Press Enter to search · ESC to close

Crypto

Bitget Hack Probe Deepens as Fresh 457.9 ETH Traced to Attacker-Linked Wallet

Lookonchain has traced roughly 457.9 ETH into a wallet linked to the Bitget exploit, after a 0x4885 address withdrew 257.6 ETH and 545,000 USDT from Binance. The stablecoin-to-ETH conversion and consolidation pattern suggests the attacker is still actively laundering proceeds, raising fresh questions for exchange compliance teams.

New On-Chain Trail Points to Renewed Movement in Bitget Exploit Funds

Blockchain analytics firm Lookonchain has flagged a fresh cluster of transactions tied to the Bitget exchange exploit, after a wallet beginning with 0x4885 withdrew 257.6 ETH (roughly $692,000) and 545,000 USDT from Binance about 11 hours before the alert. The USDT was subsequently swapped into ETH, and approximately 457.9 ETH was routed into an address already associated with the original Bitget attacker. The pattern — stablecoin conversion followed by consolidation into a known exploit wallet — is a familiar laundering sequence in the post-hack playbook.

Why the Movement Matters

Exchange breaches are no longer isolated security incidents; they are multi-month on-chain investigations. The fact that funds are still being shuffled suggests the attacker or an affiliate retains control of a meaningful portion of the proceeds and is actively trying to obscure provenance. Converting USDT to ETH before consolidation is a deliberate step: ETH is harder to freeze at the issuer level than a centralized stablecoin, and it can be pushed through mixers, bridges, or privacy pools with fewer compliance tripwires.

  • Stablecoin-to-ETH conversion reduces the risk of issuer-level blacklisting that has become routine for Tether and Circle.
  • Wallet consolidation into a known attacker address signals either operational carelessness or deliberate taunting of investigators.
  • Binance as a withdrawal venue raises fresh questions about KYC and withdrawal monitoring for high-risk flows.

Industry Implications

The episode underscores how centralised exchanges remain the choke point in crypto crime. Even when stolen assets move across decentralised rails, they typically touch a centralised venue at some point — for cash-out, for conversion, or for layering. That makes exchange compliance teams, not just blockchains, the decisive actors in recovery. It also strengthens the case for real-time cross-exchange threat intelligence sharing, something the industry has discussed for years but implemented only patchily.

For Bitget, the reputational stakes are considerable. Users increasingly judge exchanges not only on whether they are breached, but on how transparent and aggressive they are in tracing and recovering funds afterward. Publishing regular on-chain updates and cooperating visibly with analytics firms is now table stakes.

What to Watch Next

Investigators will be watching whether the 0x4885 cluster is linked to other known exploit wallets, whether any of the ETH is bridged to other chains, and whether Binance or other venues freeze related accounts. If the funds sit idle, it may indicate the attacker is waiting for market conditions or legal pressure to ease. If they move quickly through mixers, expect another round of public tracing and, potentially, law enforcement action.

The broader lesson is that crypto forensics has matured into a permanent, public discipline — one where every consolidation, swap, and bridge hop is visible, and where the window for laundering stolen assets keeps narrowing.

View original

Share
Risk notice This site provides news and information on the crypto, blockchain and Web3 industry for reference only and does not constitute investment advice or any promise of returns. Virtual currency-related activities are illegal financial activities in mainland China; digital asset prices are highly volatile; use at your own risk. This site does not provide trading, token issuance or related referral services.

Related Reading

Latest News

TREE NEWS share card
Long-press image above → Save to Photos / Share
Pitch us Feedback