Coinbase Global, Inc.
May 2025 · Graded Verified · Financial Services · Government record
Incident summary
Coinbase Global, Inc.May 2025
breach at Coinbase, Inc.
Not yet quantified
VVerifiedCoinbase's breach ran through its own support desk: overseas contractors with legitimate access to account-management tools, paid off by attackers who never needed an exploit because the credentials were already for sale. The stolen file held names, contact details, partial Social Security numbers, and government ID images for roughly 69,000 customers, the identity documents a regulated exchange is obliged to collect and then made someone else's job to guard. Coinbase refused the $20 million demand and posted a $20 million bounty instead, which does nothing to un-copy the data. The perimeter was never the network; it was a payroll, and someone made a better offer.
Financial Services
SEC 8-K, Item 1.05
Initial attack type insider confirmed · Impact data theft confirmed + data extortion
About this record
This incident is on the public government record: an SEC 8-K filing or a state-regulator notification, graded Verified. Every figure links to the source it was read from; if we have read one wrong, tell us at info@hackerinahoodie.com. This index never sums figures across incidents. See the methodology.