{"id":8924,"date":"2025-05-08T08:34:01","date_gmt":"2025-05-07T23:34:01","guid":{"rendered":"https:\/\/cyberenso.jp\/?p=8924"},"modified":"2025-09-08T08:34:20","modified_gmt":"2025-09-07T23:34:20","slug":"coinbase-ransomware-attack-insider-participation","status":"publish","type":"post","link":"https:\/\/cyberenso.jp\/en\/coinbase-ransomware-attack-insider-participation\/","title":{"rendered":"Coinbase Ransomware Attack Insider Participation"},"content":{"rendered":"\n<p>Coinbase publicly disclosed that cybercriminals had orchestrated a major insider-mediated extortion attempt. These attackers had bribed overseas customer support agents to access and steal sensitive customer data\u2014including names, addresses, phone numbers, emails, images of government-issued IDs, masked Social Security and bank account details, account balances, transaction histories, and certain internal corporate documents.<br>Coinbase estimated that less than 1% of its monthly transacting user base was affected, which translates to roughly 69,000 users.<br>Crucially, the breach did not expose login credentials, two-factor authentication codes, private keys, or funds\u2014neither individual customer wallets nor Coinbase Prime accounts were compromised.<br>Cybercriminals demanded a $20 million ransom in Bitcoin to avoid public release of the stolen data. Coinbase instead refused to pay the ransom, stating, &#8220;We will not fund criminal activity.&#8221;<br>Rather than capitulate, Coinbase launched a $20 million reward fund for information leading to the arrest and conviction of those involved. The financial fallout was substantial: preliminary estimates placed the total remediation and reimbursement costs between $180 million and $400 million. The company also faced legal consequences numerous lawsuits were filed alleging negligence and insufficient incident response while regulatory scrutiny followed through SEC disclosures and filings.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Coinbase publicly disclosed that cybercriminals had orchestrated a major insider-mediated extortion attempt. These attackers had bribed overseas customer support agents to access and steal sensitive customer data\u2014including names, addresses, phone numbers, emails, images of government-issued IDs, masked Social Security and bank account details, account balances, transaction histories, and certain internal corporate documents.Coinbase estimated that less than 1% of its monthly<span class=\"excerpt-hellip\"> [\u2026]<\/span><\/p>\n","protected":false},"author":1,"featured_media":8736,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[226,2],"tags":[],"class_list":["post-8924","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-finance-and-legal","category-ce_news"],"acf":[],"jetpack_featured_media_url":"https:\/\/i0.wp.com\/cyberenso.jp\/wp-content\/uploads\/2025\/01\/cyberpunk-bitcoin-illustration_23-2151611190.jpg?fit=1380%2C773&ssl=1","_links":{"self":[{"href":"https:\/\/cyberenso.jp\/en\/wp-json\/wp\/v2\/posts\/8924"}],"collection":[{"href":"https:\/\/cyberenso.jp\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cyberenso.jp\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cyberenso.jp\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/cyberenso.jp\/en\/wp-json\/wp\/v2\/comments?post=8924"}],"version-history":[{"count":1,"href":"https:\/\/cyberenso.jp\/en\/wp-json\/wp\/v2\/posts\/8924\/revisions"}],"predecessor-version":[{"id":8925,"href":"https:\/\/cyberenso.jp\/en\/wp-json\/wp\/v2\/posts\/8924\/revisions\/8925"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cyberenso.jp\/en\/wp-json\/wp\/v2\/media\/8736"}],"wp:attachment":[{"href":"https:\/\/cyberenso.jp\/en\/wp-json\/wp\/v2\/media?parent=8924"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cyberenso.jp\/en\/wp-json\/wp\/v2\/categories?post=8924"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cyberenso.jp\/en\/wp-json\/wp\/v2\/tags?post=8924"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}