Coinbase Faces Backlash After Insider Leak Incident

Beincrypto
Updated
Mitrade
coverImg
Source: DepositPhotos

Coinbase, the largest US-based crypto exchange on trading volume metrics, is facing intense backlash after Thursday reports indicated a rogue employee leaked sensitive customer data.

Users have taken arms after reports suggest the risk was known months before the company disclosed the incident.

Users Outraged as Data Leak Happened Months Before Disclosure

The insider breach, which reportedly affected “less than 1 %” of Coinbase’s monthly active users, has sparked widespread outrage across the crypto community. Users report being targeted in sophisticated phishing and impersonation scams.

Among them is QwQiao, an alleged targeted victim who recounts the scam’s chilling precision. QwQiao, who works in customer support at Alliance DAO, said he almost fell victim but outsmarted the bad actors.

“…I called them out at the end of the call telling them they need to step up their game because this scam is retarded. They told me that they had made $7 million that day,” he stated.

Adam Cochran, a renowned X (Twitter) figure, condemned Coinbase’s failure to protect data like government IDs and physical addresses. He says this shortfall poses risks that far exceed financial loss.

“Coinbase’s disclosure here focuses on the stolen funds, but that’s irrelevant…No element of KYC/AML policy requires this kind of stuff to be accessible to your customer support agents. I don’t want to hear about what Coinbase is doing to recover funds – I want to hear what they are doing to better deal with private data,” he expressed.

The outrage comes amid allegations that the breach occurred as far back as January. Users and analysts say Coinbase’s supposed silence left users vulnerable for months.

“Coinbase knew they got their user data stolen since January, but said nothing until now? We’ve had endless reports of Coinbase users being drained by impersonators. Now we know why,” wrote Duo Nine, a renowned analyst.

According to Duo Nine, Coinbase’s supposed oversight puts even institutional holdings at a concentrated risk. Coinbase plays a dominant role in the crypto spot ETF (exchange-traded fund) market. Specifically, it provides custody services for eight of 11 Bitcoin ETFs and eight of nine Ethereum ETFs.

Coinbase exchange also offers trading execution and market surveillance services. Notably, this is not the first time its dominance in custody services has led to concerns about its position as a potential single point of failure. 

“It doesn’t bode well that nearly all crypto ETF issuers have the same custodian for all their BTC and ETH. This makes Coinbase a potential single point of failure, and that’s scary,” Eleanor Terret said recently.

Coinbase did not immediately respond to BeInCrypto’s request for comment.

Risks of the Leak Are Unpredictable and Dangerous

Meanwhile, concerns arise that this breach is uniquely disturbing because Coinbase was not hacked. Instead, it was betrayed from within. A support employee accessed and sold customer data on the black market.

To some, this presents as a glaring failure of internal controls. Bob Loukas, a position trader, spoke plainly, calling out the exchange for a lack of proper disclosure.

“You know you’re sitting on the most sought-after data, and you allowed support agents to access it in bulk. That’s unacceptable,” Loukas stated.

The implications go beyond financial theft, with Rotki founder Lefteris Karapetsas warning that centralizing real-life identity data alongside crypto balances is a “disaster waiting to happen.”

“Coinbase just proved again why centralized data honeypots are a disaster waiting to happen. KYC means handing over your identity to be leaked, sold, or extorted. The combination of data exposed here (real-life addresses, crypto addresses, and amount and real-life ID documents) is lethal,” he posted.

Rotki is a portfolio tracking app, with Karapetsas, a data protection expert, referencing a recent kidnapping attempt involving a Paris crypto leader’s family. Ariel Givner, a corporate attorney specializing in fintech, confirmed the real-world fears.

“I’ve had five individuals contact me today. They are scared for their and their family’s safety. It can get worse,” she wrote.

Intelligence experts say the incident may be part of a larger dark web sale. According to cybersecurity sources, a threat actor recently offered an 18-million-record trove from US crypto platforms.

Among them, over 432,000 Coinbase user records for $10,000, featuring names, emails, phone numbers, addresses, and more.

Alleged US crypto database leak featuring over 18 million records

Alleged US crypto database leak featuring over 18 million records. Source: Cyber threat intelligence expert on X

Coinbase has yet to address the user outrage, but it is offering a $20 million reward fund for information leading to the arrest and conviction of bad actors. The exchange said it contacted all affected victims.

“If your data was accessed, you have already received an email from no-reply@info.coinbase.com; all notifications went out at 7:20 a.m. ET to affected customers,” Coinbase Support said on X.

* The content presented above, whether from a third party or not, is considered as general advice only.  This article should not be construed as containing investment advice, investment recommendations, an offer of or solicitation for any transactions in financial instruments.

goTop
quote
Do you find this article useful?
Related Articles
placeholder
BNB Price Finds Its Footing — Can Bulls Ignite the Next Leg Up?BNB price is consolidating above the $640 support zone. The price is now showing positive signs and might aim for more gains in the near term. BNB price is attempting to recover from the $640 support
Author  NewsBTC
8 hours ago
BNB price is consolidating above the $640 support zone. The price is now showing positive signs and might aim for more gains in the near term. BNB price is attempting to recover from the $640 support
placeholder
Bitcoin Seeing 309,000 New Addresses Per Day: How Do XRP & Ethereum Compare?In a new post on X, the on-chain analytics firm Santiment has discussed about how the average Network Growth has been like for the top assets in the sector during the past month.
Author  Bitcoinist
8 hours ago
In a new post on X, the on-chain analytics firm Santiment has discussed about how the average Network Growth has been like for the top assets in the sector during the past month.
placeholder
Ethereum Goes Heavy On Defense With Trillion-Dollar Security InitiativeEthereum’s nonprofit arm rolled out a major security drive on May 14. It aims to shore up wallets, smart contracts, and the network itself. The move comes as more money flows onto the blockchain, with a plan big enough to protect “trillions” in digital assets.
Author  Bitcoinist
9 hours ago
Ethereum’s nonprofit arm rolled out a major security drive on May 14. It aims to shore up wallets, smart contracts, and the network itself. The move comes as more money flows onto the blockchain, with a plan big enough to protect “trillions” in digital assets.
placeholder
Bitcoin Near ATH, But Long-Term Holders Aren’t Selling – More Upside Ahead?Fresh on-chain data suggests that despite Bitcoin (BTC) trading close to its all-time high (ATH), long-term holders (LTHs) are not offloading their holdings.
Author  NewsBTC
11 hours ago
Fresh on-chain data suggests that despite Bitcoin (BTC) trading close to its all-time high (ATH), long-term holders (LTHs) are not offloading their holdings.
placeholder
Ethereum Price Holding Strong — Signs Point to a New Upside BreakoutEthereum price corrected gains and tested the $2,500 zone. ETH is now again rising and might soon aim for a move above the $2,600 zone.
Author  NewsBTC
11 hours ago
Ethereum price corrected gains and tested the $2,500 zone. ETH is now again rising and might soon aim for a move above the $2,600 zone.
Real-time Quote