{"id":29003,"date":"2025-05-15T19:08:27","date_gmt":"2025-05-15T19:08:27","guid":{"rendered":"https:\/\/news.godj.com\/news\/crypto-exchange-coinbase-faces-up-to-400m-hit-from-cyber-attack\/"},"modified":"2025-05-15T19:08:27","modified_gmt":"2025-05-15T19:08:27","slug":"crypto-exchange-coinbase-faces-up-to-400m-hit-from-cyber-attack","status":"publish","type":"post","link":"https:\/\/news.godj.com\/news\/crypto-exchange-coinbase-faces-up-to-400m-hit-from-cyber-attack\/","title":{"rendered":"Crypto exchange Coinbase faces up to $400m hit from cyber attack"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div xmlns:default=\"http:\/\/www.w3.org\/2000\/svg\" id=\"\">\n<div xmlns:default=\"http:\/\/www.w3.org\/2000\/svg\" data-component=\"byline-block\" class=\"sc-3b6b161a-0 dEGcKf\">\n<div data-testid=\"byline-new\" class=\"sc-801dd632-0 eSlECZ\">\n<div data-testid=\"byline-new-contributors\" class=\"sc-801dd632-12 jSIeFi\">\n<div class=\"sc-801dd632-5 kRoBHa\">\n<div><span class=\"sc-801dd632-7 lasLGY\">Tom Gerken<\/span><\/p>\n<p><span>Technology reporter<\/span><\/p>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<\/div>\n<figure>\n<div data-component=\"image-block\" class=\"sc-3b6b161a-0 kVRMhO\">\n<div data-testid=\"hero-image\" class=\"sc-4abb68ca-1 eOgpjw\"><img decoding=\"async\" sizes=\"(min-width: 1280px) 50vw, (min-width: 1008px) 66vw, 96vw\" srcset=\"https:\/\/ichef.bbci.co.uk\/news\/240\/cpsprodpb\/269d\/live\/65349750-319c-11f0-8f9b-a7ae9ae77703.jpg.webp 240w,https:\/\/ichef.bbci.co.uk\/news\/320\/cpsprodpb\/269d\/live\/65349750-319c-11f0-8f9b-a7ae9ae77703.jpg.webp 320w,https:\/\/ichef.bbci.co.uk\/news\/480\/cpsprodpb\/269d\/live\/65349750-319c-11f0-8f9b-a7ae9ae77703.jpg.webp 480w,https:\/\/ichef.bbci.co.uk\/news\/640\/cpsprodpb\/269d\/live\/65349750-319c-11f0-8f9b-a7ae9ae77703.jpg.webp 640w,https:\/\/ichef.bbci.co.uk\/news\/800\/cpsprodpb\/269d\/live\/65349750-319c-11f0-8f9b-a7ae9ae77703.jpg.webp 800w,https:\/\/ichef.bbci.co.uk\/news\/1024\/cpsprodpb\/269d\/live\/65349750-319c-11f0-8f9b-a7ae9ae77703.jpg.webp 1024w,https:\/\/ichef.bbci.co.uk\/news\/1536\/cpsprodpb\/269d\/live\/65349750-319c-11f0-8f9b-a7ae9ae77703.jpg.webp 1536w\" src=\"https:\/\/ichef.bbci.co.uk\/news\/480\/cpsprodpb\/269d\/live\/65349750-319c-11f0-8f9b-a7ae9ae77703.jpg.webp\" loading=\"eager\" alt=\"Getty Images Coinbase app logo on a phone\" class=\"sc-4abb68ca-0 ldLcJe\"\/><span class=\"sc-4abb68ca-2 kkAKIJ\">Getty Images<\/span><\/div>\n<\/div>\n<\/figure>\n<div data-component=\"text-block\" class=\"sc-3b6b161a-0 dEGcKf\">\n<p class=\"sc-9a00e533-0 hxuGS\">One of the world&#8217;s biggest cryptocurrency firms, Coinbase, says a recent cyber attack will cost it up to $400m (\u00a3301m).<\/p>\n<p class=\"sc-9a00e533-0 hxuGS\">The firm said it was contacted by hackers who claimed to have gained access to customer information, obtained by making payments to Coinbase contractors and employees.<\/p>\n<p class=\"sc-9a00e533-0 hxuGS\"><a target=\"_blank\" href=\"https:\/\/www.coinbase.com\/en-gb\/blog\/protecting-our-customers-standing-up-to-extortionists\" class=\"sc-f9178328-0 bGFWdi\">In a blog post<\/a>, Coinbase said the criminals had gained access to &#8220;less than 1%&#8221; of its customer data, which they then used to impersonate the firm and trick people into handing over their crypto.<\/p>\n<p class=\"sc-9a00e533-0 hxuGS\">The group then demanded $20m from Coinbase to keep it quiet &#8211; but it refused to pay the bribe and instead promised to pay back every person who got scammed.<\/p>\n<p class=\"sc-9a00e533-0 hxuGS\">The disclosure prompted the firm&#8217;s share price to fall by 4.1%.<\/p>\n<\/div>\n<div data-component=\"text-block\" class=\"sc-3b6b161a-0 dEGcKf\">\n<p class=\"sc-9a00e533-0 hxuGS\">The cyber attack comes days before the US company is set to join the benchmark S&amp;P 500 index &#8211; a landmark moment for the crypto industry.<\/p>\n<p class=\"sc-9a00e533-0 hxuGS\">It also reflects how, as it grows, the industry has increasingly become a target for cyber criminals.<\/p>\n<p class=\"sc-9a00e533-0 hxuGS\">A report from research firm Chainanalysis suggests funds stolen from crypto businesses totalled $2.2bn in 2024.<\/p>\n<p class=\"sc-9a00e533-0 hxuGS\">&#8220;Security remains a challenge for the crypto industry despite its growing mainstream acceptance,&#8221; said Nick Jones, founder of crypto firm Zumo.<\/p>\n<p class=\"sc-9a00e533-0 hxuGS\">&#8220;As our nascent industry grows rapidly, it draws the eye of bad actors, who are becoming increasingly sophisticated in the scope of their attacks.&#8221;<\/p>\n<\/div>\n<p><h2 class=\"sc-f98b1ad2-0 eOFjmw\">&#8216;Harshest penalties&#8217;<\/h2>\n<\/p>\n<div data-component=\"text-block\" class=\"sc-3b6b161a-0 dEGcKf\">\n<p class=\"sc-9a00e533-0 hxuGS\">The company says it received an email from an &#8220;unknown threat actor&#8221; on May 11.<\/p>\n<p class=\"sc-9a00e533-0 hxuGS\">&#8220;We will reimburse customers who were tricked into sending funds to the attacker,&#8221; it said in its statement.<\/p>\n<p class=\"sc-9a00e533-0 hxuGS\">&#8220;We&#8217;re cooperating closely with law enforcement to pursue the harshest penalties possible and will not pay the $20 million ransom demand we received. <\/p>\n<p class=\"sc-9a00e533-0 hxuGS\">&#8220;Instead we are establishing a $20 million reward fund for information leading to the arrest and conviction of the criminals responsible for this attack.&#8221;<\/p>\n<p class=\"sc-9a00e533-0 hxuGS\">In a filing with the US <a target=\"_blank\" href=\"https:\/\/www.sec.gov\/ix?doc=\/Archives\/edgar\/data\/0001679788\/000167978825000094\/coin-20250514.htm\" class=\"sc-f9178328-0 bGFWdi\">Securities and Exchanges Commission<\/a>, it estimated costs between $180m and $400m.<\/p>\n<p class=\"sc-9a00e533-0 hxuGS\">It said this figure came from &#8220;remediation costs and voluntary customer reimbursements&#8221;, however this figure could change as a result of &#8220;potential losses, indemnification claims, and potential recoveries&#8221;.<\/p>\n<p class=\"sc-9a00e533-0 hxuGS\">The staff members who shared customer information with the hackers have been fired.<\/p>\n<\/div>\n<div data-component=\"text-block\" class=\"sc-3b6b161a-0 dEGcKf\">\n<p class=\"sc-9a00e533-0 hxuGS\">Coinbase told its customers to expect further attempts from scammers in the future, and advised them to be vigilant.<\/p>\n<p class=\"sc-9a00e533-0 hxuGS\">&#8220;Coinbase will never ask for your password, 2FA codes, or for you to transfer assets to a specific or new address, account, vault or wallet,&#8221; it said. <\/p>\n<p class=\"sc-9a00e533-0 hxuGS\">And it warned customers they should lock their accounts if they are suspicious.<\/p>\n<p class=\"sc-9a00e533-0 hxuGS\">&#8220;To the customers affected, we&#8217;re sorry for the worry and inconvenience this incident caused,&#8221; it said. <\/p>\n<p class=\"sc-9a00e533-0 hxuGS\">&#8220;We&#8217;ll keep owning issues when they arise.&#8221;<\/p>\n<\/div>\n<figure>\n<div data-component=\"image-block\" class=\"sc-3b6b161a-0 dFZIgd\">\n<div data-testid=\"image\" class=\"sc-4abb68ca-1 eOgpjw\"><img decoding=\"async\" src=\"https:\/\/static.files.bbci.co.uk\/bbcdotcom\/web\/20250508-105310-2a3fc0651-web-2.21.1-1\/grey-placeholder.png\" class=\"sc-4abb68ca-0 itgEAh hide-when-no-script\"\/><img decoding=\"async\" sizes=\"(min-width: 1280px) 50vw, (min-width: 1008px) 66vw, 96vw\" srcset=\"https:\/\/ichef.bbci.co.uk\/news\/240\/cpsprodpb\/41d3\/live\/348b21e0-26a8-11f0-8f57-b7237f6a66e6.png.webp 240w,https:\/\/ichef.bbci.co.uk\/news\/320\/cpsprodpb\/41d3\/live\/348b21e0-26a8-11f0-8f57-b7237f6a66e6.png.webp 320w,https:\/\/ichef.bbci.co.uk\/news\/480\/cpsprodpb\/41d3\/live\/348b21e0-26a8-11f0-8f57-b7237f6a66e6.png.webp 480w,https:\/\/ichef.bbci.co.uk\/news\/640\/cpsprodpb\/41d3\/live\/348b21e0-26a8-11f0-8f57-b7237f6a66e6.png.webp 640w,https:\/\/ichef.bbci.co.uk\/news\/800\/cpsprodpb\/41d3\/live\/348b21e0-26a8-11f0-8f57-b7237f6a66e6.png.webp 800w,https:\/\/ichef.bbci.co.uk\/news\/1024\/cpsprodpb\/41d3\/live\/348b21e0-26a8-11f0-8f57-b7237f6a66e6.png.webp 1024w,https:\/\/ichef.bbci.co.uk\/news\/1536\/cpsprodpb\/41d3\/live\/348b21e0-26a8-11f0-8f57-b7237f6a66e6.png.webp 1536w\" src=\"https:\/\/ichef.bbci.co.uk\/news\/480\/cpsprodpb\/41d3\/live\/348b21e0-26a8-11f0-8f57-b7237f6a66e6.png.webp\" loading=\"lazy\" alt=\"A green promotional banner with black squares and rectangles forming pixels, moving in from the right. The text says: \u201cTech Decoded: The world\u2019s biggest tech news in your inbox every Monday.\u201d\" class=\"sc-4abb68ca-0 ldLcJe\"\/><\/div>\n<\/div>\n<\/figure>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/www.bbc.com\/news\/articles\/c80k5plpx8do\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Tom Gerken Technology reporter Getty Images One of the world&#8217;s biggest cryptocurrency firms, Coinbase, says a recent cyber attack will cost it up to $400m (\u00a3301m). The firm said it was contacted by hackers who claimed to have gained access to customer information, obtained by making payments to Coinbase contractors and employees. In a blog [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":29004,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[62],"tags":[10023,1073,10044,7292,3158,3354,616,129],"class_list":["post-29003","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-tech","tag-400m","tag-attack","tag-coinbase","tag-crypto","tag-cyber","tag-exchange","tag-faces","tag-hit"],"_links":{"self":[{"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/posts\/29003","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/comments?post=29003"}],"version-history":[{"count":1,"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/posts\/29003\/revisions"}],"predecessor-version":[{"id":29005,"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/posts\/29003\/revisions\/29005"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/media\/29004"}],"wp:attachment":[{"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/media?parent=29003"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/categories?post=29003"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/tags?post=29003"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}