In a troubling turn of events, Bitget has confirmed a staggering $351.6 million hack that affected parts of its hot and warm wallet infrastructure. CEO Gracy Chen disclosed that attackers were able to spoof transaction data after successfully compromising a backend wallet system. Fortunately, the exchange has assured its users that private keys were not stolen, and cold wallets remain secure.
The unauthorized transfers were detected at 18:31 UTC on September 24, prompting Bitget to activate emergency controls. Chen noted that this swift response halted any further outflows and secured the affected systems. While the hot wallets, which are used for fast transactions, were compromised, deposits and trading remained operational as the exchange conducted its security review.
In her statements, Chen confirmed that the exchange is working diligently to trace the source of this exploit. The attackers managed to manipulate transaction information rather than obtaining direct control over wallet credentials. This breach targeted Bitget’s internal transaction processes, allowing it to bypass standard safeguards.
Following the breach, Bitget suspended withdrawals while its technical teams perform a thorough review of the security incident. Although the exchange has not announced when withdrawals will reopen, Chen has committed to providing a timeline only once the teams are confident that the system is secure. During this review, customer balances remain accurate, and the exchange’s $464 million User Protection Fund is reportedly sufficient to cover the losses incurred.
This incident is particularly alarming in light of recent security breaches within the crypto industry. Just days prior, a North Korea-linked fake job scam had compromised thousands of crypto wallets, adding to the growing concerns about digital asset security. In conjunction with this, a separate phishing scheme involving Coinbase resulted in nearly $16 million in losses for users, highlighting the urgent need for enhanced security measures across the industry.
As Bitget’s investigation unfolds, the exchange has flagged addresses linked to the unauthorized transfers and is collaborating with law enforcement and blockchain security firms to mitigate the risk of future attacks. Chen reassured users that the exchange is committed to transparency and will release a comprehensive technical report detailing the cause of the breach, the attack path, and the security changes being implemented.
In the volatile world of cryptocurrency, incidents like this underline the importance of security protocols and the need for exchanges to continually evolve their defenses against increasingly sophisticated threats. As Bitget navigates this crisis, the exchange’s swift actions and commitment to securing user assets will be crucial in restoring confidence among its user base.
