Today, Mahadevan is the Senior Engineering Manager at the cryptocurrency exchange platform. She shares how she’s evolved as a leader, why she appreciates the remote-first culture at Coinbase, and advice for engineering candidates hoping to succeed in their tech careers. The attacker is believed to have obtained a GitHub token with write permissions to the agentkit repository – in turn facilitated by the execution of the tj-actions/changed-files GitHub Actions – so as to make the unauthorized changes.
- “These findings indicate that the attacker is highly skilled and has a deep understanding of CI/CD security threats and attack tactics.”
- Bitcoin (BTC) price hovers around $87,000 on Wednesday after recovering 4% in the last three days.
- Additionally, a more crypto-friendly Congress holds the promise of greater regulatory clarity for the industry that had often criticized the SEC’s previous enforcement-heavy approach.
- All you have to do is enter how much you want to sell (or select “sell all”).
“While dismissal will be a major win for the rule of law – and a clear vindication of our position – most of all it will be a win for the entire industry and the 52 million Americans who have owned a digital asset,” Grewal wrote. Our list features brokers with competitive spreads, fast execution, and powerful platforms. Whether you’re a beginner or an expert, find the right partner to navigate the dynamic Forex market. The author makes no representations as to the accuracy, completeness, or suitability of this information. FXStreet and the author will not be liable for any errors, omissions or any losses, injuries or damages arising from this information and its display or use. Following the announcement COIN price crossed the $190, trading to reach $47.5 billion market capitalization, bringing its gains for the week to 4.4%.
Meanwhile, there are thousands of different cryptocurrencies available worldwide. Still, Coinbase lets you trade the most popular types of crypto, so it works well for most purposes. While Bloomberg’s latest report suggests negotiations are progressing, it remains unclear whether Coinbase and Deribit have reached a final agreement.
Its easy-to-use interface lets people buy and sell crypto in just a few clicks. While not every type of cryptocurrency is supported, you will find many of the most popular coins there. The downside to this approach is it requires you to remember your own password, also known as a private key. If you have heard reports of people losing millions because they got locked out of their cryptocurrency wallet, they probably have a non-custodial wallet.
Exploring Coinbase’s Advanced Features
It’s currently suspected that the attacker managed to somehow gain access to a token with write access to the reviewdog organization in order to make the rogue alterations. That said, the manner in which this token may have been acquired remains unknown at this stage. Unit 42 and Wiz’s reports confirm that the campaign was initially highly focused on Coinbase and expanded to all projects utilizing tj-actions/changed-files once their initial attempt failed.
Editorial Independence
Providing state-of-the-art customer support is essential to achieving this goal. Furthermore, I’ve honed my skills in planning and adapting technology solutions and product strategies in the ever-evolving landscape of GenAI. These experiences have significantly shaped my growth, enabling me to thrive in a dynamic and fast-paced environment.
Her unwavering passion led her to pursue a bachelor of engineering and a master’s degree in computer science. Soon after completing her graduate education, she moved to Washington State to start her professional career at Microsoft, where she initially worked on the .NET team. A few years later, she joined the Windows Shell team and was tasked with helping develop xcritical scammers Cortana, Microsoft’s AI-based personal assistant. “However, when targeting Coinbase, the attacker specifically fetched the GITHUB_TOKEN and ensured that the payload would only execute if the repository belonged to Coinbase.”
If you’ve worked at a small startup, Coinbase offers the best of both worlds by providing more engineering rigor. When I first joined Coinbase, I led a small team of 10 engineers focused on NLP-based solutions for customer support. Today, I oversee teams of over 40 engineers who are building GenAI as a paved-path platform.
How to open a Coinbase account
Staying updated on the latest developments in blockchain technology and showing genuine excitement about its transformative potential is a plus. Among Coinbase’s core tenets, three that particularly resonate with me are Clear Communication, Efficient Execution, and Acting Like an Owner. In the early days of establishing the company’s India hub, the tenet of Acting Like an Owner was incredibly liberating. It empowers all employees—regardless of their level or hierarchy—to identify problems and propose solutions. Growing up, she found joy in building software and diving into theoretical computer science.
Why is Coinbase acquiring Deribit Crypto Exchange?
While this method is more secure, the onus is on you to ensure you can access your wallet. With Pro, you’ll find additional trading options and upgraded charting features. Coinbase Pro also offers a more xcritical reviews straightforward (and lower) fee structure, too. One key highlight has been establishing a deep partnership with the customer support function. A crucial aspect of Coinbase’s mission is reducing the barriers to entry for new users.
Editorial integrity
In a short period of time, cryptocurrency has gone from a small, alternative investment to one worth hundreds of billions of dollars collectively. Whether you are looking to invest in crypto or use it as a form of payment, you have likely heard of Coinbase. After all, with tens of millions of users, it’s one of the most popular cryptocurrency exchanges. It’s also one of the easiest ways to buy cryptocurrency which has helped fuel its explosion in popularity. As of 2025, Coinbase operates the largest U.S. based cryptocurrency exchange with over 108 million customers.56 It offers products for retail and institutional cryptocurrency investors, as well as other users. As the head of GenAI platforms and solutions at Coinbase, I’m responsible for leveraging cutting-edge technology to benefit our customers and employees.
What is Coinbase and how does it work?
This allowed the threat actors to steal a Personal Access Token that was then used to push a malicious commit to the tj-actions/changed-files GitHub Action that once again dumps CI/CD secrets to workflow logs. According to new reports from Palo Alto Unit 42 and Wiz, the attack was carefully planned https://xcritical.solutions/ and began when malicious code was injected into reviewdog/action-setup@v1 GitHub Action. It is unclear how the breach occurred, but the threat actors modified the action to dump CI/CD secrets and authentication tokens into GitHub Actions logs.
Coinbase in $5B talks to acquire Deribit, World’s largest BTC and ETH Options trading platform
Highlight instances where you have proactively identified and solved problems. It’s also not clear what prompted the attacker to switch gears, turning what was an initially targeted attack turned into a large-scale and less stealthy campaign. “We followed up by sharing more details of our findings with Coinbase, which stated that the attack was unsuccessful at causing any damage to the agentkit project, or any other Coinbase asset,” reports Palo Alto Unit 42. However, Coinbase later told Unit 42 that the attack was unsuccessful and did not impact any of their assets. “SEC staff has agreed in principle to dismiss its unlawful enforcement case against Coinbase, subject to Commissioner approval – righting a major wrong,” Paul Grewal, Coinbase’s chief legal officer, said in a blog on the exchange’s website. Bitcoin (BTC) price hovers around $87,000 on Wednesday after recovering 4% in the last three days.
Bankrate.com is an independent, advertising-supported publisher and comparison service. We are compensated in exchange for placement of sponsored products and services, or by you clicking on certain links posted on our site. Therefore, this compensation may impact how, where and in what order products appear within listing categories, except where prohibited by law for our mortgage, home equity and other home lending products. Other factors, such as our own proprietary website rules and whether a product is offered in your area or at your self-selected credit score range, can also impact how and where products appear on this site. While we strive to provide a wide range of offers, Bankrate does not include information about every financial or credit product or service.
According to Bloomberg reports, Deribit engaged a financial adviser in January to explore potential acquisition opportunities after drawing interest from multiple buyers. Coinbase is in advanced negotiations to acquire Deribit, the world’s largest platform for Bitcoin and Ethereum Options trading, according to a Bloomberg report. In its complaint, the SEC said Coinbase made billions acting as the middle man for cryptocurrency buyers and sellers but did not give investors lawful protections while acting as a broker.