Koinly Warns of Third-Party Breach Exposing User Emails, Assures Tax Data Remains Secure
Cryptocurrency tax software provider Koinly has alerted users to a potential email address exposure following a security incident at Mixpanel, a third-party analytics service. The breach, which occurred in November, compromised names, email addresses, approximate locations, and device information—but Koinly confirms sensitive financial data remains untouched.
Third-party vendor attacks continue plaguing both crypto and traditional industries, exploiting weaker security protocols in ancillary services. Mixpanel's analytics platform, used by Koinly for product optimization, became the latest vector for such an intrusion.
The incident underscores the persistent vulnerability of supply-chain infrastructure in fintech. While Koinly maintains its Core systems were never breached, the event highlights how crypto service providers remain attractive targets for cybercriminals seeking indirect access to user networks.