Close Menu
Cryprovideos
    What's Hot

    Trump Media moved however 'didn’t promote' $205 million in bitcoin amid rising losses on crypto bets

    May 23, 2026

    Germany’s Finance Committee Rejects Bid to Finish Crypto Tax Exemption

    May 23, 2026

    Chainlink Crypto Eyes $20 Billion Market Cap Return – Right here Is What May Drive LINK Increased – BlockNews

    May 23, 2026
    Facebook X (Twitter) Instagram
    Cryprovideos
    • Home
    • Crypto News
    • Bitcoin
    • Altcoins
    • Markets
    Cryprovideos
    Home»Crypto News»Coinbase Web page Flags Safety Danger Over Seed Phrase Entry
    Coinbase Web page Flags Safety Danger Over Seed Phrase Entry
    Crypto News

    Coinbase Web page Flags Safety Danger Over Seed Phrase Entry

    By Crypto EditorMarch 20, 2026No Comments3 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email


    ZachXBT flags Coinbase Commerce restoration web page asking customers to enter their 12-word seed phrase, elevating phishing and social engineering issues. 

    A reside web page on Coinbase’s official area is drawing safety alarm from researchers. The web page, hosted at withdraw.commerce.coinbase.com, asks customers to enter a 12-word seed phrase as a part of an asset restoration course of tied to Coinbase Commerce. The alternate has not pulled the web page down.

    On-chain investigator ZachXBT raised the alarm on X, questioning whether or not Coinbase had thought by means of what a web page like this might allow. “So principally Coinbase has an official web page reside risk actors can use to focus on Coinbase customers by way of seed phrase social engineering in the event that they needed?” ZachXBT wrote. The submit drew 1000’s of interactions nearly instantly.

    When an Official Web page Turns into the Weapon

    Safety researcher evilcos flagged the identical web page earlier on X, saying the observe of asking customers to enter plaintext mnemonic phrases was merely laborious to consider from a significant alternate. The researcher stated the subdomain initially seemed prefer it had been compromised. It had not. The web page is official.

    The Coinbase Commerce assist documentation, seen on the restoration web page, explains the method. It tells retailers their funds could also be unfold throughout a whole lot and even 1000’s of pockets addresses as a result of Commerce generated a brand new handle for each cost obtained. Importing the seed phrase into a normal pockets, it says, could not present the complete stability. Commonplace wallets sometimes scan solely the primary 20 unused addresses. For Bitcoin and different UTXO-based property, Coinbase directed customers towards the withdrawal instrument earlier than March 31, 2026.

    The documentation additionally instructs customers on the best way to retrieve a seed phrase backed as much as Google Drive, then enter it on the withdrawal instrument. That is the place researchers say the danger sits.

    Two Separate Issues, One Very Harmful Web page

    Safety researcher im23pds posted on X breaking the priority into two distinct points. First, though the hyperlink originates from an official Coinbase area, asking customers to transmit their mnemonic phrase to confirm property is careless by any safety normal. Second, the web site has a flawed sitemap. Attackers may use instruments like ResourcesSaver to obtain the front-end code totally and deploy a near-identical copy. Pair that with a lookalike area, and a Coinbase phishing marketing campaign turns into considerably simpler to run.

    In a separate earlier submit, im23pds famous on X that the web page was constructed carelessly. The workforce launched it with out even organising a sitemap. That sort of oversight makes the web page much more accessible to anybody wanting to repeat its construction.

    而且页面做的非常不讲究… sitemap 这种不设置就直接上线了:-)
    👇 pic.twitter.com/wdzBOti5w8

    — 23pds (山哥) (@im23pds) March 19, 2026

    Supply:  im23pds 

    The core hazard is simple. Menace actors don’t want to interrupt into Coinbase programs. They level a person at a pretend model of an already-existing official web page that asks for a seed phrase. The person, conditioned by the actual web page, arms it over.

    The Broader Sample Right here

    This isn’t a brand new sample for the alternate. ZachXBT has beforehand documented how unhealthy actors exploit Coinbase’s model in social engineering campaigns, utilizing impersonation and pretend help channels to empty wallets. The Commerce restoration web page, on this case, does the groundwork for scammers with out anybody having to impersonate a factor.

    The web page stays reside. Coinbase has not responded publicly to the issues raised.





    Supply hyperlink

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

    Related Posts

    Trump Media moved however 'didn’t promote' $205 million in bitcoin amid rising losses on crypto bets

    May 23, 2026

    Germany’s Finance Committee Rejects Bid to Finish Crypto Tax Exemption

    May 23, 2026

    Chainlink Crypto Eyes $20 Billion Market Cap Return – Right here Is What May Drive LINK Increased – BlockNews

    May 23, 2026

    Hyperliquid Is Turning into A Core Infrastructure Layer For Crypto Finance

    May 23, 2026
    Latest Posts

    Trump Media moved however 'didn’t promote' $205 million in bitcoin amid rising losses on crypto bets

    May 23, 2026

    Bitcoin Simply Triggered A Uncommon Alternate Circulation Setup – Right here’s What Historical past Suggests | Bitcoinist.com

    May 23, 2026

    Bitcoin Billionaire Books First SpaceX Mars Mission – Decrypt

    May 23, 2026

    Bitcoin Drops 1% as New Dow Jones All-Time Excessive Sees Shares Depart Crypto Behind

    May 23, 2026

    Midnight Crypto Makes an attempt Restoration as Cardano’s Bitcoin DeFi Imaginative and prescient Expands – BlockNews

    May 23, 2026

    Glassnode Says Bitcoin Choices Merchants Are Nonetheless Positioned For Hassle

    May 23, 2026

    Trump Media’s $205M Bitcoin Switch Fuels Recent Sale Hypothesis

    May 23, 2026

    This is How A lot 10K BTC Paid for two Pizzas in 2010 Is Price Right now

    May 23, 2026

    CryptoVideos.net is your premier destination for all things cryptocurrency. Our platform provides the latest updates in crypto news, expert price analysis, and valuable insights from top crypto influencers to keep you informed and ahead in the fast-paced world of digital assets. Whether you’re an experienced trader, investor, or just starting in the crypto space, our comprehensive collection of videos and articles covers trending topics, market forecasts, blockchain technology, and more. We aim to simplify complex market movements and provide a trustworthy, user-friendly resource for anyone looking to deepen their understanding of the crypto industry. Stay tuned to CryptoVideos.net to make informed decisions and keep up with emerging trends in the world of cryptocurrency.

    Top Insights

    Trump Crypto Enterprise Prices Into Digital House With Pockets Launch Amid Uproar

    June 4, 2025

    Is Ethereum Waking Up? Binance ETH Turnover Hits 6-Month Excessive as Volatility Returns

    March 5, 2026

    3 key results of the GENIUS Act on international crypto rules

    July 28, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    • Home
    • Privacy Policy
    • Contact us
    © 2026 CryptoVideos. Designed by MAXBIT.

    Type above and press Enter to search. Press Esc to cancel.