ATLAS · LIVE
ATLAS INDEX
Δ 24H
ACTIVE SOURCES20
HOTSPOTS20
TIME23:58:05 UTC
← All briefs
MODERATECyber IntelligenceMonday, August 17, 2026

SafePal breach exposes 39,798 crypto wallet customers to credential theft

Hardware wallet provider confirms exploit of system flaw; stolen order data now advertised for sale by threat actor on underground markets.

SafePal, a cryptocurrency hardware wallet provider, disclosed a data breach affecting approximately 39,798 customers after an attacker exploited a vulnerability to extract customer order information. The company has confirmed the incident and warned affected users that their data is now being offered for sale by a threat actor.

The breach centers on customer order records, which typically include names, shipping addresses, email addresses, and phone numbers. While SafePal has not disclosed the technical nature of the flaw exploited, the company confirmed that the vulnerability allowed unauthorized access to its customer database. The threat actor is actively advertising the stolen dataset on underground forums, raising the risk of follow-on phishing campaigns and targeted social engineering attacks against cryptocurrency holders.

SafePal's customer base consists primarily of individuals holding digital assets, making the exposed data particularly valuable to attackers. Cryptocurrency users are frequent targets of sophisticated phishing schemes designed to trick victims into revealing seed phrases or private keys. The breach does not appear to have compromised wallet security directly, but the exposure of customer identities creates a vector for credential harvesting and account takeover attempts.

The rest of this brief is inside the platform

Continue reading. Free.

A free Atlas account unlocks the full briefing, the co-analyst, daily delivery to your inbox, and a sector-personalised feed.

Full brief
Implications, sources, methodology
Co-Analyst
Ask follow-ups on every brief
Sector feed
Briefs filtered to what matters to you
Implications
  • 01Affected customers face elevated phishing and social engineering risk targeting crypto holdings
  • 02SafePal's reputation among security-conscious crypto users may erode without transparent remediation
  • 03Competitors may face scrutiny over their own customer data protection practices
  • 04Law enforcement agencies tracking crypto-related cybercrime gain new dataset for attribution
Source
BleepingComputer
https://www.bleepingcomputer.com/news/security/safepal-data-breach-impacts-39-798-customers-stolen-info-for-sale/
Brief is editorial commentary by Atlas Intelligence based on the cited public reporting. Atlas does not reproduce source text. Verify primary source before action.
#data breach#cryptocurrency#hardware wallet#customer data#phishing risk#safepal
Related Briefs