SafePal Breach Exposes 39K Users to Phishing Risks
A recent data breach affecting SafePal's Order Tracking Plugin has exposed approximately 39,798 users' personal information, including names, emails, shipping addresses, phone numbers, and purchase details.
The vulnerability allowed unauthorized access to customer data placed between March 2025 and April 2026. However, SafePal confirmed that seed phrases, private keys, wallet passwords, payment information, identification documents, and customer funds remained secure.
Affected customers have been notified directly with a verification webpage utilizing order ID and shipping country to verify which of their information had been breached.
The breach has raised concerns about phishing risks for consumers, as attackers now have verifiable information on hardware wallet owners, allowing them to create more socially engineered attacks.