Crypto Service Implodes: Swiss Bitcoin Pay Shuts Down After Devastating Data Breach
Swiss Bitcoin Pay, a non-custodial bitcoin payment processor, has temporarily shut down its servers following a data breach that potentially exposed sensitive customer information. This incident is the latest in a series of cybersecurity compromises affecting prominent cryptocurrency and fintech firms in 2026, highlighting a growing trend of malicious attacks.
Swiss Bitcoin Pay, a non-custodial bitcoin payment processor based in Neuchâtel, Switzerland, announced a temporary shutdown of its servers following a data breach on Monday, September 14, 2026. The company confirmed that user funds remained safe but warned that customer email addresses, bitcoin addresses, IBANs, transaction history, and hashed passwords were believed to have been breached. A malicious user is suspected to have gained unauthorized access to Swiss Bitcoin Pay’s internal systems.
As a precautionary measure, the company stated, "we are temporarily shutting down our servers while we investigate and secure our infrastructure." Swiss Bitcoin Pay reiterated its commitment to security, adding that "User funds are safe, and any amounts owed to users will be fully returned." The firm enables businesses to accept Bitcoin payments swiftly and easily, supporting both on-chain transactions and the Lightning Network.
This incident is part of a broader trend of data breaches impacting the bitcoin and wider fintech industries in 2026. Just prior to Swiss Bitcoin Pay's announcement, Revolut confirmed that customer passports, driver’s licenses, verification selfies, and transaction histories were exposed to an unauthorized party. This occurred due to fraudulent requests originating from a seemingly legitimate government agency’s email domain. Similarly, hardware wallet manufacturer Trezor issued a warning about a data breach at its third-party marketing platform, which subsequently led to criminals orchestrating phishing attacks against its customers.
The targeting of data by criminals has intensified throughout 2026. In January, scammers successfully acquired customer information via crypto wallet Ledger’s payment processor, Global-e, to send phishing emails. More recently, crypto wallet provider SafePal announced a data breach affecting approximately 39,798 customers, involving unauthorized access to order information and personal details such as names, addresses, and purchase data.