ChartModo logo ChartModo logo
Cryptopolitan 2026-01-02 08:14:58

Dark web listing claims access to Kraken support system

Claims that access to Kraken’s internal customer support systems is being offered for sale on a dark web forum are currently making rounds on X, even as the evidence backing the alleged breach is largely unverified. According to web activity monitoring social account Dark Web Informer, a read-only version of Kraken’s internal support panel is on the market, being sold for as little as $1, and is supposedly negotiable. A snapshot of the dark web forum shows user “ransomcharger” telling their associates that the access would allow the viewing of user profiles and transaction histories, and could generate customer support tickets to phish customers or extract private information. Kraken support access could expose customer info for 2 months According to the listing, the access is reportedly not restricted by IP address, proxied through Kraken’s own systems. It can retrieve full know-your-customer (KYC) documents, including identification cards, selfies, proof of address, and declared sources of funds. The access is reportedly valid for at least one to two months before rotation, with time-based authentication codes expiring in February. However, Cryptopolitan has not found any other independent confirmation or evidence supporting the allegation, and Kraken’s support team has not acknowledged any compromise of its internal systems. In mid-2025, Cryptopolitan had reported that Kraken and Binance were targeted by the same social engineering campaign that resulted in a successful customer data breach at Coinbase. According to people familiar with the matter, attackers contacted customer support agents at the exchanges and enticed them with bribes in exchange for user data. Coinbase executive Brian Armstrong issued a statement saying several overseas customer service representatives accepted the bribes and provided information that included customer names, addresses, partial KYC records, and account balances. The attackers later attempted to extort Coinbase, demanding a $20 million ransom in exchange for deleting the stolen data, according to people familiar with the investigation. Coinbase declined to pay the ransom and instead notified law enforcement authorities. The breach exposed Coinbase to potential losses estimated at up to $400 million. However, for Kraken and Binance, the social engineering attempt was thwarted through layered access restrictions and real-time monitoring of support interactions. Binance has said it uses artificial intelligence systems to monitor conversations between customer support agents and users in several languages. Those systems can flag suspicious behavior like potential bribery attempts, and automatically terminate communications when risks are detected. Kraken has said it employs internal safeguards that limit unnecessary access to customer information and monitor anomalous activity within its systems. “Behind the scenes, there also is AI, machine learning, some other analytics that are going on behind the scenes that are transparent to the user to say, is everything looking the way it should? There are times when our teams will be able to jump in front and stop those types of attacks. There’s controls that you as a user have at your disposal, and then there’s controls that you don’t have to do anything, but it’s based on your behavior, based on activity, we have the ability to intervene and what we call save.” Chief Security Officer Nick Percoco. Coinbase helps law enforcement arrest service agent in India Just last week, Coinbase CEO Armstrong revealed to the public that a former customer service agent for the exchange was arrested in India, months after the support representative gave hackers access to customer data. A Coinbase spokesperson confirmed the arrest and said it came on the heels of a coordinative effort with law enforcement agencies from several jurisdictions, helping the security groups identify and prosecute those involved. The Brooklyn District Attorney’s Office also announced charges against a Brooklyn man accused of orchestrating “a long-running impersonation scheme” on Coinbase customers in the US. According to the indictment, the defendant posed as a Coinbase representative and used social engineering to convince victims that their accounts were at immediate risk. The Department of Justice mentioned that he directed victims to transfer funds to wallets under his control and took away nearly $16 million from approximately 100 victims. However, more than $600,000 has been recovered so far. Join Bybit now and claim a $50 bonus in minutes

면책 조항 읽기 : 본 웹 사이트, 하이퍼 링크 사이트, 관련 응용 프로그램, 포럼, 블로그, 소셜 미디어 계정 및 기타 플랫폼 (이하 "사이트")에 제공된 모든 콘텐츠는 제 3 자 출처에서 구입 한 일반적인 정보 용입니다. 우리는 정확성과 업데이트 성을 포함하여 우리의 콘텐츠와 관련하여 어떠한 종류의 보증도하지 않습니다. 우리가 제공하는 컨텐츠의 어떤 부분도 금융 조언, 법률 자문 또는 기타 용도에 대한 귀하의 특정 신뢰를위한 다른 형태의 조언을 구성하지 않습니다. 당사 콘텐츠의 사용 또는 의존은 전적으로 귀하의 책임과 재량에 달려 있습니다. 당신은 그들에게 의존하기 전에 우리 자신의 연구를 수행하고, 검토하고, 분석하고, 검증해야합니다. 거래는 큰 손실로 이어질 수있는 매우 위험한 활동이므로 결정을 내리기 전에 재무 고문에게 문의하십시오. 본 사이트의 어떠한 콘텐츠도 모집 또는 제공을 목적으로하지 않습니다.