Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form

Coinbase Agents Bribed, Data of ~1% Users Leaked; $20M Extortion Attempt Fails

Posted on May 15, 2025May 15, 2025 By CWS

Might 15, 2025Ravie LakshmananCryptocurrency / Menace Intelligence
Cryptocurrency trade Coinbase has disclosed that unknown cyber actors broke into its programs and stole account knowledge for a small subset of its clients.
“Criminals focused our buyer assist brokers abroad,” the corporate stated in an announcement. “They used money gives to persuade a small group of insiders to repeat knowledge in our buyer assist instruments for lower than 1% of Coinbase month-to-month transacting customers.”
The top purpose of the marketing campaign was to place collectively a listing of shoppers who they contact by masquerading as Coinbase and deceiving them into handing over their cryptocurrency belongings.

Coinbase stated the menace actors then unsuccessfully tried to extort the corporate for $20 million on Might 11, 2025, by claiming to have details about sure buyer accounts in addition to inner paperwork. In an announcement shared with Fortune, Coinbase stated the compromised buyer brokers labored in India and have all been fired.
“No passwords, non-public keys, or funds had been uncovered and Coinbase Prime accounts are untouched,” Coinbase famous. What the attackers acquired away with are listed beneath –

Title, tackle, cellphone, and e-mail
Masked Social Safety (final 4 digits solely)
Masked financial institution‑account numbers and a few checking account identifiers
Authorities ID pictures (e.g., driver’s license, passport)
Account knowledge (stability snapshots and transaction historical past)
Restricted company knowledge, together with paperwork, coaching materials, and communications obtainable to assist brokers

The crypto big stated it is taking the step of reimbursing clients who had been tricked into transferring funds to the attacker as a consequence of social engineering assaults. It is precisely not clear what number of clients fell for the rip-off, however the firm informed TechCrunch that lower than 1% of its 9.7 million month-to-month clients had been affected.

The corporate can also be implementing added ID checks for sure flagged accounts when finishing up massive withdrawals, and that it is hardening its defenses to counter such insider threats. Lastly, Coinbase has established a $20 million reward fund for info resulting in the arrest and conviction of the attackers.
As mitigations, customers are suggested to activate withdrawal permit‑itemizing to allow transfers solely to addresses of their tackle books, allow two-factor authentication (2FA), and be cautious about imposters who attempt to transfer funds to a secure pockets.

Discovered this text fascinating? Observe us on Twitter  and LinkedIn to learn extra unique content material we put up.

The Hacker News Tags:20M, Agents, Attempt, Bribed, Coinbase, Data, Extortion, Fails, Leaked, Users

Post navigation

Previous Post: Production at Steelmaker Nucor Disrupted by Cyberattack
Next Post: Coinbase Rejects $20M Ransom After Rogue Contractors Bribed to Leak Customer Data

Related Posts

U.S. Secret Service Seizes 300 SIM Servers, 100K Cards Threatening U.S. Officials Near UN The Hacker News
Meta Expands WhatsApp Security Research with New Proxy Tool and $4M in Bounties This Year The Hacker News
Transparent Tribe Targets Indian Govt With Weaponized Desktop Shortcuts via Phishing The Hacker News
Silver Fox Expands Winos 4.0 Attacks to Japan and Malaysia via HoldingHands RAT The Hacker News
SonicWall Confirms State-Sponsored Hackers Behind September Cloud Backup Breach The Hacker News
New Linux Flaws Enable Full Root Access via PAM and Udisks Across Major Distributions The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Leveraging OSINT Tools for Enhanced Cybersecurity Threat Intelligence
  • Data Breach at Texas Gas Station Operator Exposes Info of 377,000+ Customers
  • MuddyWater Launches RustyWater RAT via Spear-Phishing Across Middle East Sectors
  • Europol Arrests 34 Black Axe Members in Spain Over €5.9M Fraud and Organized Crime
  • New MacSync Stealer Uses Signed macOS App to Evade Gatekeeper and Steal Data

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Leveraging OSINT Tools for Enhanced Cybersecurity Threat Intelligence
  • Data Breach at Texas Gas Station Operator Exposes Info of 377,000+ Customers
  • MuddyWater Launches RustyWater RAT via Spear-Phishing Across Middle East Sectors
  • Europol Arrests 34 Black Axe Members in Spain Over €5.9M Fraud and Organized Crime
  • New MacSync Stealer Uses Signed macOS App to Evade Gatekeeper and Steal Data

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark