SafePal Data Breach Impacts 40k Customers Amid Hardware Wallet Security Issues
Crypto hardware wallet maker SafePal has confirmed a data breach that impacted nearly 40,000 customers. The incident occurred between March 2, 2025 and April 11, 2026, with stolen information including names, email addresses, shipping addresses, phone numbers, and purchase details.
The breach is the third security issue affecting hardware wallet manufacturers in recent weeks, following incidents at Trezor and Coinkite. SafePal attributed the flaw to an order-tracking function for a plug-in associated with customer order information, which allowed unauthorized access under certain conditions.
SafePal emphasized that all wallets, seed phrases, and private keys remain secure, but warned impacted customers of potential phishing attempts. A hacker has already advertised allegedly stolen information on a dark web cybercriminal forum.