Coinbase Global, Inc.

May 2025 · Graded Verified · Financial Services · Government record

Incident summary

Coinbase Global, Inc.May 2025
breach at Coinbase, Inc.
Not yet quantified
VVerified
Coinbase's breach ran through its own support desk: overseas contractors with legitimate access to account-management tools, paid off by attackers who never needed an exploit because the credentials were already for sale. The stolen file held names, contact details, partial Social Security numbers, and government ID images for roughly 69,000 customers, the identity documents a regulated exchange is obliged to collect and then made someone else's job to guard. Coinbase refused the $20 million demand and posted a $20 million bounty instead, which does nothing to un-copy the data. The perimeter was never the network; it was a payroll, and someone made a better offer.
Financial Services
SEC 8-K, Item 1.05
Initial attack type insider confirmed · Impact data theft confirmed + data extortion

About this record

This incident is on the public government record: an SEC 8-K filing or a state-regulator notification, graded Verified. Every figure links to the source it was read from; if we have read one wrong, tell us at info@hackerinahoodie.com. This index never sums figures across incidents. See the methodology.

Cite this incident

← The complete On the Government Record ledger ← Back to the index