Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnWeb3SquareMore
Trade
Spot
Buy and sell crypto with ease
Margin
Amplify your capital and maximize fund efficiency
Onchain
Going Onchain, without going Onchain!
Convert & block trade
Convert crypto with one click and zero fees
Explore
Launchhub
Gain the edge early and start winning
Copy
Copy elite trader with one click
Bots
Simple, fast, and reliable AI trading bot
Trade
USDT-M Futures
Futures settled in USDT
USDC-M Futures
Futures settled in USDC
Coin-M Futures
Futures settled in cryptocurrencies
Explore
Futures guide
A beginner-to-advanced journey in futures trading
Futures promotions
Generous rewards await
Overview
A variety of products to grow your assets
Simple Earn
Deposit and withdraw anytime to earn flexible returns with zero risk
On-chain Earn
Earn profits daily without risking principal
Structured Earn
Robust financial innovation to navigate market swings
VIP and Wealth Management
Premium services for smart wealth management
Loans
Flexible borrowing with high fund security
SlowMist Cosine: GMGN hackers stole user funds by withdrawing from the Pixiu trading platform, making a profit of over $700,000

SlowMist Cosine: GMGN hackers stole user funds by withdrawing from the Pixiu trading platform, making a profit of over $700,000

CointimeCointime2025/10/28 22:15
By:Cointime

 SlowMist Cosine posted on X platform, saying: "After reviewing the dozens of stolen intelligence reports related to GMGN submitted to us, the commonality is: users' private keys were not leaked, but SOL BNB were all bought into the Pixiu pool (meaning they can only be bought and not sold). Hackers mainly took away users' funds by withdrawing from the Pixiu pool, making profits of over 700,000 USD. The cause of this situation (not private key leakage) is probably a more advanced phishing method. Since GMGN has already fixed the related issues, it is not easy to reproduce. It is speculated to be related to the GMGN account mode. Users visit phishing websites, where the phishing websites obtain the user's GMGN account mode login signature information, such as access_token and refresh_token values, take over the user's account permissions, but without the user's 2FA, they cannot directly export private keys or withdraw funds. Therefore, they use the Pixiu pool to achieve "cross-trading" attacks on user funds, indirectly stealing user assets."

0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

Thai Police Capture Hacker, Retrieve $7.64 Million in Landmark Cryptocurrency Law Enforcement Action

- Thai police arrested a hacker who exploited a vulnerability in Yala's Bitcoin-native platform, stealing $7.64 million in digital assets before most funds were recovered. - The breach caused Yala's stablecoin YU to temporarily lose its dollar peg, highlighting DeFi security risks as innovation outpaces safeguards. - Yala resolved user claims with recovered assets, while experts praised the arrest as a rare enforcement success showing law enforcement's growing crypto-crime capabilities. - The case undersco

Bitget-RWA2025/10/29 12:28
Thai Police Capture Hacker, Retrieve $7.64 Million in Landmark Cryptocurrency Law Enforcement Action

Blockchain and Finance Unite: Real-Time Settlement Transforms Market Dynamics

- Ironlight Markets, a FINRA-registered ATS, became the first U.S. entity to enable atomic onchain settlement for both traditional and tokenized securities. - The platform clears trades in under 20 microseconds, targeting institutional participants in private credit and venture capital with real-time compliance. - Its atomic settlement model eliminates intermediaries, positioning it as the sole U.S. platform offering instant, secure blockchain-based security settlements. - Ironlight plans to expand through

Bitget-RWA2025/10/29 12:28
Blockchain and Finance Unite: Real-Time Settlement Transforms Market Dynamics

Ethereum Updates: The Endurance of Ethereum & Chainlink Compared to BlockDAG's Scalability Strategy

- Ethereum and Chainlink show resilience amid crypto volatility, driven by institutional demand and whale accumulation. - BlockDAG's hybrid blockchain claims 15,000 TPS, merging Bitcoin security with DAG scalability to challenge market leaders. - XRP ETF growth and $9.9B futures interest highlight institutional confidence, while Ethereum's ETF net inflows reinforce DeFi dominance. - Technical analyses reveal diverging trajectories: Ethereum's bullish setup vs. Chainlink's bearish patterns and BlockDAG's un

Bitget-RWA2025/10/29 12:28
Ethereum Updates: The Endurance of Ethereum & Chainlink Compared to BlockDAG's Scalability Strategy

BNB News Update: x402b Connects Decentralized Transactions with Corporate Compliance, Reaches $810 Million Market Value

- x402b protocol, an upgraded web3 payment standard by Pieverse, surged to $810M market cap in 24 hours on BNB Chain. - Protocol introduces gasless EIP-3009 transactions and auditable receipts via BNB Greenfield, addressing enterprise adoption barriers. - BNB Chain's DAAs reached 2.4M in Sept 2025, outpacing Ethereum's 3M, while Pieverse processes 500K+ weekly transactions. - UK FCA's 45% crypto AML approval and iDenfy's compliance tools reinforce regulatory readiness for protocols like x402b. - Pieverse p

Bitget-RWA2025/10/29 12:14
BNB News Update: x402b Connects Decentralized Transactions with Corporate Compliance, Reaches $810 Million Market Value