September 24, 18:31 (UTC, 02:31 on September 25 in UTC+8). Bitget’s security system detected that some hot wallets experienced unauthorized withdrawals and immediately launched an emergency response. The official announcement estimates that the affected funds are about US$351.6 million; cold wallets remain fully secure, and the incident has been limited to certain tiers of hot wallets and warm wallets. The company said any platform-side losses are covered by a user protection fund, which holds more than US$464 million, and stated that account balances are accurate and user assets are protected. Top-ups and trading remain open after the incident; withdrawals are temporarily suspended as a precaution during the security review period.

Subsequently, CEO Gracy Chen explained that the attackers breached key backend systems in the wallet infrastructure, forged transaction data, and triggered the authorization process to complete the transfers. The theft of private keys has been ruled out. Abnormal addresses have been identified, marked, and reported to relevant institutions and on-chain security teams; any further unauthorized withdrawals have been contained. A complete technical report will be released after the investigation is confirmed, and no commit-able window has been provided yet for when withdrawals will be restored. Users across exchanges still need to verify official announcements and withdrawal status on their own, and not trust unofficial transfer instructions.

#Bitget #安全 #交易所 does not constitute investment advice