13 Jan 2025

How Coinbase Users Fall Victim to Phishing Attacks

How Coinbase Users Fall Victim to Phishing Attacks

The domain name of Coinbase has repeatedly been exploited by fraudsters to orchestrate various types of attacks on the users of this prominent American trading platform. Regrettably, some of these attacks have been successful.

On this page

Criminals and fraudsters who prey on the assets of crypto investors and traders are coming up with increasingly sophisticated and cunning schemes and strategies. Some of these we have described in previous articles. If earlier fraudsters imitated official accounts in messengers or social networks, now they've begun utilizing official crypto exchange domains and email accounts, posing as employees of trading platforms.  

Email attacks from the Coinbase domain

Daniel Mason chronicled one such incident, where he started receiving deceitful emails from July 7 onwards. He mentioned that these letters were sourced from an official server associated with the Coinbase.com domain.

A fraudster called Mason from a local number, then dispatched an email from the coinbase.com domain. Consequently, Daniel was hit with a phishing message containing a link leading to an address within the Coinbase subdomain. Upon visiting this page, Mason was confronted with a form soliciting personal data like mailing address, social security number, and driver's license information, along with authorization details.

During the phone conversation, the perpetrator claimed that Mason's account had been potentially breached, necessitating a routine verification procedure initiated via an email sent to the user's address. He was informed that an email from Coinbase would follow shortly, and almost instantly, a message from [email protected] arrived.

Did he create a case on my behalf? Or access Coinbase mail servers?

Mason pondered, expressing his surprise or shock on Twitter.

A tweet from a user marveling at the scammer

A tweet from a user marveling at the scammer's thorough preparation. Source: Twitter

In the aftermath of a phishing attack, a Coinbase customer lost $50,000 and is now suing the exchange

Mason's experience is not a one-off. A brief scan of the Coinbase support page reveals a host of user complaints about various scams. Another client affirmed that after losing assets due to a phishing attack, he contacted the Coinbase support line to validate the authenticity of the email and the individual claiming to be an exchange representative. A support staff member confirmed the call took place from an exchange-affiliated number but the email was a hacker's handiwork.

“An employee of Coinbase authenticated a hacker as a Coinbase employee, who then stole my crypto. They then strung me along before taking no accountability, even though I had a witness, time and date of call, and the employee I spoke to,” reported the customer. The matter is now under legal examination. The victim maintains that the cumulative sum of all lost assets is nearly $50,000.

Another phishing scheme involving two-factor authentication

Jacob Canfield has brought to light a new phishing strategy. On June 13, he was subjected to a text message and several phone calls from an imposter, who claimed that alterations in the two-factor authentication (2FA) settings required him to undertake an extra layer of identification.

“They then sent me to the ‘security' team to verify my account to avoid a 48 hour suspension. They had my name, my email and my location and sent a ‘verification code' email from [email protected] to my personal email,” wrote Canfield on Twitter. He further added that the fraudster became irate and abruptly hung up after being denied the request to input the code to proceed with the procedure.

A tweet exposing a scam attempt via the Coinbase.com domain. Source: Twitter

A tweet exposing a scam attempt via the Coinbase.com domain. Source: Twitter

The intriguing aspect is that the email address, [email protected], is indeed recognized as official on the exchange's customer support page. Furthermore, Coinbase has, on multiple occasions, advised its users via various channels that Coinbase employees never request any passwords or 2FA codes under any circumstances, nor do they demand remote access to the clients' devices. Despite these measures, an incident of this sort has occurred.

Coinbase's reaction

Despite the flurry of queries from users and journalists, Coinbase maintains its standard response, emphasizing that the company has dedicated significant resources to elevate its security measures and enlighten users on the ways to combat phishing scams. The exchange announces its cooperation with global law enforcement agencies, assuring that any scam targeting Coinbase's clients will be sternly penalized and pursued in accordance with the law.

As is often the case, if you need a helping hand, you will find one at the end of your arm. 

Our advice

We recommend you to create secure, unique, and long passwords for every individual account and update them regularly – ideally every quarter. For ease of recollection, store them in secure programs like a password manager, or even a regular text file (*.txt), encrypted with a complex password. Moreover, it is crucial to employ two-factor authentication (like Google Authenticator or its alternatives) not only for your exchange accounts but also for email accounts linked to them.

Additionally, we urge you not to click on links from emails unless you have specifically requested customer support due to an existing issue. Any unsolicited “initiatives” from exchanges or trading platforms might be a fraudster's attempt to access your digital wallets with the intent of asset theft.  

The content on The Coinomist is for informational purposes only and should not be interpreted as financial advice. While we strive to provide accurate and up-to-date information, we do not guarantee the accuracy, completeness, or reliability of any content. Neither we accept liability for any errors or omissions in the information provided or for any financial losses incurred as a result of relying on this information. Actions based on this content are at your own risk. Always do your own research and consult a professional. See our Terms, Privacy Policy, and Disclaimers for more details.

Articles by this author

Latest News

MORE
The Crypto Rollercoaster of 2024 — Wins and Woes

The Crypto Rollercoaster of 2024 — Wins and Woes

The crypto sector evolved at breakneck speed in 2024. With major wins and notable setbacks, it’s time to reflect on the year’s key developments and their implications for the future.

31 Dec 2024
OpenSea Token: Release Date and How to Qualify for the Airdrop

OpenSea Token: Release Date and How to Qualify for the Airdrop

The NFT marketplace OpenSea, a pioneer in the space for the past seven years, is expected to launch its native token in 2025. A significant portion of the tokens will likely be distributed through a retroactive airdrop—a common way to reward the community for their past activity and support.

30 Dec 2024
5 Most Exciting Token Launches to Watch in 2025

5 Most Exciting Token Launches to Watch in 2025

In 2024, we saw a number of hot airdrops and token launches, from AI-powered projects to the rise of memecoins. Now, as we head into 2025, the crypto space is set to expand even further with an increasing number of cryptocurrencies.

27 Dec 2024
A Million Bitcoins for the U.S.? Cynthia Lummis’ Ambitious Plan

A Million Bitcoins for the U.S.? Cynthia Lummis’ Ambitious Plan

Wyoming Senator Cynthia Lummis has proposed an ambitious plan to create a strategic Bitcoin reserve for the United States. In a recent interview, she explained how Bitcoin could strengthen the global position of the U.S. dollar and help address the growing national debt.

23 Dec 2024

Latest News Alt

MORE
Weekly Analysis of BTC, ETH, and the Stock Market (Jan 6, 2025)

Weekly Analysis of BTC, ETH, and the Stock Market (Jan 6, 2025)

An overview of BTC, ETH, XAUT, and S&P500 charts, along with the current cryptocurrency market dynamics.

06 Jan 2025
Weekly Analysis of BTC, ETH, and the Stock Market (Dec 30, 2024)

Weekly Analysis of BTC, ETH, and the Stock Market (Dec 30, 2024)

An overview of BTC, ETH, XAUT, and S&P500 charts, and the current cryptocurrency market dynamics.

30 Dec 2024
Weekly Analysis of BTC, ETH, and the Stock Market (Dec 23, 2024)

Weekly Analysis of BTC, ETH, and the Stock Market (Dec 23, 2024)

An overview of BTC, ETH, XAUT, and S&P500 charts, and the current cryptocurrency market dynamics.

23 Dec 2024

Might Be Interesting

MORE
Mining Farms Uncovered — How Crypto Is Mined at Scale

Mining Farms Uncovered — How Crypto Is Mined at Scale

As a cornerstone of the crypto industry, mining farms drive blockchain networks. But how do they work? Uncover the mechanics behind these cutting-edge hubs and their role in the crypto landscape.

07 Jan 2025
William Quigley, WAX/Tether: Stablecoins’ Role in Global Payments

William Quigley, WAX/Tether: Stablecoins’ Role in Global Payments

William Quigley, co-founder of WAX and Tether, firmly believes that stablecoins are more than a tool for traders—they’re the key to transforming the global economy. Already central to crypto trading and cross-border payments, their future potential is even more exciting.

04 Jan 2025
Why Blockchain Is Different from Traditional Databases

Why Blockchain Is Different from Traditional Databases

In the world of business and finance, information is everything. Traditional databases have been reliable tools for decades, but blockchain presents a groundbreaking alternative. What sets it apart, and could it lead to a paradigm shift?

03 Jan 2025
How Does Multisig Works and Protect Your Assets?

How Does Multisig Works and Protect Your Assets?

As threats to digital assets evolve, multisig technology provides a highly effective security layer. By requiring multiple signatures for transactions, it significantly reduces risks such as hacking and access loss.

02 Jan 2025
Crypto Price Gaps: Why Platforms Show Different Prices

Crypto Price Gaps: Why Platforms Show Different Prices

The crypto market has nuances you may not have noticed at first glance. For example, when you want to check the Bitcoin price, you probably Google it without thinking to compare the results. But when you monitor the market regularly and engage in trading, you notice the prices aren’t the same on all platforms.

24 Dec 2024
The Czech Republic and Its Crypto-Friendly Policies

The Czech Republic and Its Crypto-Friendly Policies

The Czech Republic is emerging as a crypto-friendly nation, recognizing cryptocurrencies as legitimate payment methods and encouraging their use in business. But its regulatory framework is still taking shape. Here’s how crypto is managed today.

23 Dec 2024

Opinions

8 Commandments for Crypto Exchange Users

8 Commandments for Crypto Exchange Users

While cryptocurrency exchanges offer many security features, they are still vulnerable to hacks, fraud, and other criminal activity. Remember, no online platform can guarantee 100% protection for your funds. Follow these eight key rules to reduce your risks. Rule #1: Don’t Believe in the Myth of Absolute Exchange Security Even the largest and most seemingly […]

12 Jan 2025
10 Key Investment Trends to Watch in 2025: Green Crypto, Regulations, and More

10 Key Investment Trends to Watch in 2025: Green Crypto, Regulations, and More

Donald Trump is back, Germany’s economy is in trouble, while U.S. economic indicators seem to have a robust momentum, and interest rates are sliding downhill. Sounds dramatic? It is. But 2025 isn’t all doom and gloom—it’s full of opportunities for investors who know where to look. Whether you’re a seasoned pro or someone still figuring […]

12 Jan 2025
MORE

Interviews

Dmytro Gordon and Volodymyr Nosov: A Sensational Interview

Dmytro Gordon and Volodymyr Nosov: A Sensational Interview

Volodymyr Nosov, CEO of Europe’s largest crypto exchange WhiteBIT, sat down with Dmytro Gordon, one of Ukraine’s most prominent journalists. The interview touched on Bitcoin, crypto, WhiteBIT, cars, keys to success, and business vision.

18 Dec 2024
WhiteBIT CEO: Standing Strong Against Russian Aggression

WhiteBIT CEO: Standing Strong Against Russian Aggression

In an interview with BTC-ECHO, Volodymyr Nosov, the founder and CEO of WhiteBIT, discussed the impact of Russian aggression on the crypto exchange’s business, how WhiteBIT stays a top competitor in the industry, and when he believes our financial system will be completely transformed.

04 Oct 2024
MORE