Coinbase Targeted in $20 Million Extortion Plot Tied to Insider Data Leak
By: financefeeds|2025/05/16 00:00:15
0
Share
Cryptocurrency exchange Coinbase said it was the target of a $20 million extortion attempt after cybercriminals recruited overseas customer service contractors to leak user data, in what the company described as a coordinated insider threat. In a blog post on Wednesday, Coinbase disclosed that a small group of customer support agents, hired through third-party vendors, had been bribed by external actors to access internal systems. The breach affected less than 1% of the platform’s monthly transacting users, though no passwords, private keys, funds, or Coinbase Prime accounts were compromised, the company said. The attackers later demanded $20 million in Bitcoin in exchange for not publishing stolen user data. Coinbase refused to pay the ransom and has instead offered a $20 million bounty for information leading to the identification and conviction of those responsible. “Following the attack, we’ve tightened internal access controls and are relocating portions of our support operations to reduce exposure,” Coinbase co-founder and CEO Brian Armstrong wrote on X. The leaked data included names, addresses, and government-issued IDs for a subset of users. Coinbase did not specify how many individuals were affected but confirmed that law enforcement has been involved in the investigation. Coinbase also said it would cover losses for users who were tricked into sending funds to phishing schemes. In a filing with the U.S. Securities and Exchange Commission, the company estimated it would incur between $180 million and $400 million in expenses tied to voluntary reimbursements and remediation efforts. The company has been a frequent target of impersonation and phishing attacks. In 2024, it was the most impersonated crypto brand globally, according to email security firm Mailsuite. Onchain researcher ZachXBT estimates Coinbase users lost around $45 million to phishing scams in the first week of May alone. These attacks often involve scammers posing as Coinbase support staff to trick victims into handing over wallet access or transferring funds. In some cases, scammers contacted real customer support agents in overseas offices, offering bribes in exchange for internal access. Coinbase has dealt with similar threats before. In 2022, the company launched a bounty program following a separate extortion attempt involving a different group of cybercriminals. The exchange is now expanding its bounty offering to include rewards for tips that help authorities locate and prosecute those behind this latest insider-assisted breach.
You may also like

One Balance to Rule Them All: Gravitas' On-Chain Prime Broker Ambition
Forty years ago, a technological revolution broke the isolation of information, reshaping Wall Street. Forty years later, Grvt aims to break the isolation of capital with an on-chain prime brokerage model.

That person who cashed out at the NFT peak is now selling a new shovel in the OpenClaw craze
A skilled person never picks the table, they eat meat with every bite.

Inter-generational Prisoner's Dilemma Resolution: The Nomadic Capital and Bitcoin's Inevitable Path
When the Baby Boomer generation collectively sells off, who will be the "bag holder" in the next asset crash?

Upstream and downstream are starting to fight, all for the sake of everyone being able to "Lobster"
「Lobster」 may not be a mature product yet, but it has already ushered in a new era of 「AI Assistants」.

Circle and Mastercard Announce Partnership, the Next Stage for the Crypto Industry Belongs to Payments
Stablecoins are transitioning from a speculative tool to real financial scenarios such as payments, cross-border transfers, and store of value.

From 5 Mao per kWh of Chinese electricity to a $45 API export: Tokens are rewriting currency units
When the same unit can both measure hashing power and facilitate payments, it ceases to be just a term and begins to evolve into a new currency of both value and influence.

Why is OpenAI playing catch-up to Claude Code instead?
Anthropic Bets Earlier on AI Programming, OpenAI Strategic Tempo Misaligned

Vitalik wrote a proposal teaching you how to secretly use AI large models
Vitalik believes that in the AI era, users should not have to sacrifice their identity to use an AI tool.

The doubling of Circle's stock price and the paradigm shift of stablecoins
The initial investments from Circle and Stripe, whether it is the R&D expenses for Arc, the high financing costs associated with Tempo, or the billion-dollar acquisitions of Bridge-type assets, are more akin to "placement fees" rather than commercially recoverable investments in the short term.

Key Market Information Discrepancy on March 13th - A Must-See! | Alpha Morning Report
1. Top News: Latest Developments in US-Iran Conflict, Son of Soleimani Vows Revenge, US Navy Plans to Escort Ships in the Strait of Hormuz
2. Token Unlock: $HTM

On-Chain Options Explosion.ActionEvent
Options are becoming the new anchor in the cryptocurrency market.

《Time》 Magazine Names Anthropic as the World's Most Disruptive Company
The most AI-wary company has created the most dangerous AI

Predictions market gains mainstream traction in the US, Canada, Claude launches Chart Interaction feature, What's the English community talking about today?
What Did Foreigners Care About Most in the Last 24 Hours?

500 Million Dollars, 12 Seconds to Zero: How an Aave Transaction Fed Ethereum's "Dark Forest" Food Chain
Spend $154,000 to buy AAVE at market price of only $111

AI Agent needs Crypto, not Crypto needs AI
It is not Crypto that needs AI to survive, but rather AI Agents that need Crypto to be implemented: when AI truly shifts from "thinking" to "executing," it must seek the boundaries of authority and funding within the programmable primitives of Crypto.

Stablecoins are breaking away from cryptocurrency, becoming the next generation of infrastructure for global payments
The use of stablecoins is shifting from facilitating low-cost cross-border remittances to supporting general commercial activities and inter-company vendor payments.

Web3 teams should stop wasting marketing budgets on the X platform
The announcements from the project party are still very important, but they should no longer be the starting point of promotional activities; instead, they should be the endpoint.

Strive buys Strategy stocks, and Bitcoin treasury companies start nesting each other
When everyone's bets are placed on the same table, the difference between "structured financing" and "concentrated gambling" may just be a few more arrows drawn on the PPT.
One Balance to Rule Them All: Gravitas' On-Chain Prime Broker Ambition
Forty years ago, a technological revolution broke the isolation of information, reshaping Wall Street. Forty years later, Grvt aims to break the isolation of capital with an on-chain prime brokerage model.
That person who cashed out at the NFT peak is now selling a new shovel in the OpenClaw craze
A skilled person never picks the table, they eat meat with every bite.
Inter-generational Prisoner's Dilemma Resolution: The Nomadic Capital and Bitcoin's Inevitable Path
When the Baby Boomer generation collectively sells off, who will be the "bag holder" in the next asset crash?
Upstream and downstream are starting to fight, all for the sake of everyone being able to "Lobster"
「Lobster」 may not be a mature product yet, but it has already ushered in a new era of 「AI Assistants」.
Circle and Mastercard Announce Partnership, the Next Stage for the Crypto Industry Belongs to Payments
Stablecoins are transitioning from a speculative tool to real financial scenarios such as payments, cross-border transfers, and store of value.
From 5 Mao per kWh of Chinese electricity to a $45 API export: Tokens are rewriting currency units
When the same unit can both measure hashing power and facilitate payments, it ceases to be just a term and begins to evolve into a new currency of both value and influence.