
{"id":41871,"date":"2025-02-05T12:15:53","date_gmt":"2025-02-05T12:15:53","guid":{"rendered":"https:\/\/mycryptomania.com\/?p=41871"},"modified":"2025-02-05T12:15:53","modified_gmt":"2025-02-05T12:15:53","slug":"social-engineering-scams-hit-coinbase-users-hard-65m-stolen-actual-losses-likely-higher","status":"publish","type":"post","link":"https:\/\/mycryptomania.com\/?p=41871","title":{"rendered":"Social Engineering Scams Hit Coinbase Users Hard: $65M Stolen, Actual Losses Likely Higher"},"content":{"rendered":"<p>Over the past two months, Coinbase users have reported a surge in account restrictions, which appear linked to the company\u2019s aggressive risk models and an ongoing wave of social engineering scams.<\/p>\n<p>ZachXBT believes that the blame for the losses lies with Coinbase\u2019s leadership, failing to report theft addresses, offer responsive support, and react swiftly to threats \u2013 issues rivals like Kraken and Binance manage far more effectively.<\/p>\n<h2>Coinbase\u2019s Security Crisis<\/h2>\n<p>Popular pseudonymous on-chain investigator ZachXBT, alongside zeroShadow researcher \u2018tanuki42,\u2019 has uncovered that at least $65 million was stolen from Coinbase users through social engineering scams between December 2024 and January 2025.<\/p>\n<p>Their <a href=\"https:\/\/x.com\/zachxbt\/status\/1886412064660615515\" target=\"_blank\" rel=\"noopener\">findings<\/a>, based on on-chain data analysis and victim reports received via direct messages, suggest the actual figure is likely much higher, as it does not account for cases reported directly to Coinbase or law enforcement.<\/p>\n<p>The scams typically involve attackers posing as Coinbase support, using spoofed phone numbers and emails to gain victims\u2019 trust, often leveraging personal data from private databases. Victims are tricked into transferring funds to compromised Coinbase Wallets and whitelisting fraudulent addresses.<\/p>\n<p>One case involved a loss of $850,000, with the stolen funds consolidated alongside assets from over 25 other victims linked to the address \u2018coinbase-hold.eth.\u2019 ZachXBT attributed these scams to groups based in India and low-level cybercriminals from online communities like Com. He criticized Coinbase\u2019s risk models and customer security measures, which he claims have failed to prevent over $300 million in annual losses to such fraud.<\/p>\n<h2>Leadership Inaction and Weak Support<\/h2>\n<p>In addition to rampant social engineering scams, ZachXBT claimed that Coinbase has quietly experienced several security incidents that were not publicly disclosed. These include breaches involving old API keys used for tax software, which were supposed to have read-only permissions but were compromised, and a recent bug that allowed verification codes to be sent to any email address, regardless of whether it was linked to an account.<\/p>\n<p>In 2023, $15.9 million was stolen from Coinbase Commerce, and a threat actor laundered $38 million from the BTCTurk hack through Coinbase in just a few hours. The blame, according to the detective, largely falls on Coinbase\u2019s leadership for systemic failures in security and customer response.<\/p>\n<p>Theft-related addresses often go unreported in compliance tools for weeks, leaving gaps in fraud detection. Victims frequently encounter ineffective customer support, with little follow-up, and the company\u2019s unavailability outside US hours is problematic for a global 24\/7 market.<\/p>\n<p>He further added that competitors such as Kraken, OKX, and Binance manage similar risks more effectively, Coinbase has failed to take decisive action against even low-level US-based threat actors with poor operational security. ZachXBT stated that the core issues stem from leadership decisions, not individual employees.<\/p>\n<p>\u201cCoinbase needs to urgently make changes as more and more users are being scammed for tens of millions every month. Other major exchanges do not have similar panels created by scammers for fraud. While the victims are partially responsible it\u2019s unreasonable to expect elderly victims to understand the nuances of email\/phone spoofing.\u201d<\/p>\n<p>The post <a href=\"https:\/\/cryptopotato.com\/social-engineering-scams-hit-coinbase-users-hard-65m-stolen-actual-losses-likely-higher\/\">Social Engineering Scams Hit Coinbase Users Hard: $65M Stolen, Actual Losses Likely Higher<\/a> appeared first on <a href=\"https:\/\/cryptopotato.com\/\">CryptoPotato<\/a>.<\/p>","protected":false},"excerpt":{"rendered":"<p>Over the past two months, Coinbase users have reported a surge in account restrictions, which appear linked to the company\u2019s aggressive risk models and an ongoing wave of social engineering scams. ZachXBT believes that the blame for the losses lies with Coinbase\u2019s leadership, failing to report theft addresses, offer responsive support, and react swiftly to [&hellip;]<\/p>\n","protected":false},"author":0,"featured_media":41872,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[4],"tags":[],"class_list":["post-41871","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-discovery"],"_links":{"self":[{"href":"https:\/\/mycryptomania.com\/index.php?rest_route=\/wp\/v2\/posts\/41871"}],"collection":[{"href":"https:\/\/mycryptomania.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mycryptomania.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"replies":[{"embeddable":true,"href":"https:\/\/mycryptomania.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=41871"}],"version-history":[{"count":0,"href":"https:\/\/mycryptomania.com\/index.php?rest_route=\/wp\/v2\/posts\/41871\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/mycryptomania.com\/index.php?rest_route=\/wp\/v2\/media\/41872"}],"wp:attachment":[{"href":"https:\/\/mycryptomania.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=41871"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mycryptomania.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=41871"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mycryptomania.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=41871"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}