30 fraudulent websites and phishing links tied to the stolen data. Going forward, SafePal said it will retain customer personal data in its order-processing system for only 90 days from the date of collection.

Customers can use a verification tool on SafePal’s website to check whether their data was affected in the incident.

Former Binance CEO Changpeng Zhao weighed in on the disclosure, amplifying the warning to users, while onchain analyst Stacy Muur highlighted the phishing risks tied to the leaked buyer database. The breach lands during an unusually tense stretch for the self-custody community, following recent warnings from CZ that even hardware wallets are not immune to bugs.

A Widening Pattern of Hardware Wallet Data Leaks

SafePal’s disclosure comes just days after Trezor confirmed a separate incident in which its shipping partner ShipMonk was hacked, exposing personal data of roughly 14,000 Trezor customers across seven countries. The two disclosures within a single week have raised fresh alarm about how customer data is handled by hardware wallet makers and their third-party partners.

The SafePal breach also follows the massive Coldcard hardware wallet exploit, in which attackers drained more than $130 million in Bitcoin by abusing a five-year-old firmware flaw that generated weak recovery seeds. Galaxy Research recently assessed that Coldcard attackers likely used unrestricted AI models to identify and exploit the vulnerability.

The incident echoes the infamous 2020 Ledger breach, which exposed more than one million email addresses and hundreds of thousands of customer records, kicking off a phishing and physical-extortion campaign that continues to haunt affected users years later. 

According to Chainalysis data cited in Trezor’s disclosure, roughly $30 million had already been stolen in violent crypto attacks by mid-2026, with home invasions accounting for 37% of incidents.

What Users Should Do

Affected SafePal customers should treat any unsolicited email, phone call, letter, or courier delivery claiming to come from SafePal as suspicious, verify all communications through official channels, and under no circumstances share their seed phrase or private keys, even if a caller already knows their name, address, and past order details. 

Users who suspect their wallet may have already been compromised through phishing should migrate their funds to a freshly generated wallet without delay.

Also Read: Binance Account Rental Scam: How Fraudsters Lure Crypto Users with Promises of Easy Money

Disclaimer: The information researched and reported by The Crypto Times is for informational purposes only and is not a substitute for professional financial advice. Investing in crypto assets involves significant risk due to market volatility. Always Do Your Own Research (DYOR) and consult with a qualified Financial Advisor before making any investment decisions.

Follow The Crypto Times on Google News to Stay Updated!      Google News

Daily Crypto Puzzles
Tickerdle Tickerdle Crypto Connections Crypto Connections Crypto Crossword Crypto Crossword
TAGGED:BinanceCrypto Hack
Share This Article
Whatsapp Whatsapp LinkedIn Telegram Copy Link

Daily Crypto Puzzles

Tickerdle crypto game Tickerdle Crypto Connections game Crypto Connections Crypto Crossword game Crypto Crossword

Latest News

Base and Cobalt partnership graphic featuring both brand logos separated by a vertical blue light divider.
Base Launches Cobalt Upgrade With New Trading and Tokenization Tools
U.S. Treasury Sanctions 10 TdA-Linked Targets Over ATM Jackpotting
U.S. Treasury Sanctions 10 TdA-Linked Targets Over ATM Jackpotting
Hand holding a smartphone displaying the Drift Protocol logo, with a blurred 3D Drift wall sign in the background.
Drift Recovers $9.2M of $295M Stolen Funds as Recovery Efforts Continue
White Cardano Foundation logo and brand name displayed against a blue gradient background.
Cardano, Petrobras Test Blockchain for Renewable Fuel Tracking in Brazil
Red TRON geometric logo alongside black 3D TRON typography mounted on a light grey wall.
TRON Releases Mandatory GreatVoyage-v4.8.2.3 Node Upgrade 

Find Us on Socials

You may also like

BTC Holds Range as Long-Term Holders Account for More Realized Profit

BTC Holds Range as Long-Term Holders Account for More Realized Profit

Physical Bitcoin coin with handcuffs, a judge's gavel, and an officer wearing UK National Crime Agency (NCA) uniform in a courtroom setting.

Ex-NCA Officer Ordered to Pay £1.8M Over Stolen Bitcoin

Open Standard Debuts OUSD Stablecoin Across Base, Ethereum, Solana

Open Standard Debuts OUSD Stablecoin Across Base, Ethereum, Solana

Official Commodity Futures Trading Commission (CFTC) seal mounted on a red brick wall.

CFTC Secures $31 Million Default Judgment in Digital Assets Fraud Case

The Crypto Times Logo PNG

News

All News
Market News
Bitcoin News
Ethereum News
Altcoin News
Regulations & Policies
DeFi News
Blockchain News
Industry News

Sections

Exclusive
Opinions
Learn
Insights
Videos
Glossary

India Premium Indices

Stablecoins
USDT
USDC

Play

Daily Crypto Puzzles
Tickerdle
Crypto Connections
Crypto Crossword

Company

About Us
Our Authors
Masthead
Editorial Policy
AI Policy
Advertorial Policy
Contact Us
Career

Follow Us

X-twitter Linkedin Telegram Youtube Instagram

© 2026 The Crypto Times | A BITROCK TECHNOLOGIES L.L.C. Company.

DMCA.com Protection Status
  • Terms and Conditions
  • Disclaimer
  • Privacy Policy
  • Cookie policy
Do Not Sell or Share My Personal Information