Close Menu
Cryprovideos
    What's Hot

    CFTC Declares Preliminary Crypto Process Power Members

    April 11, 2026

    Bhutan has offered 70% of its bitcoin in 18 months. It could have stopped BTC mining too.

    April 11, 2026

    TRON Integration Hints Securitize Could Deliver Tokenized Property To Extra Customers

    April 11, 2026
    Facebook X (Twitter) Instagram
    Cryprovideos
    • Home
    • Crypto News
    • Bitcoin
    • Altcoins
    • Markets
    Cryprovideos
    Home»Crypto News»Coinbase Web page Flags Safety Danger Over Seed Phrase Entry
    Coinbase Web page Flags Safety Danger Over Seed Phrase Entry
    Crypto News

    Coinbase Web page Flags Safety Danger Over Seed Phrase Entry

    By Crypto EditorMarch 20, 2026No Comments3 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email


    ZachXBT flags Coinbase Commerce restoration web page asking customers to enter their 12-word seed phrase, elevating phishing and social engineering issues. 

    A reside web page on Coinbase’s official area is drawing safety alarm from researchers. The web page, hosted at withdraw.commerce.coinbase.com, asks customers to enter a 12-word seed phrase as a part of an asset restoration course of tied to Coinbase Commerce. The alternate has not pulled the web page down.

    On-chain investigator ZachXBT raised the alarm on X, questioning whether or not Coinbase had thought by means of what a web page like this might allow. “So principally Coinbase has an official web page reside risk actors can use to focus on Coinbase customers by way of seed phrase social engineering in the event that they needed?” ZachXBT wrote. The submit drew 1000’s of interactions nearly instantly.

    When an Official Web page Turns into the Weapon

    Safety researcher evilcos flagged the identical web page earlier on X, saying the observe of asking customers to enter plaintext mnemonic phrases was merely laborious to consider from a significant alternate. The researcher stated the subdomain initially seemed prefer it had been compromised. It had not. The web page is official.

    The Coinbase Commerce assist documentation, seen on the restoration web page, explains the method. It tells retailers their funds could also be unfold throughout a whole lot and even 1000’s of pockets addresses as a result of Commerce generated a brand new handle for each cost obtained. Importing the seed phrase into a normal pockets, it says, could not present the complete stability. Commonplace wallets sometimes scan solely the primary 20 unused addresses. For Bitcoin and different UTXO-based property, Coinbase directed customers towards the withdrawal instrument earlier than March 31, 2026.

    The documentation additionally instructs customers on the best way to retrieve a seed phrase backed as much as Google Drive, then enter it on the withdrawal instrument. That is the place researchers say the danger sits.

    Two Separate Issues, One Very Harmful Web page

    Safety researcher im23pds posted on X breaking the priority into two distinct points. First, though the hyperlink originates from an official Coinbase area, asking customers to transmit their mnemonic phrase to confirm property is careless by any safety normal. Second, the web site has a flawed sitemap. Attackers may use instruments like ResourcesSaver to obtain the front-end code totally and deploy a near-identical copy. Pair that with a lookalike area, and a Coinbase phishing marketing campaign turns into considerably simpler to run.

    In a separate earlier submit, im23pds famous on X that the web page was constructed carelessly. The workforce launched it with out even organising a sitemap. That sort of oversight makes the web page much more accessible to anybody wanting to repeat its construction.

    而且页面做的非常不讲究… sitemap 这种不设置就直接上线了:-)
    👇 pic.twitter.com/wdzBOti5w8

    — 23pds (山哥) (@im23pds) March 19, 2026

    Supply:  im23pds 

    The core hazard is simple. Menace actors don’t want to interrupt into Coinbase programs. They level a person at a pretend model of an already-existing official web page that asks for a seed phrase. The person, conditioned by the actual web page, arms it over.

    The Broader Sample Right here

    This isn’t a brand new sample for the alternate. ZachXBT has beforehand documented how unhealthy actors exploit Coinbase’s model in social engineering campaigns, utilizing impersonation and pretend help channels to empty wallets. The Commerce restoration web page, on this case, does the groundwork for scammers with out anybody having to impersonate a factor.

    The web page stays reside. Coinbase has not responded publicly to the issues raised.





    Supply hyperlink

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

    Related Posts

    CFTC Declares Preliminary Crypto Process Power Members

    April 11, 2026

    Mixero Crypto Mixer Provides Ricochet to Strengthen Bitcoin Transaction Privateness

    April 11, 2026

    XRP Crypto Flashes Early Bullish Sign as Breakout Stress Builds – Right here Is What To Watch – BlockNews

    April 11, 2026

    Binance prediction markets now in-app, bridging on-chain finance

    April 11, 2026
    Latest Posts

    Bhutan has offered 70% of its bitcoin in 18 months. It could have stopped BTC mining too.

    April 11, 2026

    Mixero Crypto Mixer Provides Ricochet to Strengthen Bitcoin Transaction Privateness

    April 11, 2026

    Bitcoin Surges To $72,000, However Stays Caught In Key Provide Zone

    April 11, 2026

    Three Indicators That $80K Is the Subsequent Goal for Bitcoin Bulls

    April 11, 2026

    Bitcoin Reclaims $72K as US-Iran Ceasefire Sparks Hope for Struggle Finish: Your Weekly Crypto Recap

    April 11, 2026

    Bernstein Analysts Allay Bitcoin Fears, Why Quantum Is Not As Large A Risk As You Assume | Bitcoinist.com

    April 11, 2026

    Iran Eyes Bitcoin Funds for Strait of Hormuz Oil Transit

    April 11, 2026

    Establishments' bitcoin positioning lacks conviction; CPI, Iran talks would possibly assist

    April 11, 2026

    CryptoVideos.net is your premier destination for all things cryptocurrency. Our platform provides the latest updates in crypto news, expert price analysis, and valuable insights from top crypto influencers to keep you informed and ahead in the fast-paced world of digital assets. Whether you’re an experienced trader, investor, or just starting in the crypto space, our comprehensive collection of videos and articles covers trending topics, market forecasts, blockchain technology, and more. We aim to simplify complex market movements and provide a trustworthy, user-friendly resource for anyone looking to deepen their understanding of the crypto industry. Stay tuned to CryptoVideos.net to make informed decisions and keep up with emerging trends in the world of cryptocurrency.

    Top Insights

    Binance Pockets and YZi Labs-Backed KiloEx Suffers a $7 Million Hack

    April 15, 2025

    Rising crypto scams in France set off crackdown by authorities

    December 27, 2024

    SEC Delays Resolution on BlackRock's Ethereum ETF Choices

    February 8, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    • Home
    • Privacy Policy
    • Contact us
    © 2026 CryptoVideos. Designed by MAXBIT.

    Type above and press Enter to search. Press Esc to cancel.