Swiss Bitcoin Pay takes servers offline after suspected intrusion
Security & Exploits ·
The payment processor says a malicious actor likely breached its internal systems, exposing customer emails, Bitcoin addresses, IBANs, transaction records and hashed passwords.
Swiss Bitcoin Pay disclosed that it detected unauthorized access to its internal infrastructure and responded by pulling its servers offline as a precaution, according to a statement posted on X. The company said the intruder may have reached customer email addresses, Bitcoin wallet addresses, IBAN details, transaction history and hashed password data.
The firm has not confirmed whether additional categories of information were also exposed, saying only that this remains unclear at this stage of its investigation. It has not provided a timeline for when systems will be restored, stating instead that it is working to secure its infrastructure before resuming operations.
Swiss Bitcoin Pay maintained that customer funds have not been affected by the incident and said any balances owed to users will be repaid in full. The company framed the shutdown as a defensive measure taken while it investigates the scope of the breach rather than a response to any loss of assets.
The disclosure has been corroborated by at least one other account describing the same server shutdown and the company's assurance that user funds remain safe, indicating the incident is not an isolated report.
Unresolved questions include the identity or method used by the intruder, the full extent of data accessed beyond what has already been listed, and when the platform will resume normal service. It also remains unknown whether hashed passwords could be at risk of being cracked, or whether affected customers will receive direct notification beyond the public statement already issued.