cryptocurrency widget, price, heatmap
arrow
Burger icon
cryptocurrency widget, price, heatmap
News/Coinbase Data Breach Exposes Sensitive Customer Data Amid S&P 500 Listing

Coinbase Data Breach Exposes Sensitive Customer Data Amid S&P 500 Listing

Van Thanh Le

May 15 2025

16 hours ago2 minutes read
Robot struggles to secure data as digital panels shatter

Hackers Exploit Internal Access, Demand $20 Million Ransom

Coinbase has confirmed a data breach impacting less than 1% of its customer base, a figure that could still translate to millions of users given the platform's extensive customer reach of over 100 million. 

The breach involved unauthorized access to sensitive customer data, including names, postal and email addresses, phone numbers, and the last four digits of Social Security numbers. Additional compromised information includes masked bank account numbers, banking identifiers, government-issued identity documents such as driver’s licenses and passports, as well as account balance data and transaction histories. 

Coinbase's systems reportedly detected the malicious activity in the months preceding the disclosure, prompting the platform to notify affected users and advise them on preventive measures to mitigate potential misuse of the exposed information.

The attack was facilitated through a scheme involving bribed contractors and support staff members based outside the United States. According to Coinbase, these individuals were allegedly paid by the attackers to collect data from internal systems they had legitimate access to. All implicated personnel have since been terminated. 

On May 11, 2025, the attackers contacted Coinbase via email, claiming to possess customer and internal data. They demanded a $20 million ransom to prevent the publication of the stolen information. Coinbase refused to comply, instead allocating $20 million as a reward for information leading to the attackers’ identification. CEO Brian Armstrong stated that Coinbase will not finance criminal activities and is actively collaborating with law enforcement in ongoing investigations.

twittershots-coinbase-1922967577568985185_11zon.jpg

Despite the severity of the breach, Coinbase asserts that no login credentials or passwords were compromised. However, the company has committed to reimbursing customers who may have been deceived into transferring funds to attackers as a result of the data exposure. Financially, the breach is projected to cost Coinbase between $180 million and $400 million, encompassing remediation expenses, customer reimbursements, and other incident-related costs. The disclosure has already impacted the company’s stock, which fell 3% during pre-market trading on May 15, 2025, following the announcement.

The timing of the breach is particularly notable as Coinbase is set to join the S&P 500 index in the coming days, a significant milestone for the crypto industry. The incident underscores ongoing cybersecurity challenges in the crypto sector, with a 2024 report from blockchain analysis firm Chainalysis revealing that hacks targeting crypto platforms resulted in $2.2 billion in stolen assets, marking the fourth consecutive year of over $1 billion in losses.

This article has been refined and enhanced by ChatGPT.

cryptocurrency widget, price, heatmap
v 5.8.26
© 2017 - 2025 COIN360.com. All Rights Reserved.