Coinbase disclosed that 'rogue' support agents were involved in helping cyber criminals steal customer data and deceive victims into sending money to attackers.
As a result of the attack, a 'small subset of users' had their names, addresses, phone numbers, government IDs images, account data, and partial social security numbers compromised.
Coinbase received an email from a threat actor demanding $20 million to prevent the exposure of certain Coinbase accounts, but the company refused to pay.
Coinbase is collaborating with law enforcement, terminated the involved personnel, and plans to press criminal charges. The attackers did not access login credentials, 2FA codes, or private keys but the company could spend $180 million to $400 million repaying affected customers.