Bitget Resumes Bitcoin Withdrawals After $387.5 Million Crypto Theft
Cryptocurrency exchange Bitget has resumed Bitcoin withdrawals after suspending them last week in response to a security breach that the company attributed to suspected North Korean hackers.
Bitget initially reported that attackers stole more than $350 million. The exchange later updated its estimate to $387.5 million based on additional on-chain tracing and transaction classification.
Bitget withdrawal restoration schedule
Bitget said it is addressing the security vulnerabilities exploited in the incident and will restore withdrawals for other supported assets and networks as soon as possible.
The company provided the following schedule:
- Bitcoin: Withdrawals have resumed.
- Ethereum: Withdrawals through Ethereum, BSC, Arbitrum, Base, and Optimism are scheduled to resume on September 29 at 8:00 UTC.
- USDT: Withdrawals through Ethereum, BSC, Solana, and Tron are scheduled to resume on September 30 at 8:00 UTC.
- Other tokens, fiat, and P2P assets: Withdrawals are scheduled to resume on October 2 at 8:00 UTC.
Bitget said the temporary suspension of withdrawals was a security measure and was not related to the availability of user assets. The company stated that user account balances would not be affected and that the financial impact of the platform-wide incident would be covered by its protection fund. Bitget said in a statement.
“The incident remains contained and no further fraudulent transfers are possible. User funds will not be affected through this process. Transactions and deposits will continue to work,” the company added.
Attack affected multiple blockchain networks
Bitget suspended all withdrawals on Thursday after its security systems detected multiple fraudulent transfers from a limited number of cryptocurrency wallets. The exchange said attackers initially stole $351.6 million from its hot and warm wallets.
Bitget CEO Gracie Chen said the incident involved the Ethereum, XRP Ledger, Arbitrum, Avalanche, Optimism, BSC, and Base networks. Affected assets included ETH, XRP, BNB, AVAX, USDT, USDC, and other tokens.
Citing on-chain analysis and IP behavior patterns, Chen blamed the attack on North Korean hackers. She said the attackers compromised critical backend systems within Bitget’s wallet infrastructure, used those systems to spoof transaction data, and triggered the exchange’s authorization process to move funds from compromised hot and warm wallets.
Bitget launches recovery bounty program
On Friday, Bitget updated the amount stolen in the attack to $387.5 million. According to the exchange’s latest update, the funds were forwarded to an address controlled by the attacker. The reported figure is based on the latest on-chain tracking and transaction classification.
The company has also launched a recovery reward program offering a 5% bounty to help recover or freeze the stolen funds.
North Korean hackers linked to major crypto thefts
North Korean state-sponsored threat groups have been linked to numerous large-scale cryptocurrency thefts over the years. These include the largest cryptocurrency heist in history, in which attackers stole $1.5 billion from Bybit’s ETH cold wallet.
British blockchain analysis firm Elliptic estimated in February 2025 that North Korean hackers had “stolen more than $6 billion in crypto assets since 2017.”
Join Mikko Hypponen and security leaders from the NFL, Chanel, and Atlassian for a 2-hour digital summit about what will change with AI speed attacks, what defenders should stop doing, and how to verify, decide, correct, and revalidate at machine speed.
Source: www.bleepingcomputer.com



