MarketAlert – Real-Time Market & Crypto News, Analysis & AlertsMarketAlert – Real-Time Market & Crypto News, Analysis & Alerts
Font ResizerAa
  • Crypto News
    • Altcoins
    • Bitcoin
    • Blockchain
    • DeFi
    • Ethereum
    • NFTs
    • Press Releases
    • Latest News
  • Blockchain Technology
    • Blockchain Developments
    • Blockchain Security
    • Layer 2 Solutions
    • Smart Contracts
  • Interviews
    • Crypto Investor Interviews
    • Developer Interviews
    • Founder Interviews
    • Industry Leader Insights
  • Regulations & Policies
    • Country-Specific Regulations
    • Crypto Taxation
    • Global Regulations
    • Government Policies
  • Learn
    • Crypto for Beginners
    • DeFi Guides
    • NFT Guides
    • Staking Guides
    • Trading Strategies
  • Research & Analysis
    • Blockchain Research
    • Coin Research
    • DeFi Research
    • Market Analysis
    • Regulation Reports
Reading: Certora Weighs In on How Coinbase Could Have Avoided May Data Leak
Share
Font ResizerAa
MarketAlert – Real-Time Market & Crypto News, Analysis & AlertsMarketAlert – Real-Time Market & Crypto News, Analysis & Alerts
Search
  • Crypto News
    • Altcoins
    • Bitcoin
    • Blockchain
    • DeFi
    • Ethereum
    • NFTs
    • Press Releases
    • Latest News
  • Blockchain Technology
    • Blockchain Developments
    • Blockchain Security
    • Layer 2 Solutions
    • Smart Contracts
  • Interviews
    • Crypto Investor Interviews
    • Developer Interviews
    • Founder Interviews
    • Industry Leader Insights
  • Regulations & Policies
    • Country-Specific Regulations
    • Crypto Taxation
    • Global Regulations
    • Government Policies
  • Learn
    • Crypto for Beginners
    • DeFi Guides
    • NFT Guides
    • Staking Guides
    • Trading Strategies
  • Research & Analysis
    • Blockchain Research
    • Coin Research
    • DeFi Research
    • Market Analysis
    • Regulation Reports
Have an existing account? Sign In
Follow US
© Market Alert News. All Rights Reserved.
  • bitcoinBitcoin(BTC)$67,513.00-0.27%
  • ethereumEthereum(ETH)$2,026.80-0.75%
  • tetherTether(USDT)$1.000.00%
  • rippleXRP(XRP)$1.40-2.30%
  • binancecoinBNB(BNB)$626.03-0.50%
  • usd-coinUSDC(USDC)$1.000.01%
  • solanaSolana(SOL)$85.83-2.01%
  • tronTRON(TRX)$0.2856830.13%
  • dogecoinDogecoin(DOGE)$0.096998-2.94%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.02-0.96%
Blockchain Security

Certora Weighs In on How Coinbase Could Have Avoided May Data Leak

Last updated: August 23, 2025 12:50 am
Published: 6 months ago
Share

Leading blockchain security firm suggests a shift to Zero-Trust Architecture

Coinbase’s May 2025 data leak was a stark reminder that crypto’s scariest exploits don’t always happen in the code of an obscure DeFi application.

Unlike cold, calculated hacks in programming logic, social engineering exploits our most human vulnerabilities, with nefarious actors playing on our fear and confusion to steal millions of dollars.

Certora, a leading blockchain security firm, argues that centralized exchanges need to be doing more to protect their users. In a recent report, Certora outlines the importance of safe OpSec practices and suggests how Coinbase could’ve prevented the May Data Leak from ever happening in the first place.

In May 2025, criminals bribed a group of Coinbase’s offshore contractors, acquiring highly sensitive customer data like passports, banking identifiers, and masked social security numbers.

Coinbase’s initial disclosure indicated that the leak affected less than 1% of its monthly-transacting users. According to the Maine Attorney General’s office, regulatory reporting documents confirm that the incident put as many as 69,641 people at risk of social engineering attacks.

Remarkably, reports indicate that sensitive data was being leaked as early as December 2024. It’s impossible to know the extent of the damage that may have been caused before the breach was discovered on May 11, 2025. Coinbase has since made whole affected customers who were targeted by the criminals and lost funds.

Even if you consider yourself a crypto veteran, you’re still not immune to the damages that data leaks can cause. Solana Labs co-founder Raj Gokal probably didn’t get duped by a social engineering scam, but he certainly didn’t appreciate having his personal information shared across the internet.

Certora, a leading blockchain security firm, posits that social engineering is one of the easiest attack vectors available to malicious actors. The unpracticed-but-crypto-curious demographic is low-hanging fruit for experienced scammers. Why try and find chinks in battle-hardened, audited protocols when you can convince someone that you’re a Coinbase employee and “help” them secure their account?

While investors are responsible for educating themselves to a certain level, Certora argues that exchanges need to up their game and “account for the fact that vulnerable insiders, whether malicious or not, are susceptible to compromise.”

Certora champions the growing momentum of an OpSec movement called Zero Trust Architecture, or ZTA. Put simply, ZTA requires teams to stop trusting the “company network” as a safe bubble. Remote work, cloud apps, and rogue phishing make that security perimeter porous and insecure.

Exchanges need to realize that their employees are vulnerable to OpSec blunders, and lock each sensitive resource with its own access rules and checks. Every request is verified and given only the absolute minimum amount of data needed. That way, a single compromised account can’t roam or cause wider damage.

Going back to the Coinbase example, Certora raises a valid point about the access authorities and sensitive data visibility given to overseas contractors. There is no reason why a customer support agent should have access to a user’s passport, let alone their masked social security numbers and comprehensive account history.

While Coinbase evidently dropped the ball in this case, individuals are still strongly encouraged to educate themselves on security practices. Even if investors are frightened by the prospect of self-custody, those who store assets in centralized exchanges would still benefit from a few golden, unbreakable rules:

Crypto’s prolific growth and adoption in 2025 are massively beneficial for the industry. Unfortunately, the influx of millions of new users and investors is a mouth-watering prospect for malicious actors. Exchanges need to lift their game to protect users, or the industry will never overcome the reputational damage caused by security leaks like Coinbase’s recent blunder.

Prop AMMs are dominating Solana DeFi

Read more on solanafloor.com

This news is powered by solanafloor.com solanafloor.com

Share this:

  • Share on X (Opens in new window) X
  • Share on Facebook (Opens in new window) Facebook

Like this:

Like Loading...

Related

Crypto Security Firm CertiK Reports New Oracle-Based Exploit – Crypto Economy
MAGACOIN FINANCE Review: Safe, Audited, and Backed by Leading Crypto Analysts
Q&A: Can the tech behind crypto help align AI with human values?
MIM hacker launders $7.5m worth of stolen funds through Tornado Cash | Headlines | News | CoinMarketCap
Ethereum Foundation Forms Post-Quantum Team, Plans Strategic Engineering Shift

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Email Copy Link Print
Previous Article Crypto investor loses $1M in Uniswap scam exploiting Ethereum’s EIP-7702
Next Article Ripple (XRP) Bulls Pull Back Under $3 as Mutuum Finance (MUTM) Surges With Unmatched Potential – Cryptopolitan
© Market Alert News. All Rights Reserved.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Prove your humanity


Lost your password?

%d