DropsTab logo - blue line depicting the shape of a water drop with Christmas decoration
M. Cap: $2.88 T −0.24%24h Vol: $167.16 B 23.51%BTC: $83,678.00 0.04%ETH: $2,686.31 0.04%S&P 500: $7,657.44 −0.19%Gold: $4,157.20 −0.74%BTC Dominance: 58.40%

SlowMist stated: The Bitget hack began with a zero-day vulnerability discovered on August 31.

30 Sep, 2026byDropsTab
Join Our Socials

Hackers had been inside the exchange’s infrastructure for 25 days before they withdrew funds.

The zero-day vulnerability was in third-party security software—through it, the attackers obtained passwords from environment variables and high-level internal credentials.

Using these credentials, they gained access to the wallet database, falsified risk-control parameters, and employed a custom tool to manipulate withdrawals. Before the main theft, the attackers tested the risk controls with small transfers.

Bitget CEO Grace Chen stated that she is not optimistic about fully recovering the funds, citing the experience of the Bybit hack in 2025—when only a small portion of the stolen funds could be recovered.

Continue reading this article on source: x.com