Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Kraken

Kraken Vendor Cyber Rating & Cyber Score

kraken.com

Kraken helps people own the power of their money. Founded in 2011, we're one of the world's longest-standing crypto platforms, now offering crypto, stocks, futures, staking, payments and more. Trusted by millions of institutions, professional traders, and consumers across 190+ countries. Built on the belief that everyone should own the power of their money, Kraken has been a category leader in crypto since 2011. We've grown into a global financial platform offering crypto, stocks, futures, staking, payments and institutional infrastructure — all on a single foundation built for the future of finance. Our product lineup: — Kraken: the world's leading hybrid investment platform, built for the future of finance from the ground up — Kraken


Kraken A.I CyberSecurity Scoring

Kraken
Company Information
Website:https://kraken.com
Employees number:1,165
Number of followers:310,883
NAICS:52
Industry Type:Financial Services
Homepage:kraken.com
Kraken Risk Score (AI oriented)
Between 600 and 649
logo
KrakenFinancial Services
Updated:
14/04/2026
624/1000
Poor
Caa
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
Kraken Global Score (TPRM)
xxxx
logo
KrakenFinancial Services
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

Kraken
KrakenPoor
Current Score
624Caa (POOR)
01000
3 incidents
-41.5 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
SEPTEMBER 2026
640Before Incident
AUGUST 2026
634Before Incident
JULY 2026
632Before Incident
JUNE 2026
631Before Incident
MAY 2026
627Before Incident
APRIL 2026
702Before Incident
Breach
13 Apr 2026Kraken
Kraken: Kraken faces extortion threat over rogue employee breach

Kraken Faces Extortion Plot Involving Rogue Employees

624After Incident
CRITICAL-78
KRA1776206461
Kraken Faces Extortion Plot Involving Rogue Employees, Raising Concerns Over Fed Access Cryptocurrency exchange Kraken is grappling with an extortion attempt orchestrated by hackers who recruited insider employees to bypass security measures. The incident, disclosed by Chief Security Officer Nick Percoco on April 13, 2025, involved rogue members of Kraken’s customer support team who allegedly provided attackers with access to internal systems. The breach was discovered in February 2025 after Kraken received a tip about a video circulating on a criminal forum, showing unauthorized access to its client support tools. Investigations revealed two employees had been compromised, potentially exposing roughly 2,000 client accounts 0.02% of Kraken’s user base. While the exchange confirmed no funds were at risk and core systems remained secure, attackers threatened to leak footage of internal operations unless demands were met. Kraken has refused to negotiate, revoked the employees’ access, and notified affected clients, while collaborating with federal law enforcement. The incident underscores a growing trend of cybercriminals targeting insiders, as seen in a December 2024 report by Check Point, which uncovered darknet ads offering payouts of $3,000 to $15,000 for employees at exchanges like Kraken, Coinbase, and Binance. Similar extortion attempts have targeted other firms, including Coinbase, which has since bolstered insider-threat detection and support security controls. The breach arrives just weeks after Kraken became the first digital asset company to secure a "limited purpose" Federal Reserve master account on March 4, 2025, granting it direct access to the central bank’s payment rails. The approval, issued by the Federal Reserve Bank of Kansas City, has drawn sharp criticism from traditional banking advocates, including the Independent Community Bankers of America (ICBA), which warned of systemic risks. In a joint letter, the ICBA and 42 state bankers’ associations urged the Fed to impose stricter risk controls on Kraken’s account, citing concerns over operational and cybersecurity vulnerabilities. The incident has also intensified congressional scrutiny. Rep. Maxine Waters, ranking Democrat on the House Financial Services Committee, demanded further details on the approval process, while Fed Vice Chair for Supervision Michelle Bowman acknowledged the move as an "experiment" in integrating crypto firms into the federal payment system. Critics, including the Bank Policy Institute, argue that lightly regulated crypto entities may pose broader financial stability risks compared to traditional banks, which undergo rigorous supervision and hold deposit insurance.
INCIDENT DETAILS -
TYPE
Extortion
MOTIVATION
Financial gain (extortion)
IMPACT
Data Compromised: Client account informationSystems Affected: Internal client support toolsOperational Impact: Unauthorized access to internal systemsBrand Reputation Impact: YesIdentity Theft Risk: PotentialPayment Information Risk: No funds at risk
DATA BREACH
Type Of Data Compromised: Client account informationNumber Of Records Exposed: 2000Sensitivity Of Data: Moderate (client support tools access)Data Exfiltration: Potential (threatened leak of internal operations footage)
MARCH 2026
701Before Incident
FEBRUARY 2026
700Before Incident
JANUARY 2026
703Before Incident
Vulnerability
01 Jan 2026Kraken
Nothing, Kraken Wallet, MediaTek, Tangem and Base: Vulnerability in MediaTek Chips Could Impact 25% Android Smartphones

Critical Android Vulnerability Exposes Encryption Keys and Crypto Wallet Data

698After Incident
CRITICAL-5
TANKRANOTMEDCOI1773311566
Critical Android Vulnerability Exposes Encryption Keys and Crypto Wallet Data Security researchers at Ledger’s Donjon team have uncovered a severe vulnerability in certain Android smartphones, potentially affecting up to 25% of devices worldwide. The flaw, tied to specific MediaTek chipsets using Trustonic’s Trusted Execution Environment (TEE), allows attackers with brief physical access to extract sensitive data including encryption keys and cryptocurrency wallet seed phrases in under a minute. The issue stems from a weakness in the device’s boot chain, a security mechanism that validates system components during startup. Normally, this process protects encryption keys until the OS fully loads. However, researchers demonstrated that by connecting a vulnerable phone to a computer via USB, attackers could bypass security protections before the OS completes booting. In a proof-of-concept test using a Nothing CMF Phone 1, the Donjon team recovered the device’s PIN, decrypted storage, and extracted seed phrases from six crypto wallets Trust Wallet, Base, Kraken Wallet, Rabby, Tangem, and Phantom within 45 seconds. The vulnerability, tracked as CVE-2026-20435 in MediaTek’s security bulletin, affects devices relying on certain MediaTek processors, which are prevalent in budget and midrange Android phones. MediaTek has issued a firmware fix to manufacturers, but users must install pending updates to mitigate the risk. Until then, affected devices remain exposed to offline decryption attacks once root cryptographic keys are extracted. Ledger’s CTO, Charles Guillemet, noted that smartphones were not designed as secure storage for digital assets, emphasizing that their security depends on the integrity of hardware, firmware, and software. The discovery underscores the risks of storing sensitive data on mobile devices without additional safeguards.
INCIDENT DETAILS -
TYPE
Vulnerability Exploitation
IMPACT
Data Compromised: Encryption keys, cryptocurrency wallet seed phrasesSystems Affected: Android smartphones with specific MediaTek chipsetsBrand Reputation Impact: Potential reputational damage to affected manufacturers and crypto wallet providersIdentity Theft Risk: High (due to exposure of encryption keys and seed phrases)Payment Information Risk: High (cryptocurrency wallet data)
DATA BREACH
Type Of Data Compromised: Encryption keys, cryptocurrency wallet seed phrasesSensitivity Of Data: High (cryptographic keys, financial data)Data Exfiltration: Possible (attackers can extract data)Data Encryption: Weakened (due to vulnerability in boot chain)Personally Identifiable Information: Cryptocurrency wallet seed phrases (indirect PII risk)
DECEMBER 2025
703Before Incident
NOVEMBER 2025
701Before Incident
OCTOBER 2025
700Before Incident
FEBRUARY 2025
766Before Incident
Breach
01 Feb 2025Kraken
Kraken and Galaxy Digital: Crypto exchange Kraken targeted in extortion attempt; says no breach and no funds at risk

Kraken Faces Extortion Attempt After Insider Security Incidents

688After Incident
CRITICAL-78
KRAGAL1776111934
Kraken Faces Extortion Attempt After Insider Security Incidents Cryptocurrency exchange Kraken disclosed an extortion attempt by a criminal group threatening to release videos allegedly showing unauthorized access to internal systems containing client data. The Wyoming-based firm confirmed two separate incidents in 2025 involving rogue employees within its support team, both of which were swiftly contained. In February, Kraken received a tip about a video circulating on a criminal forum, prompting an internal investigation that identified the individual responsible. The company revoked their access, implemented additional security controls, and notified affected clients. A second, similar incident occurred more recently, leading to another termination and user notifications. Kraken emphasized that its systems were never breached, client funds remained secure, and it would not negotiate with the extortionists. Approximately 2,000 accounts roughly 0.02% of its customer base were potentially exposed across both incidents. The exchange is collaborating with law enforcement and industry partners to investigate what it describes as a broader insider recruitment campaign targeting crypto, gaming, and telecommunications firms. The incidents highlight persistent security challenges in the crypto industry, where high-value assets and human vulnerabilities create attractive targets for attackers. Recent exploits, such as the Drift protocol breach, demonstrate increasing sophistication, combining technical exploits with social engineering to evade detection. Kraken, founded in 2011, serves retail and institutional clients globally, offering trading, custody, and staking services. The company has reiterated its commitment to security and regulatory compliance amid evolving threats. Separately, Galaxy Digital reported containing a cybersecurity incident in an isolated development workspace, with no impact on client funds or data.
INCIDENT DETAILS -
TYPE
Insider Threat, Extortion
MOTIVATION
Extortion, Financial Gain
IMPACT
Data Compromised: Client data potentially exposedSystems Affected: Internal systems (support team access)Operational Impact: Additional security controls implemented, user notificationsBrand Reputation Impact: Potential reputational damage due to insider incidentsIdentity Theft Risk: Potential risk for affected clients
DATA BREACH
Type Of Data Compromised: Client dataNumber Of Records Exposed: Potentially 2000 accountsSensitivity Of Data: High (client data)Data Exfiltration: Videos allegedly showing unauthorized accessFile Types Exposed: VideosPersonally Identifiable Information: Potentially exposed

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for Kraken ?
?
What was Kraken's A.I Rankiteo Cyber Score in August 2026 ?
?
What was Kraken's A.I Rankiteo Cyber Score in July 2026 ?
?
What was Kraken's A.I Rankiteo Cyber Score in June 2026 ?
?
What was Kraken's A.I Rankiteo Cyber Score in May 2026 ?
?
What was Kraken's A.I Rankiteo Cyber Score in April 2026 ?
?
What was Kraken's A.I Rankiteo Cyber Score in March 2026 ?
?
What was Kraken's A.I Rankiteo Cyber Score in February 2026 ?
?
What was Kraken's A.I Rankiteo Cyber Score in January 2026 ?
?
What was Kraken's A.I Rankiteo Cyber Score in December 2025 ?
?
What was Kraken's A.I Rankiteo Cyber Score in November 2025 ?
?
What was Kraken's A.I Rankiteo Cyber Score in October 2025 ?
?
What is the average per-incident point impact on Kraken's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with Kraken ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view Kraken's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?