We are experiencing high support volume and response times may be greater than 48 hours. Please check our for solutions and access to our Virtual Assistant or our . Your support request is important to us and we appreciate your patience.
Essentially here are the steps they did to try to social engineer scam you.
-
You get a robo call stating that you may have been hacked in coinbase. Press 1 to speak to support, otherwise hang up.
-
Press 1. Someone calls you back. He sounds calm and collected and sounds professional, versus the typical Indian scammer.
-
He states that someone tried to change your email address to XYZ. Is this you? Your account may have been hacked.
-
How was it possible since I have 2FA? He claims that Turbo Tax was hacked and a way to provide access to your account. He sends an email (from help@coinbase) stating that Turbotax has been removed from your account.
-
If you ask for an email authentication, he will send you an email from "help@coinbase" to authorize himself. This is a fake spoof email.
-
He will send you an email stating you must reset your password from "defend-cbwallet.com". This URL can change. It goes to a Coinbase portal to change your password, it looks legit. It does not ask for the existing password.
-
The website then provides a keypass for a new wallet. He will as you to copy it. Ask you to download Coinbase wallet and create a new wallet. Otherwise your account will be locked indefinitely.
-
Once you make the account, he will ask you to LINK IT TO COINBASE. Big redflag here.
After that they steal your coins.
BEWARE. While the steps seem very obvious, the way they talk you through it is very convincing.