GetChain News
中简 中繁 EN
GetChain News
Toggle sidebar

Security/Hacker

News linked to both this project and an event.

Bitget Security Incident 12-Hour Progress Report: Cold Wallets Secure, No Commitment to Withdrawal Recovery Timelines That Cannot Be Fulfilled

Bitget CEO Gracy Chen posted a 12-hour progress report on the security incident on X, including:1. Affected assets include ETH, XRP (largest single-chain loss), BNB, AVAX, USDT, USDC, and other tokens. Affected chains include: Ethereum, XRP Ledger, Arbitrum, Avalanche, Optimism, BSC, and Base. All on-chain cold wallets have been confirmed secure and unaffected.2. All foundations of the affected chains have been contacted, and some foundations have confirmed the freezing of the hacker's wallet addresses.3. Based on IP behavioral characteristics and on-chain analysis, the attack methodology is highly consistent with known patterns of North Korean hacker groups. Relevant authorities have been notified, and full cooperation is being provided for a global investigation.4. Bitget Wallet (decentralized wallet) operates completely independently from Bitget exchange infrastructure, and this incident has no impact on it. Bitget Wallet assets are completely safe.5. Transparent disclosure regarding the platform's financial status: In addition to over $464 million in protection funds (all held in publicly verifiable wallet addresses), Bitget's own assets exceed $1 billion. User funds are covered at a 1:1 ratio, and all data can be verified on-chain.6. Regarding withdrawal recovery timing: The goal is to achieve full recovery as soon as possible. Once a specific time window is confirmed, an announcement will be made immediately. No commitment will be made to timelines that cannot be fulfilled.

Bybit CEO: The team stands ready to assist Bitget and will help track the relevant funds.

Bybit co-founder and CEO Ben Zhou announced in a post that the Bybit team stands ready to assist in any capacity with the recent hacking incident targeting Bitget. Previously, when Bybit was compromised, Bitget provided support. Ben Zhou stated that Bybit is currently updating the LazarusBounty platform to help Bitget track the flow of the associated funds.

Bybit CEO: Will Assist Bitget in Tracking and Recovering Stolen Funds

Odaily News: Bybit co-founder and CEO Ben Zhou posted that the Bybit team stands ready to assist Bitget in any way possible, noting that Bitget had previously offered assistance when Bybit suffered a hack attack.Ben Zhou stated that Bybit is updating the LazarusBounty platform to help Bitget track the flow of stolen funds and assist in recovering the related assets.

Bitget: The Protection Fund holds 5,500 BTC, and losses from the hot wallet incident will be covered by the fund after assessment.

Bitget stated that the losses resulting from this hot wallet security incident will be covered by the protection fund following an assessment, and the fund will be replenished after use. The specific scope of compensation and terms will be announced separately.

Bitget Wallet Responds to Security Incident: Wallet Unaffected and Operates Independently, User Assets Safe

Bitget Wallet stated on X that it operates independently from the Bitget exchange and is a self-custodial wallet. User assets always remain on-chain and are controlled by users themselves, isolated from the custodial infrastructure of the Bitget exchange.In response to the recent security incident at Bitget, Bitget Wallet has conducted preventive checks on its internal systems and found no security impact from the incident on Bitget Wallet's systems or users' self-custodied assets. Bitget Wallet is currently operating normally, and users are reminded to be vigilant against phishing and impersonation attempts and to obtain the latest information through official channels.

On-Chain Analyst: Bitget User Protection Fund Consists of 5,500 BTC, Valued at $464 Million

on-chain analyst Yu Jin has monitored that the $464 million risk protection fund Bitget claims can cover stolen assets is a total of 5,500 BTC, distributed across 3 wallet addresses.

Latest Data: Top 3 Stolen Assets from Bitget Are XRP, ETH, and USDT, with XRP Losses Exceeding $157 Million

Odaily News: According to LookonChain monitoring, the breakdown of assets stolen from Bitget is as follows:102.93 million XRP (approximately $157.48 million);31,890 ETH (valued at $85.75 million);34.75 million USDT (approximately $34.75 million);21.05 million USDC ($21.05 million);19.67 million USD₮0 ($19.67 million);3,000 XAUt (equivalent to $12.82 million);12,719 BNB (valued at $9.88 million);821,012 AVAX (valued at $8.38 million);20.59 million $TRX (approximately $7.07 million).

Bitget stolen funds linked on-chain to previous AFX hack, pointing to Lazarus Group

Odaily reports: On-chain analyst Specter has stated that they have established an on-chain connection between the Bitget attack and the AFX attack that occurred in July of this year. The latter involved approximately $24 million in stolen funds and was attributed to TraderTraitor.Specter claims that the XRP stolen from Bitget can be directly traced to the stolen funds from the AFX attack after being bridged across chains, leading them to believe that this attack may be related to Lazarus Group. The attribution is still pending further verification.

Stolen assets at Bitget involve 9 types of tokens, with XRP valued at up to $157 million.

According to Lookonchain data, the assets stolen in the Bitget incident comprise 9 different token categories, totaling approximately $356.9 million in value. Of these, approximately 102.93 million XRP (worth around $157.48 million) represents the highest-valued category, alongside 31,890 ETH (approximately $85.75 million). The remaining stolen assets include approximately 34.75 million USDT ($34.75 million), 21.06 million USDC ($21.06 million), 19.67 million USD₮0 ($19.67 million), 3,000 XAUt ($12.82 million), 12,719 BNB ($9.88 million), 821,000 AVAX ($8.38 million), and 20.59 million TRX ($7.07 million).

SlowMist: Bitget hacker-associated addresses still hold approximately 68,000 ETH, and also hold approximately 103 million XRP.

According to the updated tracking data from SlowMist's MistTrack, the currently flagged Bitget hacker-associated addresses include 11 EVM addresses, 7 Ripple network addresses, and 1 TRON address.

Bitget CEO Gracy Chen:初步确认黑客入侵钱包服务关键后台系统,可排除私钥泄露

Gracy Chen 称,目前确认相关损失已经完成,平台不存在进一步资金流失风险,黑客具体入侵手法仍在技术核查中,完整报告将在调查结束后发布。

About $193 million of the assets stolen from Bitget came from EVM chains, and the hacker now holds about 68,500 ETH.

Odaily News: According to monitoring by Yu Chen, the assets stolen from Bitget this time amounted to about $351.6 million, of which about $192.6 million were stolen on EVM chains, mainly including stablecoins and ETH.Over the past few hours, the hacker has successively converted the stablecoins and other assets stolen on EVM chains into ETH. Currently, the relevant hacker EVM address holds a total of about 68,500 ETH, worth about $184 million.

Asia Leads Crypto Adoption Index, Bitget Loses $350 Million

Chainalysis data shows 9 Asian countries rank in the top 20 globally for crypto adoption; Bitget confirms $350 million was stolen, with the user protection fund covering the losses.

Bitget Hit by Hacker Attack, Loses $352 Million

Bitget was hacked, losing approximately $352 million; the platform emphasized that the stolen assets came from its own capital, and user funds were unaffected.

Bitget denies $178 million theft rumors.

Bitget exchange has responded to allegations of a $178 million security breach and withdrawal, stating that these rumors are unsubstantiated. The platform said it is cooperating with law enforcement agencies in the investigation and confirmed that user cold wallet funds remain secure.

$176 million in ETH and USDT0 transferred out of multiple Bitget wallets, Bitget suspected of being hacked

According to Bitcoin News monitoring, $176 million worth of ETH and USDT0 was transferred from multiple Bitget wallets to a single address, in what appears to be unauthorized activity. This suspected hack did not involve Bitcoin. Bitget has not yet commented.

738,600 USDC Transferred Out, Hyperliquid User Account Compromised with Over 10,000 HYPE Unstaked

Odaily News – A Hyperliquid user's account was compromised through unauthorized access, with approximately 738,600 USDC transferred out and an additional 10,287 HYPE unstaked. The affected account is identified by a specific address, with some of the stolen funds flowing to an address suspected to be associated with Bitget. As of the time of verification, the 10,287 HYPE remained in the staking balance and had not yet entered the withdrawal queue. If the attacker proceeds to initiate cWithdraw, the affected assets would be further transferred after a 7-day waiting period. In two similar recent cases, staked assets were stolen a second time due to the lack of a user-triggerable emergency pause mechanism, resulting in losses exceeding $1.1 million. Relevant recommendations include introducing a Guardian or Recovery mechanism that users can pre-enable, which would only temporarily pause withdrawals, transfers, and authorization changes. The pause would expire automatically, and restoration would require a time lock and evidence review, with all actions recorded on-chain.

Core DAO Plans Emergency Hard Fork as Validators Receive Excess CORE Rewards

Odaily News: Blockchain project Core DAO has announced a coordinated emergency hard fork, caused by validators receiving CORE rewards exceeding the blockchain's originally scheduled issuance. Core DAO stated that the incident is under control, malicious validators can no longer continue to obtain excess rewards, and the upgrade will not roll back the network or revoke confirmed transactions.Core DAO previously stated that a small number of validators had accumulated rewards significantly higher than the protocol's set issuance, and that the incident only involved reward distribution, with user assets remaining secure. Coinbase, Bithumb, Coinone, Bitget, and LBank had restricted CORE deposits, withdrawals, or transfers.Core DAO has not yet disclosed the amount of excess CORE issued, the duration of the related activity, whether the extra tokens entered circulation, or the cause of the vulnerability, and stated that it will publish a technical post-mortem report. (Cointelegraph)

Bitget Collaborates with SlowMist to Release the “2026 Anti-Fraud Report”: Cross-Asset Users Account for Over 10%; AI-Integrated Fraud Accelerates Evolution

According to the “2026 Anti-Fraud Report” jointly released by Bitget and SlowMist, as digital finance continues expanding into equities, tokenized assets, and AI tools, cross-asset trading is gradually emerging as a key trend for user participation in markets. The proportion of users engaging in cross-asset portfolio allocation has risen from less than 1% in mid-2025 to over 10% by May 2026. The report notes that fraud techniques are evolving from single-point attacks toward sophisticated attack chains—integrating AI-generated content, deepfakes, voice cloning, and multi-channel social engineering. Between July 2025 and June 2026, Bitget’s security system intercepted over 150 million malicious requests, identified more than 13,000 high-risk malicious IPs, and assisted users in recovering approximately $32.3 million in funds linked to security incidents and fraudulent activities. Gracy Chen, CEO of Bitget, stated: “This year marks the third annual Anti-Fraud Month initiative. Bitget will continue rolling out security education content, risk identification guides, and industry collaboration programs to help users enhance their ability to detect and defend against AI-powered fraud, phishing attacks, and scams occurring across multi-asset scenarios.”

Bitget Chief Legal Officer Issues Open Letter, Helped Users Recover Over $32.3 Million in Fraud-Linked Funds Last Year

Bitget Chief Legal Officer Hon Ng issued an open letter today, announcing the official launch of Bitget’s 2026 Global Anti-Fraud Month campaign under the theme “More Assets, Stronger Protection.” In the letter, Hon Ng noted that as the platform expands from crypto assets to a multi-asset ecosystem, users are facing increasingly complex cybersecurity threats while enjoying broader market access. He emphasized: The multi-asset era means greater responsibility. User protection is not a one-time project but the collective result of continuous risk monitoring, rapid response, security education, and industry collaboration.The open letter also disclosed Bitget’s security and anti-fraud achievements for 2025. Data shows that Bitget intercepted over 150 million malicious attack requests throughout the year, identified more than 13,000 high-risk malicious IP addresses, handled 18,135 user protection cases, and assisted users in recovering approximately $32.3 million in funds related to security incidents and fraudulent activities. Additionally, Bitget’s security system achieved over 2.8 billion risk interceptions through custom protection rules, repelled more than 1.5 billion DDoS attack attempts, and introduced machine learning-based behavioral analysis capabilities to further identify suspicious activities and potential risks.