Swiss Bitcoin Pay Temporarily Shuts Down Servers After Data Breach
Key Takeaways
- •Swiss Bitcoin Pay, a non-custodial bitcoin payment processor based in Neuchâtel, Switzerland, temporarily shut down its servers after saying a malicious user likely gained access to its internal systems.
- •Data believed to be compromised includes customer email addresses, bitcoin addresses and IBANs, transaction histories, and hashed passwords, while the company states user funds are safe and owed amounts will be fully returned.
- •The breach is part of a broader wave of 2026 incidents targeting bitcoin and fintech firms, following breaches disclosed by Revolut and Trezor, a January attack using data obtained through Ledger's processor Global-e, and SafePal's exposure of order information for about 39,798 customers.
- •Swiss Bitcoin Pay enables businesses to accept bitcoin payments through both on-chain transactions and the Lightning Network.

Swiss Bitcoin Pay, a non-custodial bitcoin payment processor based in Neuchâtel, Switzerland, said Monday that it had temporarily shut down its servers following a data breach.
The company said user funds were safe, but customer email addresses, bitcoin addresses and IBANs, transaction histories, and hashed passwords were believed to have been compromised.
“A malicious user has likely gained access to Swiss Bitcoin Pay’s internal systems,” the company said in a post on X dated September 14, 2026. “As a precaution, we are temporarily shutting down our servers while we investigate and secure our infrastructure. At this stage, we believe they may have accessed customer email addresses, Bitcoin…”
Swiss Bitcoin Pay added: “User funds are safe, and any amounts owed to users will be fully returned.” The company did not immediately respond to Bitcoin Magazine’s request for comment.
The announcement comes amid a series of breaches affecting bitcoin and fintech firms. Revolut confirmed last week that it had handed customer passports, driver’s licenses, verification selfies, and transaction histories to an unauthorized party that sent fraudulent requests from an email domain belonging to a legitimate government agency.
Trezor, a leading hardware-wallet manufacturer, also warned last week that a breach at the third-party marketing platform it uses to distribute newsletters was enabling criminals to target customers with phishing attacks. Bitcoin Magazine reported on the incident in its coverage of the Trezor data breach.
Swiss Bitcoin Pay enables businesses to accept bitcoin payments through both on-chain transactions and the Lightning Network.
Criminals have increasingly targeted customer data in 2026. In January, scammers obtained customer information through Global-e, the payment processor used by crypto wallet company Ledger, and used it to send phishing emails.
Crypto wallet provider SafePal also announced a data breach last month involving unauthorized access to the order information of about 39,798 customers. The information included personal details such as names, addresses, and purchase data.
The original report was published by Bitcoin Magazine on September 14, 2026, and written by Mathew Di Salvo: https://bitcoinmagazine.com/news/swiss-bitcoin-pay-data-breach