Losses exceed $48 million, funds tracking of the theft incident at the Turkish exchange BTCTurk.

robot
Abstract generation in progress

Recently, the crypto assets exchange BTCTurk announced that it was attacked by hackers, with over $48 million flowing out abnormally from multiple on-chain hot wallets. The Beosin security team analyzed the incident and tracked the funds, and shared the results as follows:

The hot wallet addresses where funds have been found to be transferred are as follows:

0xde2faca4bbc0aca08ff04d387c39b6f6325bf82a

0x2cea0297bfb1b55ff37126b677d78e2b1fd2e856

0xb5a46bc8b76fd2825aeb43db9c9e89e89158ecde

Involves Bitcoin, Ethereum (ETH), Avalanche (AVAX), Arbitrum (ARB), Base (BASE), Optimism (OP), and Polygon (POL) and other chains.

The following relevant hacker intermediary addresses have been detected:

0xa041feb3a8297c5689fee180083164a061a17fd6

0xb4b537626e21df5386cf167d1e654b38785056cc

0x7d91d1ebeba91257733a523409125aedac5d8b6e

The hacker's deposit address is as follows:

0x0fe41fe8786329fb6bd8f2baa73aa55e770f0951

0x95ab53305bc71d0e6e2d46f2e62690599cbc87fc

0xddfa0884f32d0d210597a996060fbdb5b068b0ea

bc1q3xgyvmfk6mw6zvhjklsw7v8wl2dk0xtm35ulut

Using Beosin Trace tool to trace the stolen funds, the following flow chart of the main stolen funds on the EVM chain and Bitcoin chain can be obtained:

Beosin Trace EVM on-chain fund analysis chart

Beosin Trace Bitcoin on-chain fund analysis chart

Currently, the reason for the attack on BTCTurk's Hot Wallet has not been disclosed. The internal operational security of the exchange, security of the signing devices, management of the mnemonic phrases, and the security of the signing environment all need to be investigated. Similar security incidents at exchanges have occurred multiple times in the past.

The security of exchanges remains a significant challenge in the Web3 ecosystem, requiring continuous efforts and collaboration from exchanges, security companies, regulatory and law enforcement agencies. Beosin Trace has added the hacker-related addresses from this incident to the blacklist and will continue to track them.

View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
0/400
No comments
Trade Crypto Anywhere Anytime
qrCode
Scan to download Gate App
Community
English
  • 简体中文
  • English
  • Tiếng Việt
  • 繁體中文
  • Español
  • Русский
  • Français (Afrique)
  • Português (Portugal)
  • Bahasa Indonesia
  • 日本語
  • بالعربية
  • Українська
  • Português (Brasil)