BREAKING: Coinbase Pledges $20M Bounty Amid Cyberattack; Vows No Ransom Payment
By: the coin republic|2025/05/15 20:45:04
0
Share
Key Insights:Coinbase rejected a $20M ransom demand and offered a $20M bounty instead.Data breach affected less than 1% of Coinbase users, and no wallets were compromised.Bribed India-based agents leaked user data, fueling phishing scams.Coinbase faces a cyberattack where the Criminals demanded a $20 million ransom after bribing overseas customer support agents to steal user data. In response, the leading crypto exchange rejected the demand and instead offered a $20 million reward to anyone who helps authorities arrest and convict the attackers.The company confirmed that the stolen information affected fewer than 1% of its active monthly customers.Coinbase Data Theft Linked to Rogue Support AgentsAccording to Coinbase, the attackers offered bribes to overseas customer support agents, who then provided access to sensitive information. These agents worked in India and were immediately terminated when the breach was discovered. The exchange stated that the stolen data included names, addresses, phone numbers, government ID images, and partial financial information.However, the company clarified that the attackers did not gain access to passwords, 2FA codes, private keys, or wallets. Coinbase Prime accounts were also unaffected. The data breach enabled the criminals to launch targeted social engineering scams by impersonating Coinbase staff.“The insiders abused their access to our internal support tools,” said Philip Martin, Chief Security Officer of the exchange. “They gave attackers data that was later used in phishing attempts.”Social Engineering Used to Scam CustomersUsing the stolen information, attackers contacted the exchange customers while pretending to be legitimate employees. The purpose was to trick users into transferring their cryptocurrency to the attackers’ wallets. The firm has not disclosed how many users were successfully scammed but stated that affected customers would receive full reimbursement.The extortion attempt followed soon after the social engineering scams began. Criminals demanded $20 million in Bitcoin, threatening to leak the stolen data if their demand was not met. The leading exchange refused the ransom and instead decided to turn the situation around by offering the same amount as a bounty.“The knee-jerk reaction of everyone at Coinbase was ‘hell no,’” said Martin. “We do not negotiate with criminals.”Coinbase Strengthens Internal and External DefensesTo prevent similar breaches, the crypto exchange is making several internal changes. Coinbase is setting up a new customer support center in the U.S. while adding stronger security processes for risky activities. As part of this, users must confirm their identity for big withdrawals, and warnings about scams will be more frequent.In addition, the exchange has strengthened its threat-finding systems and tested for these kinds of attacks internally to find any flaws. More monitoring will be applied to accounts that are flagged, and some users could wait longer before withdrawing money.Those impacted by the breach received alerts from the firm, which says it will keep the public updated as it learns new information.Coinbase In Talks With Law Enforcement and Industry PartnersCoinbase has reported the breach to U.S. and international law enforcement. The company is also working with blockchain analytics firms to trace any stolen funds and identify the digital wallets linked to the criminals. Those addresses have now been flagged to prevent further use on major exchanges.The $20 million bounty will be paid to anyone who provides verified information that leads to the arrest and conviction of those responsible. Tipsters can contact the company through a dedicated security email, which has been shared in the company’s blog and official channels.“We are doing everything we can to support the authorities and bring these criminals to justice,” said Martin.Attempted Kidnapping in Paris Raises Security ConcernsIn a separate incident amid rising crypto insecurities, French media reported an attempted kidnapping involving the family of a crypto exchange executive in Paris. According to France 24, four masked men tried to abduct a woman and her child in broad daylight. The attackers beat the woman’s partner during the attempt and tried to force her into a white van.Authorities believe the motive may be connected to her relationship with a known figure in the crypto industry. The case is under investigation by local police. Surveillance footage has been collected, and the suspects remain at large. In addition, recently in a crypto event, some teens targeted an investor, leading to a heist of around $4M after kidnapping them at gunpoint.These events have raised concerns over both digital and physical security for those involved in cryptocurrency, as criminals continue to target individuals and institutions.The post BREAKING: Coinbase Pledges $20M Bounty Amid Cyberattack; Vows No Ransom Payment appeared first on The Coin Republic.
You may also like

Huang Renxun's Latest Podcast: Will NVIDIA Reach $1 Trillion? Will the Number of Programmers Increase Instead of Decrease? How to Deal with AI Anxiety?
Hashpower will determine everything; human work will only be restructured, not disappear

Besides Resolv Hack, This DeFi Vulnerability Type Has Occurred Four Times
17 minutes, 100k turned into 25M.

Trump Cries Peace, $1.5 Billion Dash | Rewire News Evening Brief
In the first 15 minutes of trading, $1.5 billion in futures trades have already taken place

From x402 to MPP: Cloudflare's crucial vote, will it go to Coinbase or Stripe?
Cloudflare is both building walls and opening windows. It provides both blocking tools and paid access tools. They decide what is kept out, what is allowed in, and under what conditions it can enter.

BlackRock CEO issues annual open letter: The wave of tokenization has arrived, and we will lead this trend
Rebuild capitalism that belongs to everyone.

When Backpack backstabs the community
Once a fundamental rift in trust appears, the cost that Backpack must pay to repair it is likely far more expensive than the profits previously "harvested" through service fees.

When gold is no longer a safe haven, and Bitcoin continues to panic
The whole world is waiting for the Strait of Hormuz to reopen. Why not guess which type of asset will return to pre-war levels first?

Trump, the World's Largest Oil Trader
No matter the outcome, he will not lose money.

If the US and Iran have not reached an agreement in 5 days, what other cards does Trump have?
A $100 Brent implies an approximate 30-40% "strike probability".

Tether Whale Dumps £12 Million, Backing Crypto’s ‘British Trump’
In the US, the crypto industry's big-money push to back Trump and reclaim regulatory control has already played out. In the UK, the same script is unfolding once again.

Ethereum Foundation Post: Rethinking the Division of Work Between L1 and L2 to Build the Ultimate Ethereum Ecosystem
Five years in the making, the Ethereum Foundation has updated the L1 and L2 ecosystem positioning and overarching guidance.

Two Major Prediction Market Platforms Unite Rarely, What Is the Story Behind This New Fund?
When Klashi's early employees went out to raise funds, the two CEOs chose to appear together on the investor list.

Dragonfly Partners: Most agents will not engage in autonomous trading, how can crypto payments prevail?
Although the scale of the agent economy will be very large, the proportion of agents actually conducting transactions will not be that high.

US AI Startup Goes All In on Chinese Mega-Model | Rewire News Morning Brief
The open-source ecosystem and manufacturing data form a dual circulation, allowing progress towards the cutting edge even under chip constraints

Trump Lies Again: A "Five-Day Pause" Psyop, How Wall Street, Bitcoin, and Polymarket Insiders Synced Uposciogen
Five days from now, the market will once again face Trump's "final deadline." Will this be the real endgame, or just another round of back-and-forth?

When a Token Becomes Labor, People Become the Interface
In 2023, having a Card is king. In 2026, having a Token is king.

Ceasefire News Leaked Ahead of Time? Large Polymarket Bets on Outcome Before Trump's Tweet
Minutes before Trump's market-moving social media post, S&P 500 futures and crude oil futures also saw abnormal trading volume.

BlackRock CEO's Annual Shareholder Letter: How is Wall Street Using AI to Keep Profiting from National Pension Funds?
AI is creating enormous wealth, but wealth distribution and risk exposure are replaying in a familiar pattern
Huang Renxun's Latest Podcast: Will NVIDIA Reach $1 Trillion? Will the Number of Programmers Increase Instead of Decrease? How to Deal with AI Anxiety?
Hashpower will determine everything; human work will only be restructured, not disappear
Besides Resolv Hack, This DeFi Vulnerability Type Has Occurred Four Times
17 minutes, 100k turned into 25M.
Trump Cries Peace, $1.5 Billion Dash | Rewire News Evening Brief
In the first 15 minutes of trading, $1.5 billion in futures trades have already taken place
From x402 to MPP: Cloudflare's crucial vote, will it go to Coinbase or Stripe?
Cloudflare is both building walls and opening windows. It provides both blocking tools and paid access tools. They decide what is kept out, what is allowed in, and under what conditions it can enter.
BlackRock CEO issues annual open letter: The wave of tokenization has arrived, and we will lead this trend
Rebuild capitalism that belongs to everyone.
When Backpack backstabs the community
Once a fundamental rift in trust appears, the cost that Backpack must pay to repair it is likely far more expensive than the profits previously "harvested" through service fees.
