North Korea Suspected in $351 Million Bitget Crypto Heist

North Korea Suspected in $351 Million Bitget Crypto Heist

A massive cryptocurrency heist has left the digital asset community reeling after hackers made off with a staggering $351.6 million from Bitget, a Singapore-based exchange. What’s more disturbing is that experts suspect North Korean state-sponsored hackers are behind this brazen attack.

According to Bitget CEO Gracy Chen, the attackers used techniques eerily similar to those employed by known North Korean threat actors. While Chen didn’t name a specific group, she hinted at the possibility of a well-coordinated and sophisticated operation. The fact that some blockchain foundations have already frozen wallet addresses linked to the attacker suggests that investigators are hot on the trail.

The attack is believed to have occurred on September 24, when Bitget’s security systems caught unauthorized transfers from a small number of its hot wallets. Notably, the company’s cold wallets were not compromised, which could indicate that the attackers targeted specific vulnerabilities in the exchange’s infrastructure. Private keys were not stolen, but the hackers managed to abuse the system to get fraudulent transfers approved.

While Bitget has yet to reveal how the attacker gained access to their systems, cybersecurity experts are scrutinizing every detail of this high-profile heist. Mandiant and blockchain security firm SlowMist have joined forces with Bitget to investigate and contain the damage. This is not an isolated incident – North Korean state-sponsored hackers have been linked to numerous high-profile cryptocurrency heists in recent years.

The sheer scale of the attack, coupled with the alleged involvement of a nation-state actor, raises serious concerns about the security of digital assets. It’s becoming increasingly clear that cryptocurrency exchanges and users must prioritize robust security measures to protect against sophisticated threats. Bitget’s admission that its security systems were breached highlights the need for ongoing vigilance and continuous improvement in cybersecurity practices.

As we wait for more information on this developing story, one thing is certain: the cryptocurrency community must remain vigilant and proactive in countering emerging threats. This includes implementing robust security protocols, staying informed about evolving threat actors, and collaborating with law enforcement agencies to bring perpetrators to justice.

The takeaway from this incident is clear: even established exchanges like Bitget are not immune to sophisticated attacks. As we navigate the rapidly evolving landscape of cryptocurrency trading, it’s essential for users and exchanges alike to prioritize cybersecurity and stay ahead of the threats.


Source: SecurityWeek — 2026-09-25