Coinbase warns of up to $400 million hit from cyberattack

Hackers had paid multiple contractors and employees working in support roles outside the US to collect information. (AP)
Short Url
Updated 16 May 2025
Follow

Coinbase warns of up to $400 million hit from cyberattack

  • Hackers bribed staff overseas
  • Company rejected $20 million ransom demand

Coinbase forecast a hit of $180 million to $400 million from a cyberattack that breached account data of a “small subset” of its customers, the crypto exchange said in a regulatory filing on Thursday.
The company received an email from an unknown threat actor on May 11, claiming to have information about certain customer accounts as well as internal documents.
While some data — including names, addresses and emails — was stolen, the hackers did not get access to login credentials or passwords, Coinbase said. It would, however, reimburse customers who were tricked into sending funds to the attackers.
Hackers had paid multiple contractors and employees working in support roles outside the US to collect information. The company had fired those involved, it said.
Separately, the US Securities and Exchange Commission had begun scrutinizing whether Coinbase had misstated its user figures, two sources familiar with the matter told Reuters.
The agency had also been interested in whether any inaccurate user data could indicate the company had inadequate know-your-customer compliance that is required of firms registered with the SEC, the sources said.
A Coinbase spokesperson denied the SEC was probing the company’s compliance with know-your-customer and Bank Secrecy Act rules.
Another source familiar with the matter said that the SEC did not directly ask questions about such compliance and that it would not be a relevant topic since the SEC
dropped a separate case
against Coinbase alleging the firm failed to register with the SEC.
The inquiry into Coinbase’s “verified user” metric had continued even after the SEC abandoned its other lawsuit, the source said. The New York Times first reported the investigation into user data from past disclosures.
Coinbase shares extended losses after the report and were last down 6.5 percent.
“This is a hold-over investigation from the prior administration about a metric we stopped reporting two and a half years ago, which was fully disclosed to the public,” Coinbase’s chief legal officer, Paul Grewal, said.
“While we strongly believe this investigation should not continue, we remain committed to working with the SEC to bring this matter to a close.”
The SEC declined to comment.

Cracks in crypto
The latest developments come days before the company is set to join the benchmark S&P 500 index, casting a shadow over what was expected to be a landmark moment for the crypto industry.
Security remains a challenge for the crypto industry despite its growing mainstream acceptance. In February, Bybit disclosed a hack in which around $1.5 billion of digital tokens were stolen — widely dubbed the biggest crypto heist of all time.
“The cyberattack may push the industry to adopt stricter employee vetting and introduce some reputational risks,” said Bo Pei, analyst at US Tiger Securities.
Funds stolen by hacking crypto platforms totaled $2.2 billion in 2024, according to a report from Chainalysis.
“As our nascent industry grows rapidly, it draws the eye of bad actors, who are becoming increasingly sophisticated in the scope of their attacks,” said Nick Jones, founder of crypto firm Zumo.
The firm now also faces a lawsuit, filed in the Southern District of New York, alleging the world’s largest crypto exchange failed to secure and safeguard personally identifiable information of millions of former and current customers, the filing showed.
Coinbase has refused to pay a ransom demand of $20 million from the attackers and is working with law enforcement agencies. It has instead established a $20 million reward for information on the hackers.
The company is also opening a new support hub in the US and taking other measures to prevent such cyberattacks, it said.


Pakistani fighter jet crashes in Jalalabad, pilot captured: Afghan military, police

Updated 42 min 34 sec ago
Follow

Pakistani fighter jet crashes in Jalalabad, pilot captured: Afghan military, police

  • Fighting between Pakistan and Afghanistan’s Taliban military entered its third day on Saturday
  • Pakistan’s strikes on Friday hit Taliban military installations and posts, including in Kabul and Kandahar

JALALABAD: A Pakistani jet has crashed in Jalalabad city and the pilot captured alive, the Afghan military and police said Saturday, with residents telling AFP the man parachuted from the plane before being detained.
"A Pakistani fighter jet was shot down in the sixth district of Jalalabad city, and its pilot was captured alive," police spokesman Tayeb Hammad said.
Wahidullah Mohammadi, spokesman for the military in eastern Afghanistan, confirmed the Pakistani jet was downed by Afghan forces "and the pilot was captured alive".

The AFP journalist heard a jet overhead before blasts from the direction of the airport in Jalalabad, the capital of Nangarhar province, which sits on the road between Kabul and the Pakistani border.

Fighting between Pakistan and Afghanistan’s Taliban military entered its third day on Saturday, following overnight clashes as the international community expressed increasing concern about the conflict and called for urgent talks.

Pakistan’s strikes on Friday hit Taliban military installations and posts, including in Kabul and Kandahar, in one of the deepest Pakistani incursions into its western neighbor in years, officials said.

Islamabad accuses the Taliban of harboring Tehreek-e-Taliban Pakistan (TTP) militants, who it claims are waging an insurgency inside Pakistan, a charge the Taliban denies.

Pakistan described its actions as a response to cross-border assaults, while Kabul denounced them as a breach of its sovereignty, saying it remained open to dialogue but warned any wider conflict would result in serious consequences.

The fighting has raised ‌the risk ‌of a protracted conflict along the rugged 2,600-kilometer frontier.

Diplomatic efforts gathered ‌pace ⁠late on Friday ⁠as Afghanistan said its foreign minister, Amir Khan Muttaqi, spoke by telephone with Saudi Arabia’s Prince Faisal bin Farhan about reducing tensions and keeping diplomatic channels open.

The European Union called for both sides to de-escalate and engage in dialogue, while the United Nations urged an immediate end to hostilities.

Russia urged both sides to halt the clashes and return to talks, while China said it was deeply concerned and ready to help ease tensions.

The United States supports Pakistan’s right to defend itself against attacks by ⁠the Taliban, a State Department spokesperson said.

Border fighting continues

Exchanges of fire continued along ‌the border overnight.

Pakistani security sources said an operation dubbed “Ghazab Lil Haq” was ongoing and that Pakistani forces had destroyed multiple Taliban posts and camps in several sectors. Reuters could not independently verify the claims.

Both sides have reported heavy losses with conflicting tolls that Reuters could not verify. Pakistan said 12 of its ‌soldiers and 274 Taliban were killed while the Taliban said 13 of its fighters and 55 Pakistani soldiers died.

Taliban deputy spokesman Hamdullah Fitrat ⁠said 19 civilians were ⁠killed and 26 wounded in Khost and Paktika. Reuters could not verify the claim.

Pakistan’s Defense Minister Khawaja Muhammad Asif said “our cup of patience has overflowed” and described the fighting as “open war,” warning that Pakistan would respond to further attacks.

Taliban Interior Minister Sirajuddin Haqqani said in a speech in Khost province that the conflict “will be very costly,” and that Afghan forces had not deployed broadly beyond those already engaged.

He said the Taliban had defeated “the world, not through technology, but through unity and solidarity,” and through “great patience and perseverance,” rather than superior military power.

Pakistan’s military capabilities far exceed those of Afghanistan, with a standing army of hundreds of thousands and a modern air force.

In stark contrast, the Taliban lacks a conventional air force and relies largely on light weaponry and ground forces.

However, the Islamist group is battle-hardened after two decades of insurgency against US-led forces before returning to power in 2021.