#BitgetBreachForgedRequestsNotStolenKeys

BitgetBreachForgedRequestsNotStolenKey refers to the technical mechanism behind the massive $351.6 million security breach suffered by cryptocurrency exchange Bitget on September 24, 2026. [1, 2]

Bitget $CE.US
O Gracy Chen explicitly clarified that no private keys were stolen or compromised during the exploit. Instead, the attackers successfully infiltrated a critical backend system connected to the exchange’s wallet infrastructure. They used this access to spoof transaction data, generating forged withdrawal requests that mimic legitimate paperwork. These forged requests were then automatically signed and pushed through the exchange's standard authorization process. [1, 2, 3, 4, 5]
$NVDAB
$AAPL.US