Ptechhub
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
PtechHub
No Result
View All Result

Coinbase Agents Bribed, Data of ~1% Users Leaked; $20M Extortion Attempt Fails

The Hacker News by The Hacker News
May 15, 2025
Home Cybersecurity
Share on FacebookShare on Twitter


May 15, 2025Ravie LakshmananCryptocurrency / Threat Intelligence

Cryptocurrency exchange Coinbase has disclosed that unknown cyber actors broke into its systems and stole account data for a small subset of its customers.

“Criminals targeted our customer support agents overseas,” the company said in a statement. “They used cash offers to convince a small group of insiders to copy data in our customer support tools for less than 1% of Coinbase monthly transacting users.”

The end goal of the campaign was to put together a list of customers who they contact by masquerading as Coinbase and deceiving them into handing over their cryptocurrency assets.

Cybersecurity

Coinbase said the threat actors then unsuccessfully attempted to extort the company for $20 million on May 11, 2025, by claiming to have information about certain customer accounts as well as internal documents. In a statement shared with Fortune, Coinbase said the compromised customer agents worked in India and have all been fired.

“No passwords, private keys, or funds were exposed and Coinbase Prime accounts are untouched,” Coinbase noted. What the attackers got away with are listed below –

  • Name, address, phone, and email
  • Masked Social Security (last 4 digits only)
  • Masked bank‑account numbers and some bank account identifiers
  • Government ID images (e.g., driver’s license, passport)
  • Account data (balance snapshots and transaction history)
  • Limited corporate data, including documents, training material, and communications available to support agents

The crypto giant said it’s taking the step of reimbursing customers who were tricked into transferring funds to the attacker due to social engineering attacks. It’s exactly not clear how many customers fell for the scam, but the company told TechCrunch that less than 1% of its 9.7 million monthly customers were affected.

Cybersecurity

The company is also enforcing added ID checks for certain flagged accounts when carrying out large withdrawals, and that it’s hardening its defenses to counter such insider threats. Lastly, Coinbase has established a $20 million reward fund for information leading to the arrest and conviction of the attackers.

As mitigations, users are advised to turn on withdrawal allow‑listing to permit transfers only to addresses in their address books, enable two-factor authentication (2FA), and be cautious about imposters who try to move funds to a safe wallet.

Found this article interesting? Follow us on Twitter  and LinkedIn to read more exclusive content we post.





Source link

Tags: computer securitycyber attackscyber newscyber security newscyber security news todaycyber security updatescyber updatesdata breachhacker newshacking newshow to hackinformation securitynetwork securityransomware malwaresoftware vulnerabilitythe hacker news
The Hacker News

The Hacker News

Next Post
Huawei dévoile une solution de centre de données d’IA, ouvrant une nouvelle ère pour l’informatique intelligente pour le secteur

Huawei dévoile une solution de centre de données d'IA, ouvrant une nouvelle ère pour l'informatique intelligente pour le secteur

Recommended.

IEEE Study Investigates the Effects of Pointing Error on Quantum Key Distribution Systems

IEEE Study Investigates the Effects of Pointing Error on Quantum Key Distribution Systems

January 20, 2026
David Einhorn says the Fed will cut ‘substantially more’ than two times. So he’s betting big on gold

David Einhorn says the Fed will cut ‘substantially more’ than two times. So he’s betting big on gold

February 11, 2026

Trending.

Chai AI Announces Upcoming Rollout of Apple and Google Age Verification APIs to Enhance Platform Safety

Chai AI Announces Upcoming Rollout of Apple and Google Age Verification APIs to Enhance Platform Safety

March 10, 2026
Huawei lanceert Next Generation FAN-oplossing

Huawei lanceert Next Generation FAN-oplossing

March 7, 2026
Baidu Announces Fourth Quarter and Fiscal Year 2025 Results

Baidu Announces Fourth Quarter and Fiscal Year 2025 Results

February 26, 2026
Half of Google’s software development now AI-generated | Computer Weekly

Half of Google’s software development now AI-generated | Computer Weekly

February 5, 2026
Ghost Campaign Uses 7 npm Packages to Steal Crypto Wallets and Credentials

Ghost Campaign Uses 7 npm Packages to Steal Crypto Wallets and Credentials

March 24, 2026

PTechHub

A tech news platform delivering fresh perspectives, critical insights, and in-depth reporting — beyond the buzz. We cover innovation, policy, and digital culture with clarity, independence, and a sharp editorial edge.

Follow Us

Industries

  • AI & ML
  • Cybersecurity
  • Enterprise IT
  • Finance
  • Telco

Navigation

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Subscribe to Our Newsletter

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Copyright © 2025 | Powered By Porpholio

No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs

Copyright © 2025 | Powered By Porpholio