• Register / Login
  • App Dashboard
  • Profit/Loss Report
  • Mobile App
  • Before and After
  • Reviews and Testimonials
Monday, March 27, 2023
All in One Crypto App
Advertisement
  • Home
  • News By Sources
    • CoinGape
    • CoinPedia
    • CoinDoo
  • Analysis
  • FeaturesHot
  • Education
    • How to
    • Trading Tips
No Result
View All Result
  • Home
  • News By Sources
    • CoinGape
    • CoinPedia
    • CoinDoo
  • Analysis
  • FeaturesHot
  • Education
    • How to
    • Trading Tips
No Result
View All Result
All in One Crypto App
Home Crypto News Business

Coinbase Multi-Factor Authentication Hacked, Users Lose Funds

1 year ago
in Business, coinbase, Crypto News, Customers, Hackers
Reading Time: 2 mins read
This article is added for educational purpose only. All credit goes to the respected author of this article. All In One Crypto App do not hold any liabilities of this article. You can get the source link at the end of the article content.

Hackers leveraged a vulnerability in the bitcoin exchange’s SMS recovery system to steal cryptocurrency from 6,000 customers.

Coinbase, a major U.S.-based bitcoin and cryptocurrency exchange, disclosed today that a hacker was able to bypass the company’s SMS multi-factor authentication mechanism and steal funds from 6,000 users, Bleeping Computer reported.

The breach of Coinbase customers’ accounts happened between March and May 20, 2021, in a hacking campaign that combined phishing scams and a vulnerability exploit on the company’s security measures.

The U.S.-based exchange, which has approximately 68 million users from more than 100 countries, reportedly said that in order to conduct the attack, the hackers needed to know the user’s email address, password, and phone number, as well as have access to their email accounts. It is not clear how the hackers gained access to that information.

“In this incident, for customers who use SMS texts for two-factor authentication, the third party took advantage of a flaw in Coinbase’s SMS Account Recovery process in order to receive an SMS two-factor authentication token and gain access to your account,” Coinbase told customers in electronic notifications.

Beyond stealing funds, the hackers also exposed customers’ personal information, “including their full name, email address, home address, date of birth, IP addresses for account activity, transaction history, account holdings, and balances,” per the report.

Security should be a priority for online services, but most especially for financial services. Companies that deal with customers’ money, either in USD or cryptocurrency, should not offer SMS as a recovery option at all since it is the most easily exploited. And when they do, users should abstain from using SMS for account recovery or multi-factor authentication.

Better options for protecting your account are authentication apps and physical hardware such as YubiKeys. More importantly, you can and should protect your accounts with strong passwords and a suitable password manager like Bitwarden.

Nonetheless, users can also take back their sovereignty by opting out of centralized services altogether. Bitcoin exchanges like Coinbase represent a single point of failure, effectively becoming a hotbed for data exploits, regardless of the security standards they claim to live by. Centralized custodians and providers often get exploited; decentralized alternatives exist and should be leveraged. Think very carefully before handing your personal information to a third party.

Source: Bitcoin Magazine: Bitcoin News, Articles, Charts, and Guides

  • Website
  • Mobile app
  • Telegram Channel
  • Telegram Group
  • Twitter
  • Facebook
  • YouTube
  • Instagram
  • Binance Referral Link
  • Bitmex Referral Link
  • (Recommended For Leverage) ByBit Referral Link
  • Buy Ledger Nano at discounted price
  • Buy Cool Wallets at discounted price

Don't forget to share your review/suggestions for the android app.

All In One Crypto App is an execution-only service provider. The material provided on this website is for information purposes only and should not be understood as investment advice. Any opinion that may be provided on this page does not constitute a recommendation by All In One Crypto App or its agents. We do not make any representations or warranty on the accuracy or completeness of the information that is provided on this page. If you rely on the information on this page then you do so entirely on your own risks

Share2Tweet1ShareSendShare

Application Menu

  • Register / Login
  • App DashboardSignals
  • Profit/Loss Report
  • Mobile App
  • Before and After
  • Reviews and Testimonials
  • Register / Login
  • App Dashboard
  • Profit/Loss Report
  • Mobile App
  • Before and After
  • Reviews and Testimonials
Contact Us: Telegram

© 2022 All In One Crypto App   DMCA.com Protection Status

No Result
View All Result
  • Home
  • News By Sources
    • CoinGape
    • CoinPedia
    • CoinDoo
  • Analysis
  • Features
  • Education
    • How to
    • Trading Tips

© 2022 All In One Crypto App   DMCA.com Protection Status