http://torzcd477gnovlreztuexrfdjkmvstr4p2baru4rnybl2poqauxezxid.onion/coinbase-breached-by-social-engineers-employee-data-stolen-mobile-hacker-for-hire/index.html
Staff were urged via SMS to login to read an important corporate notification. For convenience, the message included a login link, but that link went to a bogus site that captured usernames and passwords. Apparently, the attackers didn’t know, or didn’t think, to get hold of the 2FA (two-factor authentication code) they’d need to go along with the username and password, so this part of the attack came to nothing.