Top

Hot Wallet Exploit Results in $23M Bitrue Loss

Web3 & Enterprise·April 19, 2023, 3:34 AM

Bitrue, a Singapore-based crypto exchange, has fallen prey to a $23 million hack due to a hot wallet exploit. The exchange has been forced to suspend all withdrawals until April 18, to provide an opportunity to conduct a thorough security review.

wallet with 20 USD bills in cash
©Pexels/Karolina Grabowska

 

Hot wallet vulnerability

Hot wallets are used by exchanges to store small amounts of cryptocurrencies for easy access. These wallets are connected to the internet and are therefore more vulnerable to attacks compared to cold wallets, which are stored offline. In the case of Bitrue, hackers were able to exploit the hot wallet and steal cryptocurrencies worth $23 million.

In a series of Twitter posts, the exchange outlined that the exploit occurred at 07:18 (UTC) on Friday. “We were able to address the matter quickly and prevented the further exploit of funds”, it went on to state.

The stolen digital assets include ETH, QNT, GALA, SHIB, HOT and MATIC. Bitrue outlined that the hot wallet funds account for only 5% of overall funds and that the rest of its wallets remain secure and have not been compromised.

Blockchain security firm PeckShield outlined how the funds were swapped and drained. A wallet it has labeled as “Bitrue drainer” swapped 173,000 QNT, 22.55 billion SHIB tokens, 46.4 million GALA and 310,000 MATIC for 8,540 ETH. The ether is now being held within the following address:

0x1819EDe3B8411EbC613F3603813Bf42aE09bA5A5

 

Reimbursing users

In response to the hack, Bitrue has promised to reimburse all affected users. However, the process could take some time.

The incident underscores the importance of taking precautions when storing cryptocurrencies on exchanges. Users should only keep a minimal amount of cryptocurrencies on an exchange and should not store more than they can afford to lose. Ongoing exploits, hacks and frauds exemplify the need for users to only use reputable platforms with a proven track record of security.

 

Doubling down on security

Bitrue has promised to improve its security measures to prevent similar incidents from occurring in the future. The exchange’s response to the hack has been lauded by many in the cryptocurrency community, who have praised the company’s transparency and commitment to reimbursing affected users.

The cryptocurrency community has been vocal in its criticism of exchanges that fail to prioritize security. The Bitrue hack is just the latest in a series of incidents that have highlighted the importance of maintaining security in the world of cryptocurrency.

It’s not the first security breach that the exchange has encountered. In 2019 Bitrue suffered a $4.7 million loss, with quantities of both XRP and Cardano (ADA) having been stolen. On that occasion, the exchange released tracking details relative to the stolen funds. Thanks to collaboration with Huobi, Bittrex and ChangeNOW, the funds and associated accounts were frozen.

According to data from CoinGecko, Bitrue trades an average of $1 billion in digital assets daily, with bitcoin and ether trading pairs accounting for a large proportion of that trading volume. The Bitrue hack has been a wake-up call for the cryptocurrency community and serves as a reminder of the ongoing risks associated with storing cryptocurrencies on exchanges.

More to Read
View All
Web3 & Enterprise·

Mar 24, 2025

DWF Labs establishes $250M fund for crypto project investment

United Arab Emirates (UAE)-based crypto market maker and Web3 investment firm DWF Labs has launched a $250 million fund for investment in mid to large-cap crypto projects. The company, which recently switched its administrative base from Singapore to Abu Dhabi, asserts that the fund will contribute towards the real-world adoption of Web3 technology. Photo by Towfiqu barbhuiya on UnsplashUp to $50M per projectTaking to X, DWF Labs Managing Partner Andrei Grachev announced the $250 million fund. He added:”Single ticket size ranged from 10 to 50M$ per a project. Cash + comprehensive support = Moon” In a statement published to the company’s website, DWF Labs outlined that the Liquid Fund initiative aligns with the firm’s commitment to contributing towards real growth within the broader crypto market. It stated: “The fund will provide strategic crypto venture capital and ecosystem support, ensuring sustainable growth for projects that drive real-world adoption and help promote change in the industry.” Initial dealsWork on the fund is already in motion. The company confirmed that it has already invested $11 million into promising blockchain projects as part of the initiative. Furthermore, DWF Labs confirmed that it is on the verge of signing two major investment deals with ticket values of $10 million and $25 million respectively. Beyond those deals, the firm asserts that other investment deals are in the pipeline. It clarified that the nature of the investment differs from traditional investments insofar as each deal incorporates a full-scale ecosystem growth strategy, devised specifically for the particular needs of each project. Grachev stated that the company believes “that strategic capital, coupled with hands-on ecosystem development, is the key to unlocking the next wave of growth for the industry.” Key aspects being considered by the company when formulating ecosystem growth strategies relative to targeted blockchain projects include public relations (PR) and brand amplification, a comprehensive go-to-market (GTM) strategy, lending markets development and a focus on stablecoin total value locked (TVL), with supporting liquidity and DeFi activity relative to layer-1 and layer-2 projects. Focus on ‘usability and discoverability’Grachev told Cointelegraph that emphasis will be placed on investing in blockchain projects that stand out in terms of “usability and discoverability.” He added that “good technology and utility alone isn’t sufficient,” asserting that "users first need to discover these projects, comprehend their value and develop trust." The DWF Labs managing partner suggested that strategic capital, together with hands-on ecosystem development, is paramount relative to efforts to realize the next iteration of growth within the crypto sector. Up until the end of last year, DWF Labs was headquartered in Singapore and still maintains a presence there. Besides Abu Dhabi, it also has a physical presence in Dubai. Hong Kong, Switzerland, South Korea and the British Virgin Islands (BVI) account for the locations of the remainder of its international offices. While Grachev and his firm can be assumed to have a positive broader view on the cryptocurrency sector given the launch of this latest fund, the DWF Labs managing partner recently pointed to a more immediate potentially bearish trend in the market.

news
Policy & Regulation·

Jul 08, 2025

Hong Kong moves towards stablecoin licenses as Shenzhen warns of stablecoin scams

The Chinese autonomous territory of Hong Kong is moving closer towards the issuance of stablecoin licenses, while 30 kilometers away on the Chinese mainland, the authorities in Shenzhen are warning against stablecoin investment scams. Hong Kong has set Aug. 1 as the effective date for its incoming Stablecoin Ordinance. Firms such as JD.com and Ant Group, an affiliate company of Alibaba Group, are understood to be interested in seeking licensing. Photo by ダモ リ on UnsplashSingle-digit license issuanceIn a recent interview with Chinese language newspaper Ming Pao, Christopher Hui, Hong Kong’s Secretary for Financial Services and the Treasury, outlined that stablecoin licenses are likely to be issued in 2025 following the passing of the Aug. 1 effective date, although he indicated that the number of licenses issued will remain in single digits. Hui hopes that stablecoins can address some of “the difficulties and pain points in the real economy,” like cross-border payments involving volatile local currencies. The official said that stablecoins can reduce transaction costs and facilitate cross-border transactions when based on fiat currencies and serving as effective payment tools. Yuan-based stablecoinsHui stated that the issuance of a stablecoin in Hong Kong which is based on the sovereign currency of another jurisdiction would only be permitted following “discussions with the relevant authorities."  It’s understood that the aforementioned Chinese e-commerce firms have been lobbying government for the approval of offshore yuan-based stablecoins. Last month, the Governor of the People’s Bank of China, Pan Gongsheng, acknowledged that stablecoins are disrupting global payments infrastructure. However, mainland China still has a mining and trading ban in place in relation to crypto, despite previous speculation that the country would open up to crypto. Hui expressed the view that where a stablecoin implicates another sovereign currency, there are additional risk factors that would have to be taken into account. Exploiting uninformed view of stablecoinsMeanwhile, 30 kilometers from Hong Kong, the authorities in Shenzhen have issued a warning to members of the public highlighting that scammers are exploiting the public’s uninformed view of stablecoins as a guise through which to lure victims into investment scams. They asserted that scammers are using new concepts, in this case stablecoins, for hype in an effort to peddle illegal fundraising, gambling, fraud and money laundering schemes.The Shenzhen Municipal Task Force Office for Preventing and Combating Illegal Financial Activities asked the public to report such schemes “engaged in illegal fundraising in the name of investing in stablecoins,” in order to enable the authorities to crack down on the illicit activity. The authorities added: "We urge the general public to remain rational in their investment decisions, avoid blindly trusting extravagant promises, develop a correct understanding of money and investment, stay alert to financial risks and avoid falling victim to scams." Last month, JD.com took to Weibo to warn the public that fraudulent JD stablecoins were being offered by scammers at a time when the company has yet to issue a stablecoin.

news
Policy & Regulation·

Oct 04, 2023

Coinone Hires Former FSS Official as Head Auditor

Coinone Hires Former FSS Official as Head AuditorKorean crypto exchange Coinone has established an audit department and recruited a former director general of the Financial Supervisory Service (FSS) as head auditor, according to local news outlet Moneytoday. This comes in an effort to establish a permanent internal control system and enhance communication with financial authorities.Photo by Hunters Race on UnsplashBringing in a seasoned expertAccording to industry sources on Wednesday, Coinone recently signed an audit contract with the official, who is now the highest-ranking auditor to be hired by a crypto exchange. It was reported that they had retired from the FSS just last week.The new auditor has an extensive career in financial regulation, starting as an investigator at the Bank of Korea’s Legal Affairs Office, and then holding multiple leadership positions at various departments in the FSS, such as the Bank Supervision Department and the Financial Consumer Protection Department. More recently from 2020 to 2021, they served as the Director of the General Affairs Department. During their comprehensive 30-year tenure at both establishments, they gained expertise in the supervision of financial enterprises.Coinone’s dedication to regulatory complianceThey are expected to start their duties at Coinone soon, shortly after the end of the recent Chuseok holiday. The decision to hire them was strongly influenced by its commitment to auditory regulation, the exchange said, emphasizing the need for internal control and preemptive risk management during the complex process of establishing itself as a formal business.Considering the continued tightening of regulations on cryptocurrencies in Korea, such as the enactment of the Virtual Asset User Protection Act and the introduction of guidelines for accounting and reporting on trading cryptocurrencies, Coinone also said that it is determined to actively engage with financial authorities through the new auditor.“This move reflects the intention to build practical expertise in audit services with FSS personnel who have professional knowledge in the area,” an industry insider commented.

news
Loading