North Korean Hackers Exploit Third-Party Vulnerability for $387.5M Bitget Heist
Bitget, a cryptocurrency exchange, has confirmed that a $387.5 million theft was caused by a zero-day vulnerability in third-party security products.
The attackers exploited this flaw to steal assets from hot and warm wallets across 11 blockchains, including Ethereum, XRP Ledger, Zcash, and others.
According to forensic evidence, the threat actors were North Korean. The breach occurred on September 25, with the earliest malicious activity detected on August 31.