Bitget Security Incident: Stolen Assets Finalized at $387.5M, Withdrawal Plan Forthcoming

Following the security incident on September 24 (UTC), Bitget CEO Gray Chen provided a detailed update on September 25. Based on conclusive on-chain tracing, the total assets received by the attacker's address have been confirmed at $387.5 million. This figure represents an adjustment from the initially reported $351.6 million.

Reason for the Revised Figure

Gray Chen clarified that the revision does not indicate newly discovered stolen funds. Instead, it accounts for the complete asset data from the Zcash and TRON blockchains, which was not fully included in the preliminary assessment. No unauthorized transfers have been detected since the incident, and the situation remains under control.

Asset Recovery and User Protection Initiatives

To maximize fund recovery, Bitget has promptly launched a Recovery Bounty Program. The program offers dual incentives:

  • A 5% bounty for parties who voluntarily assist in freezing the attacker's funds.
  • A 5% bounty for parties who successfully assist in recovering the stolen assets.

To aid the investigation, the platform has deployed a real-time tracking dashboard, an information submission portal, and made the attacker's address API available. Reports can also be submitted through an independent bounty platform established by an industry partner.

Next Steps: Preparing for Withdrawal Restoration

Gray Chen stated that the team's current priority is fully preparing to restore normal withdrawal services for users. The specific plan and timeline for resuming withdrawals will be officially announced before 04:00 UTC on September 26.

This update aims to provide transparent communication, demonstrating the platform's active and structured approach to handling the incident's aftermath, with the primary goal of safeguarding user assets.