Microsoft

Tips on how to best secure your crypto

By Matt Muller, Head of Security Operations, CoinbaseAs crypto trading becomes increasingly mainstream, our Security team here at Coinbase has seen cybercriminals getting even more creative and persistent in their attempts to steal assets. While that can sound a little scary at first, the good news is that you can dramatically improve your digital security…

By Matt Muller, Head of Security Operations, CoinbaseAs crypto trading becomes increasingly mainstream, our Security team here at Coinbase has seen cybercriminals getting even more creative and persistent in their attempts to steal assets. While that can sound a little scary at first, the good news is that you can dramatically improve your digital security with just a few easy steps. Not only will this help protect your funds on Coinbase, it can be applied to the rest of your digital life as well!When someone is able to log into one of your accounts to perform fraudulent activity, this is called an “account takeover”, or “ATO” for short. But how do these fraudsters get into your account in the first place? One common method is called a “SIM-swap.” In a SIM-swap attack, fraudsters will actually contact your wireless carrier pretending to be you, and persuade the customer service agent to redirect your cell service to a different device, by changing the SIM card number associated with your account (hence the name of the attack.) Once they succeed, they are able to receive all calls and SMS messages sent to your phone number — including any two-factor authentication codes sent to you via SMS. From there, fraudsters will frequently pair those SMS 2FA codes with stolen passwords to try and log into your email account, social media profiles, cloud storage accounts like Dropbox, or financial accounts like Coinbase.At Coinbase, we do a lot of work behind the scenes to detect and try to stop SIM-swap ATOs targeting our customers’ accounts. We also believe that using SMS-based two-factor authentication (2FA) is better than using no 2FA at all. That said, we encourage everyone to follow the two simple steps below and apply them to all the accounts they care about — not just their Coinbase accounts.Use a password managerYour passwords should be at least 16 characters, extremely complex and unique for your accounts. That’s hard to do by yourself, but password managers like 1Password or Dashlane can be used to create and remember your passwords.Are you currently using a password that has been exposed in a third-party data breach somewhere? You can check to see if you’re using a risky password by visiting haveibeenpwned.com/Passwords.Use 2-factor authentication (2FA)In addition to strong passwords, where available, use two-factor authentication (2FA). And always use the strongest type of 2FA the platform allows, ideally a Yubikey or similar hardware security key.If a service provider doesn’t allow Yubikey, use an authentication app like Google Authenticator or Duo Security instead of SMS-based 2FA if possible.If SMS-based 2FA is the only thing available, at the very least require a one-time 2FA code sent to your device every time you login so someone can’t access your account if they have stolen your password.If an organization doesn’t offer any of these options, consider not using that service.Staying vigilant in the wildIt’s not only important to play defense with the right security tools when protecting your accounts, but it’s also important to stay smart in the wild.Some guidelines:Don’t make yourself a targetDon’t brag about your cryptocurrency holdings online, just like you wouldn’t advertise inheriting $50 million.Review your online presence and see how much personal information someone could learn about you to steal your identity. (The good folks at Consumer Reports put together this self assessment.)Don’t fall for tricksHackers posing as tech support — even bad actors posing as Coinbase customer support specifically — may pressure you for account credentials. Coinbase will never ask you for passwords, 2FA codes, PIN numbers or for remote access to your computer.Coinbase will never ask you to create test accounts on other platforms or provide your ID or banking information over email or social media. We do not offer Facebook support chat and we will never call you by phone.If someone reaches out to you and you’re not sure if it’s a scam, you can reach out to security@coinbase.com to confirm whether it’s legitimate. And remember, Microsoft, Google, and Apple will never call you about your computer.Check the URLScammers create fake sites that look like real exchanges but are designed to steal account information. Double check the web address before you login into your account or input any of your credentials.If we emailed you and include a link, copy the link and paste it into a text editor before entering it into your browser to make sure you know where the link is really taking you.This phishing domain uses an Internationalized Domain Name (IDN) which closely resembles www.coinbase.com. However, looking closer will reveal that the domain is actually www.coįnbase[.]com (note the character accent below the “i”).While Coinbase has gone to great lengths to secure our environment, it’s important that everyone understands their role in maintaining the security chain. By following some basic security steps, you can make sure your crypto stays safe. To learn more, visit our Help Center.Tips on how to best secure your crypto was originally published in The Coinbase Blog on Medium, where people are continuing the conversation by highlighting and responding to this story.
Read More

Be the first to write a comment.

Leave a Reply

Your email address will not be published. Required fields are marked *

Microsoft

Windows XP’s most famous pirated key wasn’t a hack. It was a leak

About a year ago, in a social media post, long-time Microsoft veteran Dave Plummer (who worked on Windows Task Manager) recounted the story of what’s now known as the most iconic Windows product key. We’re talking about FCKGW-RHQQ2-YXRKT-8TG6W-2B7Q8. This product key for Windows XP—which is now celebrating its 25th anniversary—made the rounds in the early

About a year ago, in a social media post, long-time Microsoft veteran Dave Plummer (who worked on Windows Task Manager) recounted the story of what’s now known as the most iconic Windows product key.

We’re talking about FCKGW-RHQQ2-YXRKT-8TG6W-2B7Q8. This product key for Windows XP—which is now celebrating its 25th anniversary—made the rounds in the early 2000s…
Read More

Continue Reading
Microsoft

GTA 6 Leaker Releases More Gameplay Videos Despite Rockstar Owner Take-Two’s Microsoft and Discord Subpoenas

UPDATE AUGUST 24, 2026: The GTA 6 leaker has continued to release new gameplay clips, and is even running a poll to decide which video to leak next despite Rockstar parent company Take-Two’s ongoing hunt for people responsible. A tenth leaked GTA 6 video was released last night, this time showing plane at night gameplay.

UPDATE AUGUST 24, 2026: The GTA 6 leaker has continued to release new gameplay clips, and is even running a poll to decide which video to leak next despite Rockstar parent company Take-Two’s ongoing hunt for people responsible.

A tenth leaked GTA 6 video was released last night, this time showing plane at night gameplay. There is no cutscene footage this time.

The watermarks are the same as those on the previous video, advertising the ‘CyberLeek’ token at the heart of the cryptocurrency scheme that is believed to be the motivating factor behind all this. Another watermark doubles down on the anti-all-digital future manifesto that formed part of the initial CyberLeek website. It reads: “They want to take your right to resell. The peaceful route got us nowhere. This was plotted by them for years. It is time to fight now or never.”

Meanwhile, CyberLeek has a new poll available on its website with a number of gameplay video choices people can vote on by sending tokens. People are currently spending hundreds of dollars’ worth of the token to vote.

This poll ends today, August 24, which suggests the leaker or leakers intend to continue to release gameplay videos even in the face of Take-Two’s subpoenas of Microsoft, Discord, and X / Twitter as part of the company’s hunt for identifying information.

We are now into the sixth consecutive day of CyberLeek releases in what has been one of the most remarkable video game leaks of all time. It is now just a few days until Rockstar’s official GTA 6 reveal, exclusive to Netflix for six hours.

UPDATE AUGUST 23, 2026: The GTA 6 leaks have stretched into a sixth consecutive day, as the person or group responsible shows no sign of slowing down even in the face of court action from Rockstar parent company Take-Two.

The latest leak is the ninth GTA 6 gameplay video to emerge this week from the ‘CyberLeek’ persona. It shows one of the two protagonists, Jason, driving to a gas station to cause havoc. There he steals a pickup truck from a conspiracy theorist. The video ends with another brief look at the same cutscene shown in the gameplay videos that were leaked yesterday.

And, as with all the leaked GTA 6 videos, this “gas” clip advertises the ‘CyberLeek’ token at the heart of the cryptocurrency scheme that is believed to be the motivating factor behind all this. A new watermark doubles down on the anti-all-digital future manifesto that formed part of the initial CyberLeek website. It reads: “They want to take your right to resell. The peaceful route got us nowhere. This was plotted by them for years. It is time to fight now or never.”

In other related news. Take-Two lawyers have issued a subpoena to X / Twitter to identify the person or persons behind three accounts that contain ‘CyberLeak’ within them. This subpoena follows two filed earlier this week requesting information from Microsoft and Discord.

ORIGINAL STORY AUGUST 22, 2026: The alleged GTA 6 leaker has released two further gameplay videos despite Rockstar owner Take-Two’s subpoenas requesting identifying information from Microsoft and Discord.

The ‘CyberLeek’ person or group released two new videos today, August 22, one showing more supercar gameplay and an armed robbery, the other strip club gameplay. The latter appears to taunt Take-Two and Rockstar by showing a snippet of a cutscene in which a character says they need to take “a leak.” This is the second cutscene to emerge this week, and there is growing concern that the leaker has access to a build of the game and may post significant story spoilers.

These new videos are the seventh and eighth to leak this week. And, like all the others, they advertise the ‘CyberLeek’ memecoin as part of what is widely considered to be a crypto scheme.

Every Detail in the GTA 6 Cover Art Explained

On August 20, Take-Two issued Digital Millennium Copyright Act (DMCA) subpoenas in a federal court requesting information from both Microsoft and Discord as part of its hunt for the leaker or leakers behind the recent spate of GTA 6 gameplay videos. Take-Two wants identifying information associated with user accounts that were members of a number of Discord servers, including one relating to Australian GTA content cr

Read More

Continue Reading
Microsoft

Microsoft and Valve sued, PlayStation’s first party downturn, and could a UK social media ban impact games? – Patch Notes #55

Plus: Atari acquires Hipster Whale and Mina the Hollower hits 300,000 sales…

Plus: Atari acquires Hipster Whale and Mina the Hollower hits 300,000 sales…
Read More

Continue Reading
Microsoft

Nvidia and Microsoft drop cryptic coordinates pointing to an ARM powered PC revolution at GTC Taipei 2026

This morning I woke to social media teasers from both Nvidia and Microsoft, which seen many on social media speculating about it’s meaning. The identical posts feature a simple message – a new era of PC is coming. This isn’t jsut a new generation of an existing architecture…

This morning I woke to social media teasers from both Nvidia and Microsoft, which seen many on social media speculating about it’s meaning. The identical posts feature a simple message – a new era of PC is coming. This isn’t jsut a new generation of an existing architecture…
Read More

Continue Reading