6,000 Coinbase Users Robbed in Phishing Attacks, Company Says It Will Reimburse
Cryptocurrency giant Coinbase revealed that "at least 6,000 Coinbase customers had funds removed from their accounts" as a result of a recent phishing campaign that saw hackers get around an SMS-based authentication feat...
Cryptocurrency giant Coinbase revealed that "at least 6,000 Coinbase customers had funds removed from their accounts" as a result of a recent phishing campaign that saw hackers get around an SMS-based authentication feature the company used to secure many accounts.
News of the phishing campaign was first reported in August, but the scope of it only became clear after a letter the company sent to affected customers began to circulate.
In the letter, Coinbase says hackers gained access to victims' email accounts, and then used those compromised accounts in order to drain those users' cryptocurrency. Even though Coinbase requires a widely-used security feature called "two-factor authentication," the SMS version of this—in which users receive a text message to confirm a transaction—broke down.
"However, in this incident, for customers who use SMS texts for two-factor authentication, the third party took advantage of a flaw in Coinbase’s SMS Account Recovery process in order to receive an SMS two-factor authentication token and gain access to your account," says the letter.
Coinbase also says it will reimburse those who lost funds as a result of the phishing attack, and that it has already begun to make customers whole. The company did not disclose the total amount the hackers stole.
The incident did not amount, as some have reported, to Coinbase getting hacked since the hackers do not appear to have breached the company's internal systems. Instead, the robberies came about because customers fell for phishing attacks aimed at their personal email—an extremely common occurrence.
Coinbase Drops Lend Product Plans After SEC Lawsuit Threat
It's unclear, though, why Coinbase took so long to acknowledge the incidents, which took place over a period from March to May. While the company published a blog post earlier this week describing a sophisticated phishing campaign, it did not disclose that hackers had used it to successfully rob thousands of customers. Nor does Coinbase appear to have done anything to warn its customer base at the time the attacks were underway, or even in the following months.
According to a Coinbase spokesperson, the company did not want to interfere with law enforcement agencies investigating the incident.
"Because of the size, scope and sophistication of the campaign we have been working with a range of partners, law enforcement agencies and other stakeholders to understand the attack and develop mitigation techniques. We didn't feel comfortable disclosing the attack publicly until the correct steps were taken to ensure that it couldn't be repeated successfully, and would not compromise the integrity of law enforcement investigations," said the spokesperson.
The attacks appear to have been global in nature, as the Coinbase letter says it will provide credit monitoring services in "your country of residence."
Coinbase also urged customers to switch to a more secure form of two-factor authentication such as an external hardware device or an authenticator app.
Original source
Read on DecryptRelated market context
Coinbase launches AI agent accounts that can trade and spend on your behalf
"Coinbase for Agents" is a new platform that lets AI assistants like ChatGPT and Claude connect to users’ Coinbase accounts to tra...
Coinbase launches AI agent accounts for automated trading and spending
Coinbase's AI agent accounts could revolutionize finance by enabling autonomous transactions, but they may also heighten market vo...
Coinbase Launches Tool That Lets AI Agents Trade Crypto and Make Payments for Users
Coinbase's new product allows AI agents to execute crypto trades, payments, and portfolio management tasks within user-defined lim...
Coinbase Council Warns 7 Million Bitcoin May Face Future Quantum Risk
TL;DR Coinbase’s Quantum Advisory Council says post-quantum migration planning should begin before quantum attacks become practica...
Coinbase brings trading and payments to AI agents
Coinbase for Agents lets users connect AI agents to their accounts to trade crypto, make payments, and execute workflows under pre...
Coinbase launches tool letting AI agents make payments and trade crypto
Coinbase for Agents will let users of the crypto exchange manage their holdings “without the constant manual oversight” and can au...