Coinbase Targeted in $20 Million Extortion Plot Tied to Insider Data Leak

By: financefeeds|2025/05/15 16:00:15
0
Share
copy
Cryptocurrency exchange Coinbase said it was the target of a $20 million extortion attempt after cybercriminals recruited overseas customer service contractors to leak user data, in what the company described as a coordinated insider threat. In a blog post on Wednesday, Coinbase disclosed that a small group of customer support agents, hired through third-party vendors, had been bribed by external actors to access internal systems. The breach affected less than 1% of the platform’s monthly transacting users, though no passwords, private keys, funds, or Coinbase Prime accounts were compromised, the company said. The attackers later demanded $20 million in Bitcoin in exchange for not publishing stolen user data. Coinbase refused to pay the ransom and has instead offered a $20 million bounty for information leading to the identification and conviction of those responsible. “Following the attack, we’ve tightened internal access controls and are relocating portions of our support operations to reduce exposure,” Coinbase co-founder and CEO Brian Armstrong wrote on X. The leaked data included names, addresses, and government-issued IDs for a subset of users. Coinbase did not specify how many individuals were affected but confirmed that law enforcement has been involved in the investigation. Coinbase also said it would cover losses for users who were tricked into sending funds to phishing schemes. In a filing with the U.S. Securities and Exchange Commission, the company estimated it would incur between $180 million and $400 million in expenses tied to voluntary reimbursements and remediation efforts. The company has been a frequent target of impersonation and phishing attacks. In 2024, it was the most impersonated crypto brand globally, according to email security firm Mailsuite. Onchain researcher ZachXBT estimates Coinbase users lost around $45 million to phishing scams in the first week of May alone. These attacks often involve scammers posing as Coinbase support staff to trick victims into handing over wallet access or transferring funds. In some cases, scammers contacted real customer support agents in overseas offices, offering bribes in exchange for internal access. Coinbase has dealt with similar threats before. In 2022, the company launched a bounty program following a separate extortion attempt involving a different group of cybercriminals. The exchange is now expanding its bounty offering to include rewards for tips that help authorities locate and prosecute those behind this latest insider-assisted breach.

You may also like

Argentina vs Cape Verde: When a Record-Breaking Legend Meets an Unbreakable Underdog

WEEX exclusive pre-match analysis of Argentina vs Cape Verde, exploring Messi-led Argentina’s dominance and Cape Verde’s historic defensive breakout, with a breakdown of volatility, structure, and match dynamics.

How does Gate redo "buying and selling stocks" from the cryptocurrency world to the stock market?

The competition logic of exchanges has changed.

Former ByteDance employee's account: How I started with two Pinduoduo hard drives and made six times the profit with Seagate to achieve financial freedom?

A programmer from a big tech company bought hard drives on Pinduoduo and, following clues, managed to accurately capture the sixfold rising stock Seagate using the "finding daily anomalies + 13F institutional verification" framework, making a wild profit of $400,000 and achieving financial freedom.

Visa and Mastercard join 140 giants to launch a new stablecoin, but the impact on the market landscape may still be limited

As an important milestone event in the stablecoin landscape, OUSD is likely to change the existing stablecoin landscape and significantly increase the adoption rate of stablecoins in the global financial system.

WEEX Launches Depth Chart for Spot Trading

WEEX Spot now supports Depth Chart, helping users visualize buy and sell orders, spot liquidity walls, and understand market depth more clearly before placing trades.

MiCA reshuffle begins, Binance temporarily bids farewell to the EU

What Binance leaves behind is not scattered retail investors, but a whole batch of high-value users who are forced to liquidate and have almost nowhere to go.
iconiconiconiconiconiconicon
Customer Support:@weikecs
Business Cooperation:@weikecs
Quant Trading & MM:[email protected]
VIP Program:[email protected]