A hacker reportedly stole the personal data of roughly 200,000 customers from Bits of Gold, Israel's largest regulated cryptocurrency broker, potentially exposing the platform's entire client base. The breach lands on a firm that built its name on regulatory compliance and holds the country's first virtual asset service provider license.
A hacker has reportedly stolen the personal data of roughly 200,000 customers from Bits of Gold, Israel's largest regulated cryptocurrency broker. The breach potentially compromises the platform's entire user base, a serious blow for a company that built its reputation on regulatory compliance and security.
For a firm that holds the distinction of being the first crypto company to receive a virtual asset service provider (VASP) license in Israel, this is the kind of headline that undoes years of careful brand-building in a single news cycle.
What the breach exposes
The attack targeted personal data belonging to Bits of Gold's customer base, which spans over 200,000 clients in Israel — meaning the breach could touch essentially every user on the platform. The company has not publicly detailed which types of personal information were compromised.
Crypto brokers typically collect extensive identity documents under know-your-customer (KYC) regulations, which can include government-issued IDs, proof of address, and financial information. Bits of Gold has promoted two-factor authentication and cold storage solutions for digital assets, but cold wallets protect crypto holdings, not the identity documents sitting on company servers.
A pioneer under pressure
Bits of Gold has occupied a unique position in Israel's crypto ecosystem since it received the country's first VASP license from the Capital Market Authority in September 2022. The distinction positioned it as the benchmark for regulatory compliance in the Israeli digital asset market, and the platform offers shekel and dollar-denominated trading, over-the-counter services, and API solutions for businesses.
In April 2026, the company received approval to issue BILS, a stablecoin backed 1:1 by the Israeli shekel and developed in partnership with Solana and Fireblocks, with auditing handled by EY.
The KYC risk repeats
Ledger, the hardware wallet manufacturer, suffered a data breach in 2020 that exposed customer names, email addresses, and physical addresses, a leak that led to targeted phishing campaigns and even physical threats against affected users. Bits of Gold's customers now face a similar concern.
Personal data stolen from a crypto broker can be weaponized in phishing attacks, SIM-swap schemes, and social engineering campaigns designed to steal digital assets.
Source: Crypto Briefing
Trading involves risk.