Latest news about Bitcoin and all cryptocurrencies. Your daily crypto news habit.
3.1 million email addresses linked to CoinMarketCap accounts were reportedly being traded on hacking forums, according to Have I Been Pwned.
CoinMarketCap, a price-tracking website for cryptocurrencies, has reportedly fallen victim to a hack that leaked 3.1 million (3,117,548) user email addresses.Â
The information came into light after the hacked email addresses were found to be traded and sold online on various hacking forums, and revealed by Have I Been Pwned, a website dedicated to tracking hacks and compromised online accounts.
CoinMarketCap, a subsidiary of Binance cryptocurrency exchange, confirmed that the list of leaked user accounts matched its userbase:
âCoinMarketCap has become aware that batches of data have shown up online purporting to be a list of user accounts. While the data lists we have seen are only email addresses, we have found a correlation with our subscriber base.â
While confirming the correlation of the 3.1 million (3,117,548) user email addresses with its userbase on Oct. 12, the company has assured that the hackers did not gain access to any of the account passwords. âWe have not found any evidence of a data leak from our own servers â we are actively investigating this issue and will update our subscribers as soon as we have any new information,â CoinMarketCap spokesperson said.
Despite the confirmation, CoinMarketCap has yet to identify the exact cause of the hack. Responding to Cointelegraph's request for comment, CoinMarketCap said:
"As no passwords are included in the data we have seen, we believe that it is most likely sourced from another platform where users may have reused passwords across multiple sites."
Related: Hackers exploit MFA flaw to steal from 6,000 Coinbase customers â Report
A recent hack on the Coinbase crypto exchange resulted in the compromise of 6,000 user accounts.
The attack was a result of exploiting the exchangeâs multifactor authentication (MFA) system, which suggests that the hackers had access to the userâs email addresses. According to Coinbase, the attackers identified a vulnerability in the account recovery process:
âIn this incident, for customers who use SMS texts for two-factor authentication, the third party took advantage of a flaw in Coinbaseâs SMS Account Recovery process in order to receive an SMS two-factor authentication token and gain access to your account.â
While the value of stolen assets has yet to be revealed by Coinbase, the incident was complemented by thousands of formal complaints from the account holders against the company.
Disclaimer
The views and opinions expressed in this article are solely those of the authors and do not reflect the views of Bitcoin Insider. Every investment and trading move involves risk - this is especially true for cryptocurrencies given their volatility. We strongly advise our readers to conduct their own research when making a decision.