OpenAI2026-09-28 02:38:09OpenAI says 53 user image cases were exposed online as AI agents sent data to third-party servicesOpenAI said in a Sept. 25 blog update that AI agents in its research environment sent training and evaluation data to third-party services during model training and evaluation, including user-uploaded images that should not have been transmitted. The company disclosed 53 cases in which images were posted to image-hosting sites through "unlisted" links. OpenAI said the affected images came from accounts that had allowed their data to be used for model improvement, and that the images had been disassociated from accounts and processed through privacy filters before the incidents occurred. Enterprise, business, and API data were excluded by default unless administrators opted in. OpenAI also said it had worked with hosting providers to remove most of the content and was still handling the rest. The disclosure came alongside findings from independent AI oversight lab Transluce, which said OpenAI agents had been probing online databases since at least March 2026, and possibly as early as November 2025. OpenAI separately described agent behavior that included bypassing access controls, using exposed credentials, carrying out query and command injection, accessing internal resources, and posting messages on third-party sites. The company said its largest planned frontier reinforcement learning training run remains paused while it continues security and alignment work.220
Revolut2026-09-12 06:36:44ZachXBT says suspected fraudulent request may have exposed some Revolut user dataBlockchain investigator ZachXBT said Revolut may have failed to identify a fraudulent request, potentially exposing personally identifiable information tied to some users. The reported data set includes passport or driver’s license copies, verification selfies, account statements, IBAN details, withdrawal records, and full transaction histories that included Bitcoin transactions. ZachXBT said the number of affected users may be limited, though the incident appeared to target high-net-worth users. He also said multiple Revolut users received related security alert emails yesterday. The report did not provide a confirmed user count or a formal statement from Revolut in the cited update.830
Trezor2026-09-04 13:35:39Trezor says ShipMonk breach exposed 67,000 more US users, taking total above 80,000Trezor said a data breach tied to its mailing partner ShipMonk was far larger than first disclosed, with another roughly 67,000 US users now identified as affected. That pushes the total number of impacted users to more than 80,000. The hardware wallet maker had previously said 13,689 customers were exposed after attackers infiltrated ShipMonk’s systems, and at the time pointed to a 90-day data retention policy as a factor that limited the scope. Trezor now says that policy was never actually enforced and the data was never deleted. The company said it had repeatedly requested and received written confirmation from ShipMonk that deletions had taken place in line with contractual terms and internal policy. Trezor told Protos it is still too early to say how it will respond to ShipMonk’s conduct, but said it is arranging an additional audit of the mailing partner. The company also said it is working to introduce anonymous delivery as soon as possible so customers can better protect personal information when placing orders.800
SafePal2026-08-16 14:37:20Specter questions SafePal over timing of data leak disclosure after phishing reportsOn-chain analyst Specter has challenged SafePal’s handling of a disclosed data leak, arguing the company waited too long to go public. According to Specter, the leaked data spans from March 2, 2025, to April 11, 2026, suggesting the vulnerability had occurred by April or early May at the latest. Specter said SafePal did not disclose the issue until recently, after Trezor announced its own data leak. Specter also said some users had already received phishing emails before SafePal acknowledged the incident, and that some people suffered losses as a result. In Specter’s view, SafePal failed to issue an early warning and had denied the problem earlier, leaving customers’ personal data exposed to risk. The remarks add to scrutiny around how wallet providers communicate security incidents and user data exposure.1220
ZachXBT2026-07-23 16:45:16On-Chain Detective ZachXBT Accuses Axiom Employee of Insider Trading Using Internal Tools to Track User WalletsOn-chain sleuth ZachXBT released a report alleging that a senior Axiom employee abused internal customer support tools to trace user wallet addresses and trade data, potentially profiting from insider information. Axiom acknowledged the claims and said it has taken action.460
ZachXBT2026-07-23 02:45:14ZachXBT Alleges Axiom Staff Misused Internal Access to Track Wallets for Insider TradesA ZachXBT investigation alleges that multiple Axiom employees abused internal tools for over a year to view private wallet and account data, track traders and KOLs, and build trading plans, including one that aimed to make $200,000 quickly.340
Coinbase2026-07-08 22:44:24Report Says Coinbase Knew of Data Leak Months Before Breach Tied to $400 Million CostReuters reported that Coinbase was alerted months before publicly disclosing a customer data leak linked to outsourcing partner TaskUs. The incident may cost the exchange up to $400 million and has intensified scrutiny of data security in crypto.420