DisclosureLens
MisuseFinancial ServicesTechnologyFinancePrivilege AbuseBECTargetedRansom DemandedCustomer Data InvolvedEmployee Data InvolvedIdentity (basic)PIILowActive

COINBASE, INC.

bd_bc2dd2c7c34bf3fe · schema v1 · pii pii-v1

Severity

Low

Discovered

May 11, 2025

Filed

May 27, 2025

To disclose

16 days

Affected

454state residents only

Linked

10 filings

Confidence

65%
Full breach record for COINBASE, INC.4 incidents on file

Coinbase Inc. notified the New Hampshire Attorney General of an insider threat incident where overseas support employees improperly accessed customer account information. A third party claimed to have obtained this data and demanded a $20 million ransom, which Coinbase refused. Approximately 454 New Hampshire residents were potentially impacted. Coinbase suspended the employees, notified customers, and is offering credit monitoring.

Incident timeline

discovery → filing · 16 days

May 11, 2025

Discovered

May 27, 2025

Filed

vs. sector median

6 wks faster

This filing is one of 10 about the same incident.View merged incident

Linked disclosures

Why this link?

Regulatory filings (9) · sorted by filing gap

Show 5 more filingsup to 26d gap

Filing propagation · 10 filings · 9 states

View merged incident ↗

Pattern: first filing May 1 (IL), last May 30 (NE) — a 29-day rolling notification. Rolling spreads often mean counsel is filing as thresholds trip per state. Why this link?

Evidence ladder

Leak-site claim

Attacker assertion only. Establishes: claim date, group, alleged victim.

Press / market report

Unlocks: incident narrative, operational impact. Still no compliance clock.

State AG / regulator filingThis record

Unlocks: discovery date, data types, affected count, compliance clock.

SEC 8-K / victim statement

Unlocks: materiality, stated response, full audit trail. Ceiling removed.