Overview
- Cybercriminals bribed overseas Coinbase support agents to access sensitive customer data, affecting less than 1% of users.
- Stolen data included names, emails, phone numbers, government ID images, partial Social Security numbers, and masked bank account details, but not passwords or private keys.
- Coinbase rejected a $20 million ransom demand and instead established a $20 million reward fund for information leading to the attackers' arrest.
- The company has fired compromised employees, reimbursed scammed customers, and enhanced fraud detection and security protocols.
- Remediation and reimbursement costs are estimated between $180 million and $400 million, with Coinbase cooperating with law enforcement to hold attackers accountable.