
#SafePalOrderDataLeak
About SafePalOrderDataLeak
SafePal says a flaw in an order-tracking plugin exposed data from ~39,798 customers. Records from Mar 2, 2025 to Apr 11, 2026 included names, contact details, shipping addresses and purchase histories. The flaw is fixed; wallet systems, seed phrases, private keys and payment card data were unaffected. Yet users reported phishing in May using real order and address details, with scammers citing device issues, refunds or firmware updates. Are users safe just because private keys were not leaked?
رائج
الأحدث
SafePalOrderDataLeak المنشورات الشائعة
مُثبَّت
تسريب معلومات حوالي 40,000 مستخدم من SafePal، هل المحفظة الصلبة أقل أمانًا من هاتف iPhone احتياطي؟
أصلي | صحيفة أودايلي الكوكبية (@OdailyChina)
المؤلف | آشر (@Asher_ 0210)
في 16 أغسطس، نشرت شركة SafePal المصنعة لمحافظ الأجهزة بيانًا تفيد فيه بأن الإضافة المستخدمة في وظيفة تتبع الطلبات لديها تحتوي على خلل في التفويض، مما يسمح في ظروف معينة لأشخاص خارجيين بالوصول غير المصرح به إلى معلومات طلبات مستخدمين آخرين. تأثر بهذا الحادث حوالي 39,798 عميلًا، ويشمل ذلك بعض الطلبات بين 2 مارس 2025 و11 أبريل 2026، حيث تم تسريب معلومات مثل الاسم، البريد الإلكتروني، رقم الهاتف، عنوان التسليم وتفاصيل الشراء.
و
⚠️ALERT: SafePal discloses a data breach exposing nearly 40,000 customers' names, home addresses and phone numbers.
A flaw in the hardware wallet maker's order tracking plugin allowed unauthorized access to order details for more than a YEAR, with over 30 phishing sites tied to the stolen data already taken down.
SafePal says seed phrases, private keys and customer funds are NOT affected.
$SLP $BTC #BTCETFsVsLeverage


ALERT: SafePal discloses a data breach exposing nearly 40,000 customers' names, home addresses and phone numbers.
A flaw in the hardware wallet maker's order tracking plugin allowed unauthorized access to order details for more than a YEAR, with over 30 phishing sites tied to the stolen data already taken down.
SafePal says seed phrases, private keys and customer funds are NOT affected.
$SAFE


SafePal says approximately 39,798 customers were affected by a flaw in its order-tracking system. The incident exposed names, emails, phone numbers, shipping addresses, and order details, but did not affect seed phrases, private keys, wallet passwords, or crypto assets.
The vulnerability has been patched and additional security measures introduced. #XiaomiEarningsWatch #30YYieldHits2007High #SanDiskLongTermDeals
SafePal says approximately 39,798 customers were affected by a flaw in its order-tracking system. The incident exposed names, emails, phone numbers, shipping addresses, and order details, but did not affect seed phrases, private keys, wallet passwords, or crypto assets.
The vulnerability has been patched and additional security measures introduced. (DYOR). $SAFE #XiaomiEarningsWatch #30YYieldHits2007High #SanDiskLongTermDeals

The important distinction is between cryptographic safety and user safety. SafePal says roughly 39,798 customers had names, contact details, shipping addresses and purchase histories exposed through an order-tracking plugin, while wallet systems, seed phrases, private keys and card data were unaffected.
That limits direct wallet compromise, but it does not make the incident low-risk. Real order and address details can make phishing about device issues, refunds or firmware updates unusually convincing, as user reports in May illustrate. The fix closes the flaw; sustained skepticism toward personalized support messages remains the stronger defense. Not advice, just analysis.
#SafePalOrderDataLeak








