吴说区块链|Oct 02, 2026 07:58
《Bitget $380M Hack Analysis: Money Laundering Path, Freezes, and Attribution》 (Author: BlockSec)
The article review states that on September 25, Bitget attackers exploited a zero-day vulnerability in a third-party security product to steal high-privilege credentials from the internal network. They used these credentials to inject fake withdrawal commands into the wallet system, bypassing risk controls and transferring approximately $380M across 13 assets and 12 chains.
The attackers first converted around $75.48M in stablecoins and XAUt into $ETH or $AVAX, then consolidated multi-chain assets into $BTC using cross-chain services like THORChain and Chainflip. Some funds were funneled into CoinJoin. As of September 29, the attackers still control approximately $342M, with about $840K publicly frozen.
The speculation that the attackers may be linked to North Korean hacker groups is currently based on Bitget's statements, on-chain fund connections, and similarities in laundering methods. However, this remains to be confirmed by Bitget's full investigation report or announcements from law enforcement agencies.
Read the full article: https://(wublock123.com)/articles/bitget-380m-hack-analysis-money-laundering-freeze-attribution-59614
Share To
Timeline
HotFlash
APP
X
Telegram
CopyLink