NFT marketplace OpenSea said it has suffered a data breach after an employee at Customer.io, the platform’s email delivery vendor, had used company access to download and share the email addresses of OpenSea’s users and newsletter subscribers to an unauthorized third party.

Photo credit: sdx15 / Shutterstock
The company warned its users of phishing attempts that could be made by “malicious actors.” It urged not to download files, click links, or share sensitive information with email addresses that could attempt to impersonate the firm.
Fraudulent domain names that have been used include opensae.io, opensea.org, and opensea.xyz.
OpenSea said that it has reported the incident to law enforcement and has been “cooperating in the investigation.”
This adds to a growing list of crypto firms that have experienced email data breaches. In March, the database of customer relationship management platform HubSpot was exploited by an employee, affecting firms such as BlockFi, Swan Bitcoin, Circle, Pantera Capital, and NYDIG. The hack revealed user names, emails, phone numbers, and account types.
These breaches are especially harmful to crypto firms, as users can be duped into giving out wallet information, risking the loss of their digital assets.
See also: First Luna, now Celsius. What’s behind the latest crypto crisis?
Editing by Miguel Cordon and Lorenzo Kyle Subido
(And yes, we’re serious about ethics and transparency. More information here.)
Stay updated on the go with our mobile app.
Get latest insights with smoother, more personalized experience through TIA mobile app.





