Coinbase Hack Exposes Crypto Industry’s Vulnerability to Old-School Tactics Like Bribery

In a surprising turn of events, Coinbase, one of the world’s largest cryptocurrency exchanges, revealed a major security breach—not through advanced cyber tactics, but via an old-fashioned method: bribery.


Hackers Bribed Coinbase Support Agents in India

Coinbase disclosed that cybercriminals gained unauthorized access to sensitive user data by bribing outsourced customer service agents in India. The stolen data includes:

  • Full names
  • Home addresses
  • Government ID images
  • Transaction history
  • Account balances

The breach affected less than 1% of Coinbase’s monthly active users, but the consequences are serious. The attackers demanded a $20 million ransom, which Coinbase has refused to pay.


Breach Timeline and Details

According to a filing with the Maine Attorney General, the breach started as early as December 26, 2024. In total, 69,461 customers were impacted, placing them at a higher risk of identity theft or fraud.

Coinbase stated that it:

  • Fired all employees involved in the breach
  • Notified affected users since December
  • Upgraded fraud detection systems
  • Is preparing to reimburse customers where necessary
  • Will relocate some support operations to more secure environments

DOJ Investigation Underway

Bloomberg reports that the U.S. Department of Justice (DOJ) is now investigating the incident. Coinbase itself is not the target of the investigation, according to Chief Legal Officer Paul Grewal, who confirmed the company voluntarily reported the hack to authorities.


CEO Responds: “We Won’t Pay Your Ransom”

Coinbase CEO Brian Armstrong addressed the situation directly in a video on X (formerly Twitter). Rather than giving in to the hackers’ ransom demand, Coinbase has launched a $20 million bounty program for any information leading to the attackers’ arrest and conviction.

“No, we’re not going to pay your ransom,” Armstrong said firmly.


Stock Reaction and Recovery

Coinbase’s stock (COIN) dropped 7% after the breach was revealed, but has since recovered most of its losses, now sitting about 1% below pre-announcement levels. As of the latest update, COIN is trading at $267.12, up 3.14%.


Expert View: A Process Failure, Not a Tech One

Devin Ryan, Head of Fintech Research at Citizens Financial Group, called the breach “a process issue” rather than a fundamental flaw in Coinbase’s system.

“This is an issue that emanated from employees and also, I think, from a process,” he noted.

bitcoin
Bitcoin (BTC) $ 105,064.15
ethereum
Ethereum (ETH) $ 2,550.70
tether
Tether (USDT) $ 1.00
xrp
XRP (XRP) $ 2.16
bnb
BNB (BNB) $ 652.63
solana
Solana (SOL) $ 145.54
usd-coin
USDC (USDC) $ 1.00
dogecoin
Dogecoin (DOGE) $ 0.175262
tron
TRON (TRX) $ 0.273442
staked-ether
Lido Staked Ether (STETH) $ 2,549.04
cardano
Cardano (ADA) $ 0.639597
wrapped-bitcoin
Wrapped Bitcoin (WBTC) $ 104,916.11
hyperliquid
Hyperliquid (HYPE) $ 40.51
wrapped-steth
Wrapped stETH (WSTETH) $ 3,081.13
sui
Sui (SUI) $ 3.01
chainlink
Chainlink (LINK) $ 13.32
leo-token
LEO Token (LEO) $ 9.06
bitcoin-cash
Bitcoin Cash (BCH) $ 418.85
stellar
Stellar (XLM) $ 0.259727
avalanche-2
Avalanche (AVAX) $ 19.12
the-open-network
Toncoin (TON) $ 2.97
usds
USDS (USDS) $ 1.00
shiba-inu
Shiba Inu (SHIB) $ 0.000012
weth
WETH (WETH) $ 2,550.04
wrapped-eeth
Wrapped eETH (WEETH) $ 2,731.76
hedera-hashgraph
Hedera (HBAR) $ 0.154778
litecoin
Litecoin (LTC) $ 84.17
binance-bridged-usdt-bnb-smart-chain
Binance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00
ethena-usde
Ethena USDe (USDE) $ 1.00
polkadot
Polkadot (DOT) $ 3.83
monero
Monero (XMR) $ 310.58
bitget-token
Bitget Token (BGB) $ 4.52
whitebit
WhiteBIT Coin (WBT) $ 34.37
coinbase-wrapped-btc
Coinbase Wrapped BTC (CBBTC) $ 105,097.16
pepe
Pepe (PEPE) $ 0.000011
uniswap
Uniswap (UNI) $ 7.32
aave
Aave (AAVE) $ 282.56
pi-network
Pi Network (PI) $ 0.560339
dai
Dai (DAI) $ 1.00
ethena-staked-usde
Ethena Staked USDe (SUSDE) $ 1.18
bittensor
Bittensor (TAO) $ 367.90
okb
OKB (OKB) $ 51.91
internet-computer
Internet Computer (ICP) $ 5.44
blackrock-usd-institutional-digital-liquidity-fund
BlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
aptos
Aptos (APT) $ 4.43
near
NEAR Protocol (NEAR) $ 2.23
crypto-com-chain
Cronos (CRO) $ 0.091097
ethereum-classic
Ethereum Classic (ETC) $ 16.44
susds
sUSDS (SUSDS) $ 1.06
jito-staked-sol
Jito Staked SOL (JITOSOL) $ 175.97