SafePal Security Incident Exposes Data of 40,000 Users
A security incident at cryptocurrency wallet service provider SafePal exposed personal information of nearly 40,000 users due to an authorization vulnerability in its order-tracking plugin.
The compromised data includes customer names, contact information, delivery addresses, and transaction details, but critical security elements such as seed phrases, private keys, and wallet access passwords remained protected.
SafePal has removed over 30 fraudulent websites created following the security incident and is implementing stricter data retention policies and engaging external security auditors to verify the effectiveness of its remediation efforts.
The company emphasizes that no evidence suggests any cryptocurrency wallets or user funds were directly accessed or compromised as a result of this security incident.