CoinGecko Confirms Data Breach from Email Provider, Sends 23,000 Phishing Emails

CoinGecko Confirms Data Breach from Email Provider, Sends 23,000 Phishing Emails

CoinGecko, a cryptocurrency data aggregator, has confirmed a data breach through its third-party email platform, GetResponse. The breach occurred on June 5, 2024, when an attacker compromised a GetResponse employee's account, allowing the export of 1,916,596 contacts from CoinGecko’s account. This led to phishing emails being sent to 23,723 emails from another GetResponse client's account (aljassociates).

The compromised data includes users' names, email addresses, IP addresses, locations of email opens, and metadata such as account sign-up dates and subscription plans. While CoinGecko has assured that user accounts and passwords remain secure, they have advised users to exercise caution when opening emails and to be wary of phishing attempts. CoinGecko is actively investigating the incident with GetResponse and reviewing its security protocols to prevent future breaches.

Summary

Other news in finance