Industry News

Swiss Bitcoin Pay Takes Servers Offline After Customer Data Breach

Bitcoin Magazine · 15 Sept 2026
Key Takeaway If your business uses crypto or fintech payment providers, watch for breach notifications and treat any unexpected emails referencing your account details as potential phishing attempts, even if the sender looks legitimate.

Swiss Bitcoin Pay, a non-custodial bitcoin payment processor based in Neuchâtel, Switzerland, took its servers offline on Monday after detecting a data breach. The company believes an attacker gained access to its internal systems and may have obtained customer email addresses, bitcoin addresses, IBANs, transaction history and hashed passwords. Swiss Bitcoin Pay said customer funds remain safe and that any amounts owed to users will be fully returned, while it investigates and secures its infrastructure.

The incident adds to a growing list of breaches hitting bitcoin and fintech companies in recent weeks. Revolut recently confirmed that customer passports, driver's licenses, verification selfies and transaction histories were handed to an unauthorised party posing as a legitimate government agency. Hardware wallet maker Trezor also warned customers of phishing risks after a breach at a third-party marketing platform it uses for newsletters. Earlier incidents include a breach at Ledger's payment processor Global-e and a data exposure affecting nearly 40,000 SafePal customers.

These repeated incidents suggest criminals are increasingly targeting customer data held by crypto and fintech service providers, often to enable follow-up phishing campaigns rather than direct theft of funds.

Carrying this risk through a supplier? Assessing third-party and supply chain security ->

Summarised by CISO AI from Bitcoin Magazine. We link back to every original so you can read it yourself.