Bitget Resumes Bitcoin Withdrawals

With $388M hacked, Bitget resumes Bitcoin Withdrawals After Stolen Crypto Moves.

As a result of a security breach that transferred nearly $388 million from Bitget’s wallets connected to its exchange, the company has begun to recover cryptocurrency withdrawals. Withdrawals for Bitcoin were reinstated on September 28 and other assets are being restored gradually.

The incident happened on 24th September on a part of Bitget’s infrastructure for hot and warm wallets. The exchange said it was not impacted by a compromise of its cold wallets, and it has indicated that its customer balances are safe.

New developments have brought the topic from the first theft to the transfer of the stolen assets from one blockchain network to another.

Bitcoin Withdrawals Resume

Bitget has started processing Bitcoin withdrawals at 08:00 UTC on September 28. The exchange is reopening other services slowly as one network needs to undergo more security checks before withdrawals can be re-opened.

Ether withdrawals will resume on 29th Septemner. Withdrawals of the USDT are scheduled for 30 Sept, and the rest of the assets and fiat withdrawals and peer-to-peer transactions are expected 2 Oct.

The progressive approach follows Bitget’s discovery and fixing of the vulnerability in the incident.

How the Bitget Hack Happened

Bitget claims the attacker took advantage of a third-party security solution that the exchange was employing.

CEO Gracy Chen says the defect enabled the attacker to get advanced internal credentials. These then were used to feed bogus withdrawal instructions into the wallet system.

The exchange stated that the order was passed through its risk parameters and led to the unauthorized withdrawal of funds from wallets. Additionally, Bitget has claimed that its private keys and cold wallets were not hacked.

The attacker first made small test transfers before making much bigger transactions, the Block reported. However, the number of larger (probably around 17) transfers were made over multiple networks, and the total value of these transactions was hundreds of millions of dollars.

It seems like Steal Crypto is still on the move.Steal Crypto seems to be moving along.

Some of the assets stolen are still in transit making investigation complicated.

A wallet belonging to the attacker has traded a total of approximately 2,390 ETH for 75.2 BTC via THORChain on September 28, reporting CoinDesk. However, Bitget had tried to freeze addresses that were connected to the theft using THORChain, but according to the THORChain team, their emergency controls cannot “freeze” a specific address or transaction.

The transactions will be still visible on public blockchain. This enables investigators and blockchain analysts to trace the flow of assets even if the assets are transferred between different networks.

Earlier, approximately $83 million worth of stolen XRP was also sent from wallets linked to the attack. At the time of its analysis, approximately $75 million was still held in the initial XRP accounts, CoinDesk reported.

Bitget has announced that its Protection Fund will cover the loss.

The loss will be made up by the Bitget user protection fund, according to the exchange. According to the exchange, the fund had 5,500 BTC, and its CEO Gracy Chen stated that the company would replenish the fund following the incident.

The exchange has also introduced a bounty program that rewards those that help to recover or freeze stolen assets. Participating users have the ability to claim 5% of the funds frozen successfully, Bitget stated.

The company is collaborating with outside security companies such as SlowMist and Mandiant on its investigation.

What Happens Next

The immediate concern is to complete the staged reopening of withdrawals and monitoring the stolen cryptocurrency.

The incident also brings into question the security systems of third parties used by centralized exchanges. Bitget has stated it will re-evaluate the assessment and implementation process for such products and has placed extra restrictions on inbound and outbound transactions.

The incident is a timely reminder of the challenges that come with exchange security for crypto users, as it highlights that securing private keys is only part of the equation. However, internal software, access credentials and transaction monitoring can also be attack vectors.

Bitget has reopened withdrawal of Bitcoinstolen funds, but the recovery is not completed yet. The stolen funds have been moving across blockchain networks, and investigators still haven’t determined how much of the nearly $388 million can be recovered.

BlackRock Says AI Agents Could Bring New Demand to Crypto

CryptopianNews provides this information for educational and informational purposes only. You should not consider it financial or investment advice. Cryptocurrency markets are highly volatile and speculative, and they carry inherent risks. We advise readers to conduct their own research and to consult with a qualified financial advisor before making any investment decisions.

Emilia – Senior Crypto & Finance Writer at Cryptopian News at Cryptopian News
With over 5 years of hands-on experience in the crypto and financial markets, Emilia is a seasoned journalist and blockchain enthusiast who brings clarity to complexity. Her deep knowledge of DeFi, altcoins, and emerging Web3 trends makes her a trusted voice in the industry. At Cryptopian News, Emilia crafts insightful, research-driven content that empowers investors, educates beginners, and keeps the crypto-native community ahead of the curve. Whether it's breaking news, in-depth analysis, or market forecasts, Emilia delivers with precision and passion
Emilia

Leave a Comment

Your email address will not be published. Required fields are marked *