The post Kraken customer data allegedly for sale on dark web appeared on BitcoinEthereumNews.com. A dark web monitoring service recently flagged a listing for “The post Kraken customer data allegedly for sale on dark web appeared on BitcoinEthereumNews.com. A dark web monitoring service recently flagged a listing for “

Kraken customer data allegedly for sale on dark web

2026/01/06 02:20
4분 읽기
이 콘텐츠에 대한 의견이나 우려 사항이 있으시면 crypto.news@mexc.com으로 연락주시기 바랍니다

A dark web monitoring service recently flagged a listing for “panel access” to Kraken’s internal customer dashboard, potentially exposing the sensitive data of millions of crypto exchange users.

A screenshot of the alleged post from a Russian website itemizes an alarming quantity of personally identifiable information.

In dark web economies, panel access refers to compromised credentials used to login to internal customer support software like Zendesk or Salesforce or third-party portals like Kodex.

A placeholder fee of $1 indicates a desire to negotiate on price from the seller, ransomcharger. The authenticity of the listing is impossible to verify without accessing the dubious website via Tor and negotiating a purchase via encrypted messengers.

On occasion, sellers with low reputation scores fabricate listings to entice newcomers or gullible customers.

Moreover, government law enforcement officers regularly post fake listings on dark web marketplaces to lure criminals.

Despite widespread publication of the news, Kraken hasn’t responded to the allegation on its X accounts, nor via its Telegram channel.

Protos reached out to the exchange for comment but didn’t receive a response prior to publication.

The alleged listing as flagged by Dark Web Informer.

Screenshot likely from Russian forum

The screenshot is of a Russian-language dark web forum, likely Exploit or the Russian Anonymous MarketPlace (RAMP), which has shut down and respawned several times over the years under various names, including RAMP 2.0 and Exploit[dot]in (formerly Exploit[dot]biz).

Many dark web marketplaces are only accessible via a Tor browser.

There, a vendor is ostensibly advertising read-only access to Kraken’s know your customer (KYC) documentation, transaction histories, and support tickets.

Kraken is one of the world’s top 20 crypto exchanges and recently raised money from Citadel Securities at a $20 billion valuation.

Dark Web Informer, which claims credit for the news, has a sizable following on X and a mostly consistent history per the social media platform’s self-moderation tool, Community Notes.

A review of its 50 latest tweets returns no active Community Notes, excepting a single note that Dark Web Informer contested.

Read more: Verified Kraken and Binance accounts going cheap on the dark web

Although the panel as advertised wouldn’t allow withdrawals, i.e. direct draining of crypto wallets, the listing boasts capabilities that could be valuable for a social engineering or phishing campaign.

For example, the illegal credentials could display selfies, government IDs, crypto transactions, and source of funds declarations.

More critically, the vendor claims that its panel access allows creation of support tickets — a powerful tool used to feign credibility during a customer interaction.

Criminals ripping off criminals

If the listing is authentic, the read-only caveat is cold comfort. An attacker could open support tickets, or simply impersonate Kraken support with reassuring accuracy, referencing vast documentation to engineer a social engineering attack.

The use of internal support tools to reassure a victim about the authenticity of a fake support agent’s identity before extracting money from their account has become a favored tactic for drainer hacks.

Any customer who receives a call from a company should be able to hang up and call the person back via the company’s official phone number.

Calling the company directly, using the phone number listed on the company’s own website, is a basic security step that shuts down many impersonation scams.

RAMP and its successors like Exploit have a hydra-like history of being taken offline by law enforcement only to respawn shortly thereafter. These forums are notoriously difficult to verify.

Scam listings are common, purposefully designed by criminals to rip off other criminals (a practice called “ripping”), as well as police luring criminals to demonstrate intent of criminal misconduct.

Got a tip? Send us an email securely via Protos Leaks. For more informed news, follow us on X, Bluesky, and Google News, or subscribe to our YouTube channel.

Source: https://protos.com/kraken-customer-data-allegedly-for-sale-on-dark-web/

면책 조항: 본 사이트에 재게시된 글들은 공개 플랫폼에서 가져온 것으로 정보 제공 목적으로만 제공됩니다. 이는 반드시 MEXC의 견해를 반영하는 것은 아닙니다. 모든 권리는 원저자에게 있습니다. 제3자의 권리를 침해하는 콘텐츠가 있다고 판단될 경우, crypto.news@mexc.com으로 연락하여 삭제 요청을 해주시기 바랍니다. MEXC는 콘텐츠의 정확성, 완전성 또는 시의적절성에 대해 어떠한 보증도 하지 않으며, 제공된 정보에 기반하여 취해진 어떠한 조치에 대해서도 책임을 지지 않습니다. 본 콘텐츠는 금융, 법률 또는 기타 전문적인 조언을 구성하지 않으며, MEXC의 추천이나 보증으로 간주되어서는 안 됩니다.

USD1 Genesis: 0 Fees + 12% APR

USD1 Genesis: 0 Fees + 12% APRUSD1 Genesis: 0 Fees + 12% APR

New users: stake for up to 600% APR. Limited time!