Close Menu
Emirates InsightEmirates Insight
  • The GCC
    • Duabi
  • Business & Economy
  • Startups & Leadership
  • Blockchain & Crypto
  • Eco-Impact

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

What's Hot

Investigators Flag Coinbase Page Asking For Seed Phrases, Tool Removed

March 22, 2026

GAMES REVIEW: A triumphant swan song: Resident Evil Requiem deftly straddles horror and action

March 22, 2026

Norway’s Output Holds Steady—but Spare Capacity Is Gone

March 22, 2026
Facebook X (Twitter) Instagram LinkedIn
  • Home
  • Get Featured
  • Guest Writer Policy
  • Privacy Policy
  • Terms of Use
  • Contact Us
Facebook X (Twitter) Instagram LinkedIn
Emirates InsightEmirates Insight
  • The GCC
    • Duabi
  • Business & Economy
  • Startups & Leadership
  • Blockchain & Crypto
  • Eco-Impact
Emirates InsightEmirates Insight
Home»Blockchain & Crypto»Investigators Flag Coinbase Page Asking For Seed Phrases, Tool Removed
Blockchain & Crypto

Investigators Flag Coinbase Page Asking For Seed Phrases, Tool Removed

Emirates InsightBy Emirates InsightMarch 22, 2026No Comments
Facebook Twitter Pinterest LinkedIn WhatsApp Reddit Tumblr Email
Share
Facebook Twitter LinkedIn Pinterest Email


Beyond the official page itself, experts warned it lacked a proper sitemap, making it easy to clone and weaponize on lookalike domains.

Coinbase has taken down a recently flagged “legacy recovery” tool after on-chain investigators warned that it could be used to trick users into giving up their seed phrases.

The episode reignited concerns about how design choices for platforms may clash with longstanding security practices.

Security Concerns Over Coinbase Recovery Page

It all started on March 18, when Cos, founder of SlowMist, a blockchain security firm, asked why a Coinbase-hosted page was asking users to type in their 12-word recovery phrases in plain text. Cos shared screenshots showing a Coinbase Commercial withdrawal interface that required people to paste their mnemonic phrase while also suggesting they get it from Google Drive backups.

Shortly after, well-known on-chain investigator ZachXBT posted that the page could be used by attackers as a social engineering tool, given that it was hosted on an official Coinbase domain.

“So basically Coinbase has an official page live threat actors can use to target Coinbase users via seed phrase social engineering if they wanted?” he asked.

Another member of the SlowMist team, 23pds, pointed out technical flaws on the page, saying that it didn’t have a proper sitemap and could be easily cloned. They added that attackers could copy the interface and use domains that look like it to trick people into giving them sensitive information.

There were also concerns beyond the risk of cloning, with one X user, going by Kieran, arguing that the bigger problem was behavioral. They claimed that the tool went against one of the most widely taught safety rules in crypto, which is to never share or enter a recovery phrase into a website. The existence of such requirements on official pages, according to them, could make phishing attempts more convincing.

Alex, a team member at Coinbase, responded by stating that they had removed the tool and were actively developing a new solution.

You may also like:

“Appreciate you all raising this and holding us to the highest standards,” they added.

At the time of writing, a check on the page showed that it had indeed been taken down, with a simple message informing users that the service was unavailable and that they should try again later.

Social Engineering Risks

The concerns raised by ZachXBT and the SlowMist team aren’t for nothing. Recent data shows that there is a shift in how bad actors are carrying out crypto-related attacks nowadays.

According to on-chain security company Nominis, in February, total losses related to cryptocurrency scams and exploits fell by nearly 87%. But more importantly, Nominis revealed that attackers are now more likely to target users instead of exploiting code.

The firm noted that recent incidents had relied more heavily on phishing and misleading prompts instead of technical vulnerabilities. And with such schemes becoming more common, it’s vital to deny attackers the sort of advantage ZachXBT believes occurrences like the Coinbase recovery tool could have possibly given them.

SPECIAL OFFER (Exclusive)

Binance Free $600 (CryptoPotato Exclusive): Use this link to register a new account and receive $600 exclusive welcome offer on Binance (full details).

LIMITED OFFER for CryptoPotato readers at Bybit: Use this link to register and open a $500 FREE position on any coin!

Courtesy: Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email
Emirates Insight
  • Website

Related Posts

$160 Billion Flood Incoming? Morgan Stanley’s Bitcoin ETF Bet Could Ignite Markets

March 21, 2026

Bitcoin Realized Losses Hit Extremes While Supply Remains Frozen

March 21, 2026

ETH, XRP, ADA, BNB, and HYPE

March 20, 2026
Leave A Reply Cancel Reply

Emirates Insight
LIMITED FEATURE SPOTS
Get Featured. Get Seen.
Position your brand in front of founders, decision makers and professionals across the UAE.
APPLY TO GET FEATURED
Top Posts

Global Leaders Unite at World Climate Summit, The Investment COP 2023 to Redefine Climate Action

December 11, 20235,009 Views
AI & Innovation 2 Mins ReadSponsor: Doers Summit

Doers Summit 2025 opens in Dubai with strong Global participation

Sponsor: Doers Summit November 26, 2025

Australia Risks Falling Behind in Climate Investment, New Report Warns

August 21, 20253,049 Views

How to Start and Scale an E-Commerce Business in the UAE

May 15, 20253,016 Views
Emirares Insight

Emirates Insight - Lens on the Gulf provides in-depth analysis of the Gulf's business landscape, entrepreneurship stories, economic trends, and technological advancements, offering keen insights into regional developments and global implications.

We're accepting always open for new ideas and partnerships.

Email Us:[email protected]

Facebook X (Twitter)
Our Picks

Investigators Flag Coinbase Page Asking For Seed Phrases, Tool Removed

March 22, 2026

GAMES REVIEW: A triumphant swan song: Resident Evil Requiem deftly straddles horror and action

March 22, 2026

Norway’s Output Holds Steady—but Spare Capacity Is Gone

March 22, 2026
© 2020 - 2026 Emirates Insight. | Designed by Linc Globa Hub inc.
  • Home
  • Get Featured
  • Guest Writer Policy
  • Privacy Policy
  • Terms of Use
  • Contact Us

Type above and press Enter to search. Press Esc to cancel.