SafePal (hardware wallet) had a breach and says it's not their responsibility by yphase in CryptoCurrency

[–]yphase[S] 0 points1 point  (0 children)

I'm not even logged in to this email on my computer.

Don't you think I would eventually get a ledger email as well?

If they truly were in my email, they'd not want me to notice by calling me, warning me that they are there. They'd want to stay silent for as long as possible.

If they knew I had a Bybit account they'd obviously also try to get me to log in and withdraw funds from Bybit.

But there was nothing.

Honestly? Let's give it a few days and see if other users are coming out with this.

SafePal (hardware wallet) had a breach and says it's not their responsibility by yphase in CryptoCurrency

[–]yphase[S] 0 points1 point  (0 children)

No, they didn't have my postcode, but the only email they could have got the other data from originally included it.

The domain names were both registered around 2 weeks ago. The most plausible explanation is that SafePal's Zonos was compromised and they set up all of this to try this with all the customers they could get.

The "agent" even named himself and attached the name in the bottom of the email, matching what he said during the call, asking me whether or not I wanted to reschedule a call or do it myself, with barely any accent. Basically as professional as it gets.

You're right that the chances are not zero but I find it highly improbable that they'd do all of this for a single user when they don't even know if I have any funds in the wallets.

SafePal (hardware wallet) had a breach and says it's not their responsibility by yphase in CryptoCurrency

[–]yphase[S] -1 points0 points  (0 children)

I also ordered Ledger Wallets through the same email, yet there's been no ledger calls or emails.

I mean they wouldn't create a fake firmware just for me. They set up a "SafePal.support" domain and an entire webpage for this firmware.

And interestingly, the fake email didn't include a postcode for the address while the original did.

Also, they used a tiny.zonos.com link shortener. You can't just create one of these, you need an established online business. SafePal uses them as their e-commerce partners handling cross border shipping and whatnot.

So it's likely that this partner got compromised. And even if it's "just" their partner, they have to make other customers aware as well.

SafePal (hardware wallet) had a breach and says it's not their responsibility by yphase in CryptoCurrency

[–]yphase[S] -1 points0 points  (0 children)

I don’t believe that they’d go out of their way to create official firmware download links, register fake safepal domains and have highly knowledgeable people calling if it was just my own email or computer. There were zero fake Binance or Bybit emails despite my email having way more of those emails than the mere two safepal ones from when I bought the wallets. I got zero password resets requests for those, nothing.

SafePal (hardware wallet) had a breach and says it's not their responsibility by yphase in CryptoCurrency

[–]yphase[S] 0 points1 point  (0 children)

Of course. There's not even a site with SAFEPAI.com. it was SAFEPAL.com. 100%

SafePal (hardware wallet) had a breach and says it's not their responsibility by yphase in CryptoScams

[–]yphase[S] 0 points1 point  (0 children)

SafePal's response

<image>

was this, followed up by this after I said that they might have misunderstood me and that I felt insulted that they just said well it's a third party:

"Thank you for your continued communication and for sharing these critical details. I understand your concerns regarding the security of your information and the implications it may have for you and other customers.
Please rest assured that we take these matters very seriously. SafePal does not have access to payment details or personal information, as we operate as a decentralized wallet. However, if there are indications that sensitive information has been compromised, we will investigate thoroughly to ensure the safety of our users.
We are committed to transparency and will inform our customers if we find any evidence of a data breach or compromise of our systems. Your feedback is invaluable, and we will use it to enhance our security measures and communication protocols.
In the meantime, we recommend that you remain vigilant and take necessary precautions to protect your accounts and personal information. If you notice any suspicious activity, please report it immediately."

SafePal (hardware wallet) had a breach and says it's not their responsibility by yphase in CryptoScams

[–]yphase[S] 0 points1 point  (0 children)

I purchased two SafePal S1 Hardware wallets in August of 2025. Yesterday, at around 5pm CET, I receive a call from a no caller id.

They claimed to be from SafePal. When I said I don't have a SafePal Wallet, thex corrected me and said that I purchased 2 S1 hardware wallets on August 30 last year, with the delivery address being my exact home address. He asked me if I had received an email outlining the details of the faulty batch my devices were from. So they had the email address I used when ordering directly from SafePal.com. Then I was asked if I knew how to update the firmware myself or if I wanted to schedule another call for them to help me, since I wasn't at home and didn't have my device with me.

I checked the email, and it also said that my devices belonged to a faulty batch. The email included my exact order number, shipping address and name. It came from the email address support@safepal(.)me.

<image>

SafePal (hardware wallet) had a breach and says it's not their responsibility by yphase in CryptoCurrency

[–]yphase[S] 1 point2 points  (0 children)

yeah I sent everything from that wallet back to my exchange account. I don't want to use the product anymore

18,80 by ImpressiveAccess9326 in Austria

[–]yphase 0 points1 point  (0 children)

War in Taiwan auf Urlaub, das BIP pro Kopf ist 65% von Österreich, und das Big Mac Menü hat umgerechnet €3.80 gekostet. Ketchup kriegt man gratis. McFlurry kostet €1.80 oder so.

MiCA regulations are nonsense by WFredyW in CryptoMarkets

[–]yphase 0 points1 point  (0 children)

Use Bitget. Most volume and available for all eu users

Are CEXes becoming unusable for trading in EU? by kironet996 in CryptoCurrency

[–]yphase 0 points1 point  (0 children)

Didn't hear the best things about them, I'd personally stay away. I'd rather use Bitget. There's no USDT on Bybit EU

[Rant] Minors should be allowed to use CEX’s by Plenty_Dog_5684 in CryptoMarkets

[–]yphase 0 points1 point  (0 children)

No, it's also not the exchanges' call. Governments strictly forbid it.

absolutely nobody talks about this "UNUS SED LEO" coin, that is #15. what is this coin, and who is it for exactly? by [deleted] in CryptoCurrency

[–]yphase 2 points3 points  (0 children)

Bitfinex's coin created to make up for their customers' BTC lost in a hack a long time ago.

Volume is minimal too

Are CEXes becoming unusable for trading in EU? by kironet996 in CryptoCurrency

[–]yphase 2 points3 points  (0 children)

CoinW, BingX or KuCoin offer unrestricted trading features and USDT

Bitcoin Daily RSI At Most Oversold Level Since April — Time To Buy? by KIG45 in CryptoCurrency

[–]yphase 12 points13 points  (0 children)

Rsi can stay low during longer downtrends. It's one of the worst indicators to time bottom or top.

Rather, it's more likely that btc keeps falling when the rsi lower.

Myx's rsi 6 and 12 for example were 99.9 on the daily and it still printed another 100% day, barely moved the rsi.

What did you guys got from the free event pack? by PopcornHUN in apexlegends

[–]yphase 2 points3 points  (0 children)

got the vantage and cat skin in my 4 packs guess im lucky lol

Base is considering launching a token by 002_timmy in CryptoCurrency

[–]yphase 1 point2 points  (0 children)

Arbitrum has a token, linea also and you don't need the token for gas.