CoinsPaid Faces Second Security Breach, Cybercriminals Steal $7.5 Million

In a disheartening turn of events, CoinsPaid, a prominent crypto payment gateway, has fallen victim to yet another security breach, marking its second in the last six months. This unfortunate incident comes hot on the heels of a previous hack in July 2023, where hackers managed to infiltrate the platform and abscond with a staggering $37 billion. As cybersecurity threats persist, businesses operating in the digital asset arena face mounting pressure to fortify their security measures.

Details of the Breach

Web3 security firm Cyvers was quick to detect unauthorized transactions, totaling nearly $7.5 million, within CoinsPaid’s system. It appears that the attacker exploited vulnerabilities within the platform, allowing them to swap around 97 million CPD tokens, equivalent to roughly $368,000, for ETH. Subsequently, the stolen funds were conveniently transferred to externally owned accounts (EOAs) and crypto exchanges, effectively obfuscating their path and complicating the recovery process for those affected.

Upon conducting further analysis, Cyvers uncovered yet more unauthorized transactions involving BNB, the native cryptocurrency of the Binance exchange. These additional transactions amounted to over $1 million, pushing the total stolen close to $7.5 million. This revelation compounds the severity of the breach, underscoring the sophistication and persistence of the cybercriminals responsible.

Background of CoinsPaid

CoinsPaid, an Estonian payment processor specialized in facilitating transactions involving digital assets, boasts an impressive track record. Having processed over 19 billion euros in crypto transactions, CoinsPaid has established itself as a trusted intermediary within the cryptocurrency ecosystem. However, these recent security breaches have undoubtedly shaken confidence in the platform’s security measures.

Previous Security Breach in July 2023

Merely six months prior to this most recent security breach, CoinsPaid fell victim to a devastating attack orchestrated by cybercriminals. The hackers ingeniously exploited the unsuspecting nature of one of the platform’s employees by luring them into a fake job interview. Carrying out their malicious intent, the hackers tricked the employee into downloading a malicious code, effectively granting them unrestricted access to CoinsPaid’s internal infrastructure, leading to the theft of over $37 billion.

CoinsPaid placed the blame for the previous breach on the North Korean state-backed Lazarus Group, a notorious cybercrime syndicate known for its involvement in various high-profile hacking incidents worldwide. By leveraging their extensive resources and sophisticated hacking techniques, the Lazarus Group managed to siphon an estimated $600 million worth of cryptocurrency in 2023 alone.

Lazarus Group’s Involvement in Crypto Hacks

The Lazarus Group’s nefarious exploits have made headlines in the crypto community throughout 2023. Their persistent targeting of digital asset platforms highlights the need for robust security protocols within the industry. As cryptocurrency continues to gain mainstream acceptance, organizations must remain vigilant and prioritize cybersecurity to protect their users’ assets.

Lack of Comment from CoinsPaid on the Recent Attack

As news of the recent security breach spread, CoinsPaid has yet to issue any statements or comments regarding the incident. This silence raises concerns about the platform’s commitment to transparency and leaves affected users and industry observers in limbo. Prompt and honest communication from CoinsPaid is vital at this critical juncture to maintain trust and assure customers that remedial measures are being taken.

The recurrence of security breaches at CoinsPaid underscores the ever-present threat faced by businesses operating in the crypto ecosystem. As the adoption of digital assets continues to rise, it is imperative that organizations remain proactive and implement robust security measures to protect user funds. The recent breaches at CoinsPaid serve as a stark reminder of the need for constant vigilance and stringent security protocols within the cryptocurrency industry. By prioritizing cybersecurity, both platforms and users can mitigate risks and foster a safer environment for conducting crypto transactions.

Explore more

Is the Mistic Backdoor Hiding in Your Security Tools?

Introduction The emergence of the Mistic backdoor represents a sophisticated advancement in the arsenal of modern cybercriminals, specifically those operating within the niche of Initial Access Brokering (IAB). This malicious software, also identified by some security researchers as MLTBackdoor, has been actively infiltrating corporate environments throughout the first half of 2026. Its primary strength lies in its ability to camouflage

Is the Redmi 17C the New King of Budget Smartphones?

Dominic Jainy is a seasoned IT professional with a deep understanding of how hardware evolution impacts the budget mobile market. Today, he breaks down Xiaomi’s latest strategic move with the Redmi 17C, a device that surprisingly leaps over a generation to deliver high-refresh-rate displays and massive battery life to the entry-level segment. We explore the balance between essential utility features,

How Can PowerTool Speed Up Business Central Data Migrations?

Modern enterprises frequently encounter significant friction during ERP transitions because traditional data migration methods often fail to accommodate the sheer volume and complexity of contemporary datasets. In 2026, the demand for agility within Microsoft Dynamics 365 Business Central has reached a point where standard configuration packages, while functional for small tasks, often act as a bottleneck for larger implementations. The

How to Move Beyond the Portal to a True Developer Platform?

Dominic Jainy stands at the forefront of the modern cloud-native movement, possessing a deep technical mastery of artificial intelligence, machine learning, and blockchain architectures. With years of experience navigating the complexities of large-scale IT infrastructures, he has become a leading voice in the evolution of platform engineering. His perspective is shaped by the practical realities of moving beyond simple automation

Will AI Token Costs Soon Surpass Developer Salaries?

Recent financial projections indicate that the cost of maintaining high-frequency artificial intelligence interactions is rapidly approaching the median annual compensation of experienced software engineers in the global market. As the software development industry undergoes a radical transformation, the traditional overhead associated with human labor is being challenged by the sheer volume of data processed through large language models. This shift