Bitget clarifies $388M in assets affected by security breach
Source Entity
Cointelegraph by Turner Wright

Cryptocurrency exchange Bitget has suffered a massive security breach, with suspected North Korean hackers stealing approximately $388 million. The exchange has suspended withdrawals and is working to recover funds while confirming that its cold storage remains secure.
The Bitget Security Crisis: A $388 Million Heist
In a significant escalation of cyber threats targeting the financial sector, cryptocurrency exchange Bitget recently confirmed a major security breach involving the unauthorized transfer of digital assets. While initial reports estimated the loss at $351 million, subsequent on-chain analysis of Zcash and TRON assets forced the exchange to revise the figure upward to approximately $388 million. This event now stands as the largest single cryptocurrency theft recorded thus far in 2024.
The Anatomy of the Breach
According to official statements from Bitget, the attackers gained access to a specific segment of the platform's 'hot' and 'warm' wallets. These wallets are inherently more vulnerable because they are connected to the internet to facilitate active, real-time trading. The breach was detected by the exchange's internal security systems on Thursday at 18:31 UTC, at which point the company triggered emergency response protocols, including the immediate suspension of all withdrawals to prevent further drainage of liquidity.
Attribution and Broader Context
Industry analysts and security researchers have pointed toward North Korean hackers as the primary suspects behind this operation. This follows a well-documented pattern of state-sponsored cyber warfare aimed at circumventing international sanctions. By targeting high-volume crypto exchanges, these actors generate significant capital to fund illicit activities. This incident eclipses the previous record-holding hack from September, which resulted in a $340 million loss, though that event saw the partial return of funds—an outcome that remains uncertain for the victims of the Bitget attack.
Operational Impact and Mitigation
Bitget CEO Gracy Chen has emphasized that the damage was contained to the internet-facing wallet layers. Crucially, the exchange’s 'cold' wallets—which store the vast majority of long-term user assets offline—remain secure and unaffected. Despite the suspension of withdrawals, the platform has maintained that internal user account balances remain accurate, and core trading services continue to function, attempting to preserve a sense of operational stability amidst the crisis.
The Path to Recovery
In response to the theft, Bitget has launched a dedicated bounty program designed to incentivize the tracking, freezing, and recovery of the stolen funds. The exchange is currently leveraging a $464 million user protection fund, which is intended to absorb losses during such catastrophic security failures. As the investigation continues, the crypto industry is once again forced to reckon with the inherent risks of centralized hot wallet storage and the increasing sophistication of state-linked cyber syndicates.
Multiple Citing Sources