SafePal Data Breach Exposes Customer Information to Phishing Risks
Crypto wallet provider SafePal has confirmed a security breach that affected nearly 40,000 customers. The incident occurred on Sunday and involved unauthorized access to customer data through a flaw in the order-tracking function of a plug-in related to customer order information.
The compromised data includes name, email address, shipping address, phone number, and purchase details. However, SafePal assures that seed phrases, private keys, bank account details, payment card numbers, and government-issued identification numbers were not accessed.
SafePal has since fixed the issue and introduced additional security measures. An independent third-party security firm is being hired to validate the fix and conduct a comprehensive review of SafePal's order-processing systems.
Binance founder Changpeng Zhao reacted to the data breach, warning users to watch for phishing attempts. He also disclosed that SafePal is a YZiLabs portfolio company.