logo

Coinbase confirms insider breach linked to leaked support tool screenshots

ID: 017c569c-6f32-5bd4-a3f0-820b05bc5c9c

STIX ID: report--017c569c-6f32-5bd4-a3f0-820b05bc5c9c

Feed Name: Bleeping Computer

Threat Score
55/100

Date Published: 2026-02-04

Date Updated: 2026-04-20

Author: Lawrence Abrams

...
...

Coinbase confirmed an insider breach in December in which a contractor improperly accessed sensitive information for roughly 30 customers (names, emails, DOB, phone numbers, KYC, wallet balances and transactions); screenshots were briefly posted by a group calling itself "Scattered Lapsus Hunters" though attribution remains unclear. The article situates this event among a growing pattern of attacks against BPOs and outsourced support providers—through bribery, social engineering, or compromised agent accounts—that enable attackers to access corporate customer data and internal tools.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.