Lookonchain APP

App Store

Bitget CEO responded via live stream to the platform’s first security incident in eight years, revealing that the attack stemmed from a vulnerability in a third-party security product, with losses to be covered by the User Protection Fund.

41 minutes ago

During today’s community livestream, Bitget CEO Gracy addressed recent security incidents and the platform’s financial status. She openly stated that this marks the first security incident Bitget has encountered in its 8-year history. Following a full traceback, hackers exploited a vulnerability in a third-party security product to steal internal network permission credentials, forged withdrawal commands for the wallet system, and tricked the wallet into executing abnormal transfers that bypassed risk checks. Gracy emphasized that no private keys were leaked and cold wallets remained unaffected; specific technical details will be fully disclosed in an official security report. Gracy noted that the verified losses from this incident are covered by the protection fund, so user funds remain fully secure. The platform holds over $1.4 billion in its own capital, including approximately $464 million in user protection funds. The platform will continue to uphold the security commitment it made when establishing the protection fund in 2022, and plans to replenish the fund to its $300 million baseline within a week. “The protection fund is not a slogan, but an important mechanism that provides tangible protection for users during extreme security incidents,” Gracy said. Facing sudden security challenges, the platform’s comprehensive strength and ability to take proactive responsibility are key metrics for measuring its risk response capability and long-term credibility. Bitget will continue to uphold its long-term commitment to prioritizing user interests.

Relevant content

Bitget has launched the "Peer Program", under which 30% of net trading fees from non-institutional users will be returned as bonuses over the next month.

Bitget CEO Gracy Chen introduced the "Peer Program" during a live stream titled "Bitget Security Incident Review". The program is divided into two parts: For non-VIP users, over the next month, Bitget will return 30% of the net handling fees retained by non-institutional users as exclusive user bonuses, while also rolling out VIP-related benefits. For Pro clients and market makers, an institutional version of the Peer Program will be launched, providing rebates on handling fees and commissions, and extending the Pro level protection period to November 30.

8 minutes ago

Analysis: Bitcoin's short-term holders' MVRV ratio rises to its highest level since November 2025, suggesting imminent profit-taking.

CryptoQuant analyst Darkfost reports that Bitcoin’s Short-Term Holder (STH) Market Value to Realized Value (MVRV) has reached its highest level since November 2025. Momentum accelerated sharply between August and September, mainly driven by the price breaking through the STH cost benchmark of roughly $73,100. Current data shows the STH MVRV stands at 1.15, meaning short-term holders hold an average unrealized profit of around 15% and have returned above the realized value threshold. Darkfost emphasized this level requires close monitoring, as it may prompt short-term holders to start taking profits.

8 minutes ago

Xie Jiayin: Has completely ruled out the possibility of private key leakage or internal wrongdoing.

Xie Jiayin, head of Bitget’s Chinese-language region, stated during the "Bitget Incident Review" live stream that attackers exploited a vulnerability in a third-party security product to steal internal network access credentials, forged withdrawal instructions for the wallet system, tricked the wallet into executing abnormal transfers that passed risk checks, and successfully completed the attack. The attackers did not use common viruses or malware; instead, they disguised their actions and covered their tracks by leveraging real identities and routine maintenance operations throughout, making this a relatively sophisticated targeted attack. Following the incident, Bitget has fully ruled out both the possibility of private key leaks and internal misconduct. The hackers exploited the third-party security product’s vulnerability to steal Bitget’s internal credentials and impersonated legitimate identities.

8 minutes ago

US pre-market Nasdaq 100 futures fell 0.91%, with semiconductor, storage, optical communication and crypto-related stocks declining across the board.

According to BIT (bit.com) market data, ahead of U.S. stock market opening, Nasdaq 100 futures fell 0.91%, Dow Jones futures dropped 0.21%, and S&P 500 futures declined 0.4%. Semiconductor, storage, and optical communication sectors, along with crypto-related stocks, all saw widespread declines. Semiconductor and storage stocks were broadly lower: Seagate Technology (STX) down 2.60%; Western Digital (WDC) down 2.52%; SanDisk (SNDK) down 3.35%; Micron Technology (MU) down 2.15%; NVIDIA (NVDA) down 0.81%; Intel (INTC) down 3.16%; Advanced Micro Devices (AMD) down 2.48%. Crypto-related stocks also fell: Strategy (MSTR) down 2.46%; Coinbase (COIN) down 2.05%; Circle (CRCL) down 3.27%; BitMine Immersion (BMNR) down 3.12%; SharpLink Gaming (SBET) down 2.39%. Optical communication stocks posted declines as well: Marvell Technology (MRVL) down 3.02%; AAOI (Applied Optoelectronics) down 2.61%; LITE (Lumentum Holdings) down 2.50%; COHR (Coherent Corp.) down 3.15%; CIEN (Ciena Corporation) down 1.93%; FN (Fabrinet) down 2.01%; AXTI (AXT Inc.) down 4.00%.

8 minutes ago

Xie Jiayin: Bitget has completed a full fix of the vulnerability and implemented four rectification measures.

Xie Jiayin, Head of Bitget’s Chinese-speaking Region, said during the "Bitget Incident Review" live stream that the exchange has completed a full fix for the vulnerability and implemented the following rectification measures: First, isolate affected systems: relevant servers have been network-isolated to contain the attack spread, with evidence preserved for tracing. Second, reset internal credentials and tighten high-sensitivity permissions: all internal login credentials have been invalidated and reissued, the credentials stolen by attackers are now invalid, high-sensitivity permissions have been fully revoked and re-segmented, and critical operations require multi-person approval. Third, notify relevant third-party security vendors of the vulnerability details and assist in analysis and repair; relevant functions were suspended before the fix was completed. Fourth, all subsequent withdrawals will require independent verification. The incident was triggered by attackers exploiting a vulnerability in a third-party security product to steal Bitget’s internal network permission credentials and forge withdrawal instructions to the wallet system. Bitget immediately contacted the vendor, shared the incident details, and assisted in the repair. Currently, the incident is fully under control, no new unauthorized transfers have been detected, all affected systems are isolated, and all vulnerabilities have been patched. Each blockchain network will still need to pass multiple core verifications before resuming withdrawals.

8 minutes ago

Following the opening of Bitget’s BTC withdrawal portal, 2,042.28 Bitcoin, valued at approximately $169 million, have been transferred out.

On-chain analyst Ai Yi (Twitter handle @ai_9684xtpa) reported that following Bitget’s opening of its BTC withdrawal portal, the exchange’s total protection fund of 5,500 BTC has been flowing in batches into its hot wallet to facilitate withdrawals. As of now, 2,042.28 BTC (valued at roughly $169 million) has been transferred, with 3,457.72 BTC remaining on-chain. However, since these tokens were moved in advance, the analyst emphasized that this figure does not represent the actual amount of user withdrawals.

8 minutes ago

Popular tokens

BitcoinEthereumHyperliquidSolanaTRONBNBTetherAaveXRPPepeFartcoinOndoJupiterUniswapBonkPendleEthenaArbitrumAvalancheLidoChainlinkPolygonDogecoinCardano