Skip to content

Coins

Swiss Bitcoin Pay Shuts Down Servers After Data Breach

Swiss Bitcoin Pay Takes Servers Offline Following Data Breach Swiss Bitcoin Pay, a non-custodial bitcoin payment processor based in Neuchâtel, Switzerland, announced Monday that it had temporarily shut down its...

Swiss Bitcoin Pay Takes Servers Offline Following Data Breach

Swiss Bitcoin Pay, a non-custodial bitcoin payment processor based in Neuchâtel, Switzerland, announced Monday that it had temporarily shut down its servers after detecting a data breach. The company stated that user funds remain secure, though customer email addresses, bitcoin addresses, IBANs, transaction histories, and hashed passwords are believed to have been compromised.

Breach Details and Company Response

According to a statement posted on X (formerly Twitter), the company confirmed that a malicious actor likely gained access to its internal systems. The full statement reads:

“A malicious user has likely gained access to Swiss Bitcoin Pay’s internal systems. As a precaution, we are temporarily shutting down our servers while we investigate and secure our infrastructure.At this stage, we believe they may have accessed customer email addresses, Bitcoin…”

In a follow-up announcement, Swiss Bitcoin Pay reiterated the situation and sought to reassure users:

“A malicious user has likely gained access to Swiss Bitcoin Pay’s internal systems …As a precaution, we are temporarily shutting down our servers while we investigate and secure our infrastructure.” Swiss Bitcoin Pay said on Monday.

“User funds are safe, and any amounts owed to users will be fully returned.”

The company did not immediately respond to Bitcoin Magazine’s request for additional comment. Swiss Bitcoin Pay enables businesses to accept bitcoin payments using both on-chain transactions and the Lightning Network.

Part of a Broader Trend in 2026

The incident adds to a growing list of data breaches affecting bitcoin and fintech firms this year. Last week, Revolut confirmed it had provided customer passports, driver’s licenses, verification selfies, and transaction histories to an unauthorized party that sent fraudulent requests from a legitimate government agency’s email domain.

Also last week, hardware wallet manufacturer Trezor warned customers that a data breach at a third-party marketing platform used for newsletter distribution had exposed user data, leading to targeted phishing attacks.

Earlier in 2026, criminals obtained customer information through Ledger’s payment processor, Global-e, to conduct phishing campaigns. In August, crypto wallet provider SafePal disclosed a breach involving unauthorized access to approximately 39,798 customers’ order information, including names, addresses, and purchase data.

Evan Mercer

Penulis

Evan Mercer covers coins, digital assets and the market stories shaping everyday conversations about money. His work focuses on accessible explanations, useful context and the signals behind sudden moves.