Hackers leaked the stolen data from Gemini trading users

December 29, 2022
Hackers Data Leak Stolen Database Gemini Trading Cryptocurrency Dark Web Fraud Alert Phishing

The Gemini crypto trading disclosed last week that a phishing campaign targeted their customers after a threat actor harvested their data from a third-party vendor. The announcement came after researchers spotted several posts about hackers selling the database.

Based on reports, the stolen data from Gemini users include more than five million individuals’ email addresses and phone numbers.

The Gemini security team announced a brief notice that a third-party vendor experienced malicious activity that enabled an unwanted entity to collect their customer’s email addresses and phone numbers.

The unwanted breach of the crypto exchange customers resulted in targeted phishing campaigns. The company has not revealed the objective of the threat actors. However, such access to accounts and financial data is commonly the target of attackers.

Gemini revealed that attackers had not affected its systems and account information through their report. Hence, their customer accounts are still secure.

 

The hackers sold the stolen Gemini trading database.

 

Researchers noticed the leaked information about Gemini users last September. However, the seller did not mention if the database was new but asked for about 30 BTC.

A couple of months ago, hackers published another post with a different codename claiming that the data was from September. Currently, another post under another alias that appeared last month offers databases from several crypt exchanges, including one from Gemini that also has the information of 5.7 million users.

Experts claimed that the hackers failed to monetise the database since another announcement popped out on a different forum offering the Gemini database for free. The post’s publisher displayed the stolen phone numbers format, explaining that the three digits in the middle were unavailable.

The Gemini crypto trading platform urges its customers to rely on competent authentication methods and suggests employing 2FA protection and hardware security keys to open their accounts.

The company has given mitigation steps to change the email addresses affiliated with the compromised Gemini account.

About the author

Leave a Reply