HomeCoinsBitcoinBitcoin purchases halted after data breach puts 250,000 crypto users at risk

Bitcoin purchases halted after data breach puts 250,000 crypto users at risk

Israel’s largest regulated cryptocurrency broker, Bits of Gold, is investigating a data breach that potentially exposed the personal information of up to 250,000 customers.

While customer funds and digital assets remain secure, the incident prompted Israeli retail and energy giant Paz to temporarily halt Bitcoin purchases on its Yellow convenience store app.

In an Aug. 16 notice, Bits of Gold confirmed that an unauthorized party accessed a supporting data-analysis system several days earlier. The firm is Israel’s first licensed virtual asset service provider.

Related Reading

Israel and Pakistan show crypto’s next growth phase is likely to be outside the US

New moves in Israel and Pakistan test whether crypto can move beyond exposure and into local money, banking, and payments.

Apr 29, 2026 · Liam ‘Akiba’ Wright

The potentially exposed data includes names, national identity numbers, phone numbers, email and IP addresses, bank-account details and public crypto wallet addresses.

Read More:  Aug. 7 final spending day

Account passwords and identification-document images were not exposed. Bits of Gold also said it does not hold customers’ private keys, full card details or CVV codes.

This incident adds to a growing number of crypto-sector breaches in which attackers have gained access to customer information without directly compromising digital assets.

In several recent cases, the exposed data has included names, email addresses, phone numbers, physical addresses and other identifying details that can be used to target customers outside the affected platform.

That distinction limits the immediate risk of on-platform asset theft but can create longer-lasting security concerns.

Related Reading

Ledger customer data breached including info that leads violent criminals to your door

A third-party ecommerce compromise can doxx buyers and sharpen social-engineering attacks even when private keys remain safe.

Jan 6, 2026 · Gino Matos

This is because personal and financial information can be used in phishing campaigns, impersonation attempts, and social-engineering attacks designed to convince users to reveal credentials, approve transfers, or surrender access to self-custodied crypto.