SafePal Data Breach Exposes Nearly 40,000 Users' Personal Information
Cryptocurrency wallet provider SafePal has disclosed a security incident in which a vulnerability in its order-tracking system was exploited, giving unauthorized parties access to the personal information of approximately 39,798 users. The company announced the breach on August 16.
While details on the exact type of data exposed and the root cause of the plugin flaw remain limited, the incident highlights a recurring risk for businesses that rely on third-party plugins or integrations to run customer-facing systems. Even well-established platforms can be compromised through a single weak link in their software supply chain.
For small and medium businesses, this case is a reminder that any tool connected to customer data—whether it's an order tracker, booking system, or plugin—needs to be kept updated and regularly reviewed for known vulnerabilities. Businesses that handle customer data through third-party software should also have a plan in place for quickly identifying and responding to breaches when they occur.