SafePal Breach Exposes 39,798 Buyers as Stolen Records Hit Cybercrime Forum
SafePal disclosed on Aug. 16 that an authorization flaw in an order-tracking plug-in exposed the personal data of 39,798 customers, with a threat actor already advertising the records for sale on a cybercrime forum.
• It is the second hardware wallet customer database exposed in three days — Trezor disclosed on Aug. 13 that a breach at fulfillment partner ShipMonk exposed data for 13,689 customers.
#DeFi #SafePal #Trezor #Security #HardwareWallet #Cybercrime
@DeFiYieldChannel
SafePal disclosed on Aug. 16 that an authorization flaw in an order-tracking plug-in exposed the personal data of 39,798 customers, with a threat actor already advertising the records for sale on a cybercrime forum.
• The flaw affected orders placed between March 2, 2025, and April 11, 2026, leaking names, email addresses, shipping addresses, phone numbers and purchase details.
• Seed phrases, private keys, wallet passwords, bank account information and payment card numbers were not compromised, and there is no evidence of wallet or fund access.
• The file pairs home addresses and phone numbers with proof of hardware wallet ownership, making it a targeting list for phishing and physical robbery.
• SafePal emailed affected customers on Aug. 16, took down over 30 fraudulent websites and phishing links, cut personal data retention to 90 days, and is engaging an independent security firm to validate the fix.
• It is the second hardware wallet customer database exposed in three days — Trezor disclosed on Aug. 13 that a breach at fulfillment partner ShipMonk exposed data for 13,689 customers.
#DeFi #SafePal #Trezor #Security #HardwareWallet #Cybercrime
@DeFiYieldChannel