:

BITGET LOSES $351.6M IN SUSPECTED NORTH KOREAN HACK

SECURITY DESK■ 1 MIN READ
FRI, SEP 25, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

Cryptocurrency exchange Bitget disclosed a breach of its hot and warm wallets, with hackers stealing $351.6 million. The attack is attributed to suspected North Korean threat actors.

Bitget confirmed the theft affected funds stored in its hot wallets (actively used for transactions) and warm wallets (semi-active reserves). The exchange has initiated recovery protocols and notified law enforcement and relevant authorities. Hot and warm wallets are more accessible than cold storage systems, making them more vulnerable to attacks. The breach underscores ongoing security challenges in the crypto sector despite industry investments in protective measures. Bitget operates as one of the larger cryptocurrency derivatives exchanges globally. The platform has committed to implementing enhanced security audits and wallet management procedures. Users have been advised to review account activity for unauthorized transactions. North Korean-linked hacking groups have targeted crypto exchanges repeatedly, with previous incidents resulting in billions in losses across the industry. The stolen funds may be moved through mixing services to obscure their origin.

■ SOURCES

► Bleeping Computer

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

A Kosovar national has pleaded guilty to operating Rydox, an illegal online marketplace that trafficked in stolen personal information, login credentials, and cybercrime tools. The admin faces up to 22 years in prison.

3H AGO— Industry Desk

Scammers are spoofing popular invitation platforms like Evite and Paperless Post to steal personal data. The deceptive emails are convincing enough that some recipients use them as opportunities to reconnect with old contacts.

3H AGO— Security Desk

A cross-site scripting (XSS) vulnerability in the ansi2html library exposed Sourcehut users to account takeover attacks through malicious build log output. The flaw allowed attackers to inject arbitrary code into rendered logs.

7H AGO— Industry Desk

Two developers independently demonstrated that Meta's Muse AI can be prompted to download and share its entire filesystem, including system files and internal documentation. The vulnerability reportedly requires minimal effort to exploit.

14H AGO— Industry Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.