Coinbase User Data Leaked After Insider Scam, But No Funds Stolen
By: the market periodical|2025/05/16 16:30:07
0
Share
Key Insights:Criminals bribed overseas agents to steal Coinbase user data.Coinbase declined the ransom and launched an internal security overhaul.Social engineering scams cost Coinbase users over $90 Million.A recent security incident exposed critical weaknesses in the overseas customer support operations of Coinbase. Criminals succeeded in accessing personal data belonging to less than 1% of the platform’s monthly transacting users.Source: XThey achieved this by bribing outsourced customer support agents, leading to a targeted social engineering scheme. The attackers then demanded $20 Million in extortion from Coinbase to cover the breach.The company declined to pay the demand, launched an investigation, reinforced its controls, and committed to reimbursing affected customers.Coinbase Data Breach: Insider Threats and Phishing RisksAccording to Coinbase, the attackers specifically targeted foreign-based support agents. Using bribes, they persuaded a limited number of insiders to extract sensitive user data from internal tools.This information included names, addresses, emails, and phone numbers. Attackers accessed masked Social Security numbers and partial bank details. They also obtained government-issued ID images and account data like balance snapshots and transaction history.A small amount of internal corporate material was also compromised, including training documents and communications. However, the attackers failed to access critical security assets.Coinbase confirmed that no passwords, private keys, two-factor authentication codes, or access to funds were compromised.Additionally, the breach did not affect Coinbase Prime clients or the company’s hot and cold wallets. The primary aim was to gather user data to facilitate phishing and impersonation scams.Coinbase Responds With Security OverhaulRather than paying the ransom, Coinbase promised to build an internal security apparatus. Customers who were affected were notified directly. The company promised to reimburse all users tricked into sending money to the attackers.Coinbase strengthened security for at-risk accounts by requiring ID checks for large withdrawals. It also added scam-awareness reminders to help users stay alert during transactions.The firm also opened another customer support hub in the United States. This initiative looks to limit the risk of such insider attacks by moving instruments of sensitive operations in-house.The system also includes improved monitoring, insider-threat detection, and automation of threat simulations. Additionally, Coinbase established a $20 million reward fund for information that can be used to identify the attackers.Law enforcement agencies in the United States and internationally have been alerted. Insider agents found to be involved were terminated and referred for criminal prosecution.Coinbase is working with law enforcement to track stolen funds. The assets have been tagged to monitor their movement.Social Engineering Losses Among Coinbase UsersCoinbase is working to resolve an internal breach. On-chain analyst ZachXBT has highlighted a larger issue affecting its users. His recent findings show that users have lost over $90 Million in just two weeks. These losses resulted from social engineering scams.Source: ZachXBT on XThese schemes specifically target Coinbase customers. They use impersonation, phishing links, and other manipulative tactics to steal sensitive data and access funds.ZachXBT, working with fellow investigator Tanuki42, has tracked this pattern over several months. Coinbase users have been the primary victims of these scams. The estimated annual losses could reach $330 Million.With past alerts, these fraudulent activities have continued to affect users adversely. In one recent example, victims lost $45 Million in a week.A similar case the week prior resulted in an additional $46 million loss. These scams typically involve attackers pretending to be Coinbase representatives, requesting urgent account updates or action from users.Ripple’s CTO, David Schwartz, had warned about a similar phishing attempt in January. He had received an email impersonating Coinbase.DisclaimerIn this article, the views and opinions stated by the author or any people named are for informational purposes only, and they don’t establish the investment, financial, or any other advice. Trading or investing in cryptocurrency assets comes with a risk of financial loss.godfrey mwirigiThe post Coinbase User Data Leaked After Insider Scam, But No Funds Stolen appeared first on The Market Periodical.
You may also like

The "PayPal Mafia" of the AI era, from an internship to a net worth of billions
Creating billion-dollar giants like Perplexity and Cognition: Unveiling the "new gang" of the AI era formed by former Olympic champions.

The Most Crypto-Knowledgeable Fed Chair in History: What Cryptocurrencies Does Kevin Warsh Hold?
He has been called Bitcoin's "good cop of policy," and now his holdings confirm his assessment.

X Launches Cashtag, Musk's Super App Most Concrete Landing
A "message in a bottle" product that was invented, stolen, and turned into a deposit gateway

Educational | How Can the Average Person Quickly Identify Token Rug Pull and Trading Strategy?
Following the whales is meaningless; understanding their intentions is what truly matters

Rhythm X Zhihu Event Guest Announcement, featuring experts from academia, institutions, and individuals covering all aspects of the AI Agent's transformative financial model.
April 21st, Hong Kong

Is It a Dead Cat Bounce or the Bull Market Revival? How Do Traders View It?
Ceasefire Holding, Negotiations Near Agreement, Oil Price Retreats, Earnings Report Exceeds Expectations, Is This Rebound the Start of a Bull Market?

Why Can Bitcoin Rise Against the Tide of Turmoil?
When geopolitical conflicts escalate, Bitcoin strengthens due to its apolitical nature.

OpenAI and Anthropic, both pre-IPO, want to keep brawling
In this game of cat and mouse, who is reaping the benefits?

Entry is Revenue, Is YouTube Turning into a Neobank?
In the Era of Stablecoins, the Bank’s Boundaries Are Being Rewritten

NEET Reaches New High, Another Cultural Phenomenon of AI Meme
The 9-to-5 Life is a Scam

CROO officially releases the CROO Agent Protocol (CAP), building a decentralized business infrastructure for AI agents
CROO officially launched the CROO Agent Protocol (CAP) in the Base ecosystem today, providing AI agents with four core capabilities: identity, collaboration, settlement, and reputation, enabling autonomous intelligent agents to achieve commercial monetization and assetization.

Who is swimming naked, and who is breaking the waves? Analysis Report on the Comprehensive Ranking of Hong Kong Licensed Virtual Asset Trading Platforms (VATP)
The latest power ranking of 12 licensed crypto platforms in Hong Kong is out: HashKey and OSL firmly hold the top two positions, while the rising star EX.IO makes a strong comeback with RWA innovation, becoming the strongest dark horse. Click to reveal who is swimming naked and who is riding the wav...

Deconstructing RAVE Dealer Control Techniques
RAVE Extreme Control Warning: 96% of the chips are locked by whales, with contract positions exceeding spot, creating an epic short squeeze deadlock. Please be highly vigilant of the risk of OKX chain liquidations and the possibility of the manipulators closing in and crashing the market at any time...

70x in a Month: When $RAVE Put Istanbul’s Dancefloor on the Chain
A Web3 project with zero VCs and no whitepaper started with a midnight party for 200 people. Eighteen months later, its token $RAVE is up 70x, and its contract liquidations briefly eclipsed Ethereum’s. Is this just pure speculation, or are we looking at a new breed of cultural asset?

Bearish Traders Continue to Short Bitcoin | Rewire News Morning Update
Binance Perpetual Contract Funding Rate has been negative for 46 consecutive days, with open interest rising accordingly

Is Nasdaq About to Reach a New High, Is the Bull Market Back?
Almost all assets are up

Goldman Sachs Applies for Bitcoin ETF, Wall Street's Final Bastion Falls
Wall Street has no faith, only a ledger. When the number on the ledger is large enough, any faith will change.

Only Working 2 Hours a Day? This Google Engineer Got His Job Done Using Claude for 80% of It
One File, Three Commands, AI Will Not Replace Programmers, But Will Eliminate Those Who Cannot Set Up a System
The "PayPal Mafia" of the AI era, from an internship to a net worth of billions
Creating billion-dollar giants like Perplexity and Cognition: Unveiling the "new gang" of the AI era formed by former Olympic champions.
The Most Crypto-Knowledgeable Fed Chair in History: What Cryptocurrencies Does Kevin Warsh Hold?
He has been called Bitcoin's "good cop of policy," and now his holdings confirm his assessment.
X Launches Cashtag, Musk's Super App Most Concrete Landing
A "message in a bottle" product that was invented, stolen, and turned into a deposit gateway
Educational | How Can the Average Person Quickly Identify Token Rug Pull and Trading Strategy?
Following the whales is meaningless; understanding their intentions is what truly matters
Rhythm X Zhihu Event Guest Announcement, featuring experts from academia, institutions, and individuals covering all aspects of the AI Agent's transformative financial model.
April 21st, Hong Kong
Is It a Dead Cat Bounce or the Bull Market Revival? How Do Traders View It?
Ceasefire Holding, Negotiations Near Agreement, Oil Price Retreats, Earnings Report Exceeds Expectations, Is This Rebound the Start of a Bull Market?
