Market Cap: $2.882T -1.49%
Volume(24h): $102.5955B -0.51%
  • Market Cap: $2.882T -1.49%
  • Volume(24h): $102.5955B -0.51%
  • Fear & Greed Index:
  • Market Cap: $2.882T -1.49%
Cryptos
Topics
Cryptospedia
News
CryptosTopics
Videos
Top News
Cryptos
Topics
Cryptospedia
News
CryptosTopics
Videos
bitcoin
bitcoin

$84601.256748 USD

-1.54%

ethereum
ethereum

$2680.045919 USD

-1.83%

tether
tether

$0.999799 USD

0.02%

bnb
bnb

$765.659472 USD

-1.46%

xrp
xrp

$1.484295 USD

-2.59%

usd-coin
usd-coin

$1.000001 USD

0.01%

solana
solana

$119.409013 USD

-1.77%

tron
tron

$0.335266 USD

0.34%

zcash
zcash

$1313.312697 USD

-4.71%

hyperliquid
hyperliquid

$88.243793 USD

-2.05%

dogecoin
dogecoin

$0.092898 USD

-3.10%

chainlink
chainlink

$14.023636 USD

-2.57%

monero
monero

$548.524996 USD

-0.09%

cardano
cardano

$0.244976 USD

-3.69%

unus-sed-leo
unus-sed-leo

$9.010974 USD

0.46%

Cryptocurrency News Articles

Coinbase Evaded a Supply Chain Attack That Could Have Compromised Its Open-Source Infrastructure

Mar 23, 2025 at 11:32 pm

On March 23, Yu Jian, founder of blockchain security firm SlowMist, flagged the incident in a post on X, referencing a report from Unit 42

Coinbase Evaded a Supply Chain Attack That Could Have Compromised Its Open-Source Infrastructure

Coinbase, the largest crypto exchange in the US, has successfully evaded a supply chain attack that could have had significant consequences.

On March 23, Yu Jian, founder of blockchain security firm SlowMist, flagged the incident in a post on X, referencing a report from Unit 42, the threat intelligence division of Palo Alto Networks.

How Coinbase Stopped a Major Cyber Attack

According to Unit 42, the attacker targeted ‘agentkit’, an open-source toolkit managed by Coinbase that supports blockchain-based AI agents.

The threat actor forked agentkit and onchainkit repositories on GitHub, inserting malicious code intended to exploit the continuous integration pipeline. The suspicious activity was first detected on March 14, 2025.

“The payload was focused on exploiting the public CI/CD flow of one of their open source projects – agentkit, probably with the purpose of leveraging it for further compromises,” Unit 42 reported.

Exploiting GitHub’s “write-all” permissions, the attacker injected harmful code into the project’s automated workflow. This method could have enabled access to sensitive data and created a path for broader compromises.

However, the payload collected sensitive information and did not contain advanced malicious tools like remote code execution or reverse shell exploits, according to Unit 42.

Coinbase responded quickly, collaborating with security experts to isolate the threat and apply necessary mitigations. This rapid action helped the company avoid deeper infiltration and prevented potential damage to its infrastructure.

The stakes were high considering Coinbase’s standing as the largest crypto exchange in the US and a key custodian for spot Bitcoin ETFs.

A breach of this nature could have caused major disruption across the crypto industry, especially after Bybit’s recent $1.4 billion security incident.

Despite the failed attempt, the attacker has since shifted focus to a larger campaign now drawing global attention.

In light of this, SlowMist founder advised developers using GitHub Actions—especially those working with tj-actions or reviewdog—to audit their systems and confirm that no secrets have been exposed.

“If your company uses reviewdog or tj-actions, do a thorough self-examination,” Yu Jian stated on X.

This incident highlights the growing importance of securing open-source tools as the crypto ecosystem expands. Data from DeFillama shows that the crypto industry has recorded exploits of more than $1.5 billion this year.

Original source:beincrypto

Disclaimer:info@kdj.com

The information provided is not trading advice. kdj.com does not assume any responsibility for any investments made based on the information provided in this article. Cryptocurrencies are highly volatile and it is highly recommended that you invest with caution after thorough research!

If you believe that the content used on this website infringes your copyright, please contact us immediately (info@kdj.com) and we will delete it promptly.

Other articles published on Oct 04, 2026