{"id":32470,"date":"2026-09-15T11:37:32","date_gmt":"2026-09-15T10:37:32","guid":{"rendered":"https:\/\/investx.fr\/en\/2026\/09\/15\/swiss-bitcoin-pay-offline-internal-breach-customer-data-exposed\/"},"modified":"2026-09-15T11:37:39","modified_gmt":"2026-09-15T10:37:39","slug":"swiss-bitcoin-pay-offline-internal-breach-customer-data-exposed","status":"publish","type":"post","link":"https:\/\/investx.fr\/en\/crypto-news\/swiss-bitcoin-pay-offline-internal-breach-customer-data-exposed\/","title":{"rendered":"Swiss Bitcoin Pay Goes Offline After Internal Breach: Customer Data Exposed"},"content":{"rendered":"\n
A Swiss-based Bitcoin payment processor<\/strong> has shut down access to its platform after detecting malicious activity on its internal systems. Sensitive customer data may have been compromised.<\/p>\n\n\n\n The incident raises critical questions about the security of non-custodial infrastructure<\/strong>, often marketed as safer than centralized exchanges<\/a><\/strong>. The reality, as it turns out, is more nuanced.<\/p>\n\n\n\n Here is what we know so far, and what it means for the merchants and users affected.<\/p>\n\n\n\n Swiss Bitcoin Pay<\/strong>, a company founded in late 2022 and headquartered in Neuch\u00e2tel, operates as a non-custodial Bitcoin payment processor<\/strong> for merchants, supporting both on-chain transactions and the Lightning Network<\/a><\/strong>. On September 15, 2026, the company announced via X that it had temporarily taken all of its servers offline after detecting that a malicious actor had likely gained access to its internal systems.<\/p>\n\n\n\n According to the company’s official statement, the data potentially exposed includes: email addresses, Bitcoin addresses, IBANs, transaction histories, and hashed passwords<\/strong>. The company notes that it has not yet been established whether additional data was affected, and that the investigation remains ongoing.<\/p>\n\n\n\n On the financial side, Swiss Bitcoin Pay<\/strong> has confirmed that user funds are safe and that any outstanding amounts will be returned in full. The service’s non-custodial architecture<\/strong> \u2014 whereby payments are routed directly to merchants’ wallets \u2014 mechanically limits exposure to fund losses. No reopening date has been communicated at this stage.<\/p>\n\n\n\n The most concerning aspect of this incident is not the loss of funds \u2014 which, at this stage, appears to be nonexistent \u2014 but rather the nature of the data exposed<\/strong>. The combination of Bitcoin addresses<\/strong>, IBANs<\/strong>, and transaction histories<\/strong> amounts to a complete financial profile. This type of data can be exploited for targeted phishing attacks<\/strong>, social engineering<\/strong>, or, in the most serious cases, physical extortion attempts \u2014 the notorious so-called “$5 wrench attacks.”<\/p>\n\n\n\n The fact that passwords were hashed is a sound security practice, but it does not guarantee their integrity if weak hashing algorithms or insufficient salts were used. Swiss Bitcoin Pay<\/strong> has not yet disclosed the hashing method employed \u2014 information that affected users are fully entitled to demand.<\/p>\n\n\n\n This incident also serves as a reminder that the non-custodial model<\/strong> protects funds, but not necessarily financial metadata<\/strong>. In an ecosystem where privacy is a core value, the centralization of KYC<\/a><\/strong> and transactional data remains a structural attack vector, regardless of the asset custody model in place.<\/p>\n\n\n\n If you use or have previously used Swiss Bitcoin Pay<\/strong>, several steps should be taken immediately, without waiting for the investigation to conclude. First and foremost, change your password immediately<\/strong> on any platform where you use the same credentials \u2014 password reuse remains one of the most widely exploited attack vectors. Enable two-factor authentication (2FA)<\/strong> wherever it is available.<\/p>\n\n\n\n Next, closely monitor any Bitcoin addresses<\/strong> linked to the platform. While funds have been declared safe, maintaining heightened vigilance over incoming and outgoing transactions is strongly advised. If you have associated an IBAN<\/strong> with your account, notify your bank of the incident as a precautionary measure.<\/p>\n\n\n\n Finally, be wary of any unsolicited contact in the coming weeks \u2014 phishing emails<\/a><\/strong>, fake technical support messages, or social media outreach claiming to come from Swiss Bitcoin Pay<\/strong>. The company has stated that it will communicate exclusively through its official X account for the duration of the investigation.<\/p>\n\n\n\nInternal Breach at Swiss Bitcoin Pay: What Happened<\/h2>\n\n\n\n
Why This Incident Goes Beyond a Simple Security Bug<\/h2>\n\n\n\n
<\/figure>\n\n\n\nWhat Swiss Bitcoin Pay Users Should Do Right Now<\/h2>\n\n\n\n