FILTERED RESULTS
FILTERS
MCap $2.9T +0.1%24h Vol $107.8B -31%Fear & Greed 71/100Alts Index 51/100
BTC.D 58.4% +0.1%Stable.D 9.2% 0%ETH.D 11.4% 0%Others.D 21.0% -0.1%
SOON$0.4969+23.7%•STONK$0.2919+22.27%•NIGHT$0.0396+22.25%•STX$0.3798+19.24%•CAP$0.0685+14.86%•TRAC$0.4219+11.72%•MON$0.0302+11.24%•WLD$0.5393+10.3%•QNT$285.76+9.78%•PROS$0.7374+9.37%•
AI$0.1811-13.33%•TIBBIR$0.2944-12.76%•BTW$1.158-11.27%•BR$0.7593-10.7%•LIT$4.019-9.82%•2Z$0.0595-8.99%•BP$1.207-8.52%•GRASS$0.6951-7.95%•SKY$0.0776-5.53%•MARSCOIN$0.1361-5.08%•
•
·
·
FILTERED RESULTS
Robinhood to Launch Crypto Perpetual Futures in the US
Brazil’s largest energy giant tests Cardano to fix carbon double-counting
Swiss National Bank Raises Concerns Over Stablecoins' Impact on Monetary Policy
Animoca Brands’ Moca Chain Takes Aim at Digital Identity
Crypto and TradFi Are Converging Faster Than Their Business…
Trump calls for Jerome Powell to resign from the Fed Board over the...
Standard Chartered says Ethena’s ENA could crush Bitcoin and Ethereum returns by 2028
Bitcoin Approaches Positive September Close Amid Market Dynamics
Dogecoin Is Getting Apps as DogeOS Opens Its Public Testnet
Coinbase-Backed Base Gives Users More Control With Cobalt Upgrade
250,000,000 $USDC (250,044,375 USD) minted at USDC Treasury...
U.S. Treasury Department Sanctions Tren de Aragua ATM Network and Identifies Tron Addresses
1,000 $BTC (83,746,919 USD) transferred from Coinbase Institutional to unknown wallet...
FBI Tells Its Employees to Assume Hackers Have Their Personal Data
Mellow to Wind Down Autopilot as Aerodrome Prepares for Aero Launch
Bitcoin Bull Market Shows Signs of Cooling: CryptoQuant
Bitget’s hackers turn to Zcash after $50 million laundering route gets blocked
Standard Chartered sees Ethena’s USDe reaching $40B, ENA hitting $2
Bitcoin Price Holds $83K as Bitfinex Says Leverage Has Cleared
Coinbase-Backed Crypto Group Reveals Midterm Endorsements After Clarity Act Collapse
Base Launches Cobalt Upgrade With New Trading and Tokenization Tools
U.S. Treasury Sanctions 10 TdA-Linked Targets Over ATM Jackpotting
Binance Pay Enables Crypto Spending at PayPay Merchants…
Monarch Wallet Review: How the Multi-Asset Crypto App…
Top Trending Coins (Today) 1. QNT 2. TRUMP 3. EDEL 4. NEAR 5. BP 6. PENGU 7. LIT 8. HYPE 9. BTC...
CFTC Submits Prediction Market Rules to White House for Review
Coinbase's AI Payment Protocol Raises Tax Compliance Concerns in the U.S.
Google releases Gemini 4 Argon, first available to U.S. government and cyber defenders
1,333 $BTC (111,494,358 USD) transferred from unknown wallet to unknown wallet...
Micron beats Q4 estimates with $54.23B revenue and $33.42 adjusted EPS...
US stocks close mixed: MARA down 5.79%, Riot Platforms (RIOT) down 5.31%
What’s Next for Crypto? Experts Weigh in on Regulation, AI, and Litigation
Bitcoin’s Biggest Holders Ramp Up Buying While Retail Traders Remain Flat
Bitcoin Fell After Four US Midterms: Could 2026 Break the Pattern?
Drift Recovers $9.2M of $295M Stolen Funds as Recovery Efforts Continue
Kalshi’s $40 billion growth story hits tough questions about its trading volume
Uniswap Labs Develops OUSD Rewards Hook for Liquidity Providers
133,297 $ETH (356,662,580 USD) transferred from unknown wallet to unknown...
Bitget Hacker Turns to Zcash Privacy Pool After Near Rejects $50M in Swaps
Does America.gov Know Bitcoin Policy as Well as ChatGPT and Claude? We Asked
Cardano, Petrobras Test Blockchain for Renewable Fuel Tracking in Brazil
U.S. Senator Daines Proposes New Crypto Tax Legislation
UK Financial Conduct Authority Opens Crypto Authorization Window Ahead of New Regulations
TRON Releases Mandatory GreatVoyage-v4.8.2.3 Node Upgrade
Sen. Daines Unveils Crypto Tax Bill With Stablecoin Payment Exemption
Cardano Entered Brazil’s Oil Sector: Petrobras Tests Blockchain for Fuel
Aerodrome and Velodrome Merge to Form Aero, Targeting $63 Billion Market
Bitwise's Matt Hougan took a stab at answering a paradoxical crypto question: Why did
Bloomberg Terminal Introduces Stablecoin Data Dashboard
OpenAI and Synopsys partner to develop chip design AI model GPT-Synopsys
Bitget Restored Its Protection Fund to More Than $300M
🏴 Robinhood Wants Everything
US Government's New AI Chatbot Has a Weird Minecraft Secret
Crypto advocacy group announces picks for US Congress as midterms loom
Base launches Cobalt upgrade with conditional transactions and new B20 asset functions
CBS News Partners with Kalshi for Enhanced Midterm Election Coverage
Visa and Mastercard Join $1 Billion Bet on Stripe-Backed OUSD
Base completes Cobalt upgrade, adds new tools for tokenized assets
Circle Launches Developer Kits for Stablecoin Transactions on Arc Blockchain
Base Introduces Cobalt Upgrade with Conditional Transactions and Seize Functionality
Arc Introduces USDC Funding and Morpho Lending Solutions for Applications
837 $BTC (70,295,838 USD) transferred from unknown wallet to #Coinbase...
4 Assets That Deserve Extra Attention in Your Estate Plan
Zcash (ZEC) Gains 1,000% and Still Has Room to Grow, Grayscale Research Says
Aave’s $50 million lending plan could lose money without a single default
Solana Company $HSDT priced a $15 million stock offering with warrants, selling
DogeOS launches public testnet for a Dogecoin ZK-rollup with EVM...
Chainlink Introduces Fulcrum for Cross-Chain Institutional Buybacks
Ondo Finance Achieves Record $1.26 Billion in Tokenized Stocks' Total Value Locked
Bitget Hacker Used Custom Withdrawal Tool to Steal $388M…
How Did the Attacker Get Inside Bitget’s Wallet Infrastructure?
SlowMist said the earliest malicious activity it has identified occurred on Aug. 31, when the attacker exploited a zero-day vulnerability affecting Product A. The attacker retrieved a database password from an environment variable and used a hidden script to access the product’s database.Similar activity was subsequently detected on two additional nodes on Sept. 23 and Sept. 25, according to the report, whose timestamps use UTC+8.The investigation also uncovered activity involving Product B. On Sept. 25, the attacker allegedly entered its management platform using the identity of an internal employee and attempted to inject system commands, change server configurations and upload malicious program files.The findings add detail to Bitget’s earlier explanation that the attacker obtained high-level internal credentials and issued fraudulent withdrawal instructions without stealing private keys. FinanceFeeds previously reported that the breach compromised Bitget’s transaction-signing trust chain rather than its private keys.Investor Takeaway
The forensic timeline shifts attention from private-key security toward the software and credentials surrounding the signing process. An exchange can keep its cryptographic keys intact while compromised infrastructure feeds apparently valid instructions into an authorized withdrawal system.
What Did the Custom Withdrawal Tool Actually Do?
SlowMist said investigators recovered a deleted and highly customized program designed specifically to interfere with the wallet system’s withdrawal process.The tool could forge risk-control parameters, construct withdrawal requests and invoke the withdrawal process. The attacker also attempted to modify withdrawal records directly in the wallet database and initiate additional Bitcoin withdrawals.Two fabricated BTC withdrawal orders entered processing but returned errors, according to SlowMist. The attacker then reviewed system logs, checked the status of the orders and made additional attempts.Onchain verification placed the earliest confirmed attacker-controlled receipt at 2:31 a.m. UTC+8 on Sept. 25, when an address received 93 TRX. Eleven seconds later, another transfer delivered 0.84 ETH on Ethereum. SlowMist’s compiled transaction sequence subsequently stretched for roughly two hours and 52 minutes across multiple blockchains.Bitget eventually calculated that approximately $387.5 million had been transferred to attacker-controlled addresses. The exchange has said cold wallets were unaffected and private-key compromise has been ruled out.Investor Takeaway
The recovered tool suggests the attacker was not simply exploiting a single withdrawal endpoint. The ability to manipulate risk parameters and generate requests inside the wallet workflow points to a deeper operational-security problem in which trusted internal systems became part of the attack path.
Why Does the Aug. 31 Activity Matter?
The three-week gap between the earliest known compromise and the eventual asset drain is important because it suggests the attacker had time to study Bitget’s systems before executing the large withdrawals.That period may help investigators determine how the attacker moved between Product A, Product B and the wallet environment, which SlowMist said remains under investigation. It may also clarify whether the earlier access was used for reconnaissance, credential collection or preparation of the custom withdrawal tooling.FinanceFeeds previously reported that the attacker appeared to conduct small test transfers before the main $388 million drain, consistent with an operation that sought to understand whether fraudulent transactions could pass through Bitget’s controls.How Much of the Stolen Crypto Can Still Be Recovered?
Bitget’s recovery effort remains active, but the stolen assets are continuing to move. NEAR Intents said its systems blocked attempts to route more than $50 million linked to the breach and froze another roughly $503,000 that had entered its infrastructure. Chainflip also said a broker rejected an attempted transaction involving attacker-linked funds.Other assets have become harder to trace. On Wednesday, attacker-linked wallets moved about $3.9 million of stolen Zcash into the network’s shielded pool.Bitget has meanwhile continued restoring operations. Its latest proof-of-reserves snapshot, taken Sept. 29, showed a total reserve ratio of 131%, while the company said Wednesday that it had replenished its Protection Fund to more than $300 million. Withdrawals are being restored in stages, with remaining tokens, fiat withdrawals and peer-to-peer services scheduled to return by Oct. 2.Investor Takeaway
The operational recovery and the asset-recovery process are separate issues. Bitget can restore withdrawals and maintain reserve coverage even if much of the stolen crypto remains unrecovered; the longer-term financial impact will depend on how much can ultimately be frozen or returned.
Source: FinanceFeeds