This breach is revealed quite accidentally when some data scientists are doing web-mapping project, and who knows how long it has existed. What is important in this story is that all users consider all their data compromised, particularly credit cards, e-mails, phone numbers. This need to be changed ASAP, because this company is store all data in plain text, which is completely crazy and incredibly stupid.
If I was their user, I would close my account instantly and never think to use them again - this is the way amateurs work.
What's shocking is that none of this is shocking to me anymore. I think when Mt Gox happened and people finally understood how it was possible that it could happen, that might have been the reality people weren't prepared for: that people running these crypto businesses were completely unprofessional.
You'd think things have changed over the years, and they have. The great crypto winter weeded out projects that weren't managed well, but the few sectors of industry that continues to display such callous attitudes from the owners are exchanges, custodial services and lending platforms.
What makes it that these people get more and more money, and data, and become more and more reckless with how they store it?