Ethical Innovations: Embracing Ethics in Technology

Ethical Innovations: Embracing Ethics in Technology

Menu▾

Bitget Hacked: $388M Stolen as Funds Flow Through THORChain

On September 24, a major cryptocurrency exchange named Bitget experienced a security breach that compromised nearly $388 million in assets. The attack affected part of the exchange’s hot and warm wallet infrastructure, while its cold wallets remained secure. Bitget later revised the stolen amount from $351.6 million to $387.5 million after accounting for additional transfers involving Zcash and Tron.

Following the breach, Bitget suspended withdrawals across its platform. On Monday, the exchange resumed Bitcoin withdrawals on the Bitcoin network and the BNB Smart Chain. According to Bitget CEO Gracy Chen, Bitcoin was restored first because its withdrawal pipeline was the first to be completed. Ether withdrawals are scheduled to resume on Tuesday across Ethereum, BNB Smart Chain, Arbitrum, Base, and Optimism, followed by USDT on Wednesday across Ethereum, BNB Smart Chain, Solana, and Tron. Withdrawals for other assets and peer-to-peer services are set to return on Friday. The restoration schedule applies equally to all users, with no priority access for institutions, VIP customers, or Bitget employees.

The attacker has continued moving stolen funds through THORChain, a decentralized protocol used for swapping assets between blockchains. Blockchain analytics firm Lookonchain reported that the attacker was swapping Ether for Bitcoin through THORChain, while Arkham data showed ETH linked to the attacker flowing into THORChain vaults. Bitget CEO Gracy Chen has called on THORChain to refuse services to addresses connected to the attack. However, THORChain stated that its network halt is an emergency security mechanism affecting the entire protocol and is not a selective freeze of specific funds or individual swaps. Crypto author Anndy Lian noted that THORChain can halt trading, stop outbound transactions, or pause a connected chain, but these measures impact all users broadly. The protocol lacks a built-in address blacklist, limiting its ability to block specific addresses.

cointelegraph.com, (bitget), (chen), (zcash), (tron), (bitcoin), (bnb), (smart), (chain), (ether), (ethereum), (arbitrum), (base), (optimism), (usdt), (solana), (september), (security), (breach), (attack), (assets), (hot), (infrastructure), (cold), (suspended), (pipeline), (scheduled), (return), (friday), (users), (priority), (access), (institutions), (customers), (employees), (refuse), (services), (addresses), (emergency), (mechanism), (protocol), (specific), (funds), (individual), (trading), (stop), (transactions), (pause), (chain), (measures), (impact), (blacklist), (ability), (block)

Real Value Analysis

The article reports a major security breach at Bitget involving nearly $388 million in stolen assets, but it offers no actionable steps for a normal reader. It describes the breach, the suspension and resumption of withdrawals, and the movement of stolen funds through THORChain, but it never explains how a user can verify whether their own funds are affected, how to secure their accounts, or what to do if they suspect exposure. The only practical reference is a vague mention of Bitget’s withdrawal schedule, which is stated without context about how users can track updates, what documentation they might need, or how to respond if their specific assets are delayed. A reader cannot act on this information without already knowing how the exchange operates.

The educational depth is shallow. The article states the stolen amount and mentions hot and warm wallets versus cold wallets, but it does not explain how these wallet types differ, why one is more vulnerable than the other, or how blockchain transactions work in this context. It mentions THORChain and its network halt but does not clarify how decentralized protocols function, why halting affects all users, or what trade-offs exist between security and accessibility. The statistics are presented as raw figures without context about how the breach occurred, how the amount was calculated, or how similar incidents compare to past events. The reader learns that numbers exist but not what they mean or how they were produced.

Personal relevance is limited for most readers. The breach affects only Bitget users, and the practical consequences apply primarily to those who hold or trade assets on that specific platform. A person who does not use Bitget has no direct way to use this information for financial decisions, travel, or daily life. The article does not connect the findings to broader concerns about digital asset security, how to evaluate exchange safety, or how ordinary users can protect their own holdings. For someone outside the affected platform, the content remains a distant technical story.

The public service function is weak. The article does not warn readers about specific risks to their accounts, offer guidance on how to check security status, or provide emergency contact information. It does not explain how to report problems, how to respond to suspicious activity, or how to recover funds after a breach. Instead, it reads as a technical announcement designed to generate attention rather than to inform citizens about practical steps they can take.

There is no practical advice in the article. It does not give steps for securing digital assets, verifying account safety, or understanding how to respond to exchange breaches. The only guidance, following withdrawal schedules, is stated without verification methods, documentation requirements, or contingency planning. An ordinary reader cannot follow this advice without additional research that the article does not provide.

The long term impact is minimal. The article focuses on a specific breach and short term recovery efforts without offering lasting benefits for financial planning, digital security habits, or avoiding future problems. It does not help readers build habits for monitoring exchange security, understanding blockchain risks, or preparing for similar incidents in future.

Emotionally, the article leans toward creating concern without resolution. It frames the situation as a major threat to exchange security but does not offer constructive ways for readers to respond. The tone pushes readers toward passive worry rather than clarity or calm reflection, which does more harm than good.

Clickbait and ad driven language appear in the form of dramatic framing and sweeping claims. Phrases like "nearly $388 million" and "compromised" are stated without context, and the connection to THORChain serves more to amplify the story than to inform. The article overpromises certainty about complex technical systems without backing up its assertions.

The article misses many opportunities to teach or guide. It could have explained how to research exchange security features, compare platform safety records, or understand the difference between hot and cold storage. It could have suggested ways to stay informed through official channels or to ask critical questions about digital asset protection. None of these helpful directions are offered.

To add real value the article failed to provide, readers can start by treating exchange announcements as starting points rather than final answers. When encountering statements about security breaches or fund movements, ask who produced the information and whether independent sources confirm it. Compare how different news outlets or official exchange websites cover the same topic, and look for specific details rather than broad assertions. Before making any decisions based on exchange news, check official communication channels for verified information about account security and recovery procedures. Having a basic contingency plan, such as knowing how to contact support or how to secure assets during a breach, can make digital asset management safer and more effective.

When assessing any exchange announcement, begin by identifying the source and checking whether it has a track record of accuracy. Official exchange websites, established news organizations, and recognized blockchain analytics firms tend to provide more reliable information than social media posts or anonymous blogs. Take note of specific details such as dates, wallet addresses, and named officials, since these are easier to verify than general claims about impact or influence. If a report mentions a particular breach or statistic, look for corroborating coverage from at least two independent sources before treating it as fact. This habit protects against misinformation and helps you focus your attention on developments that are genuinely significant.

For personal decision making, consider how any new information aligns with your financial responsibilities and practical needs. A claim about exchange security may look alarming in a headline, but the actual steps to verify account safety are usually straightforward and available through official channels. Before acting on exchange related news, ask whether the information affects your assets, your security, or your financial situation. If it does not, treat it as background context rather than an urgent matter requiring immediate action.

If you manage digital assets, research official procedures in advance. Check your account security settings through the appropriate exchange website, note the deadlines for security updates, and keep contact information for support teams handy. Having a basic contingency plan, such as knowing how to freeze accounts or how to report suspicious activity, can make your digital asset management smoother and more effective.

Finally, remember that security incidents are temporary by nature. What feels urgent today may settle into routine tomorrow, and the most enduring security habits are usually those that reflect your own risk tolerance rather than fleeting technical hype. By staying grounded in your own responsibilities and practical needs, you can engage with exchange news as a form of informed participation without being swayed by every claim or statistic that crosses your path.

Bias analysis

The text uses strong words like "security breach" and "compromised" to make the reader feel scared about what happened to Bitget. These words push fear so people think the exchange is very unsafe. The writer does not say who did the attack, which hides who is really to blame. This makes the reader focus on the damage instead of the attacker. The strong words help Bitget look like the victim.

The text says "Bitget later revised the stolen amount from $351.6 million to $387.5 million" to show the problem is bigger than first thought. This makes the reader feel the attack was worse and more serious. The writer picks this number to push the idea that the loss is huge. This helps Bitget look like it is being honest and open. The big number makes the reader trust Bitget more.

The text says "Bitget suspended withdrawals across its platform" using passive voice. This hides who decided to stop the money. The writer does not say Bitget made the choice, so it sounds like something just happened. This makes the exchange look like it is not in control. The passive voice hides Bitget as the one stopping the service.

The text says "Bitcoin was restored first because its withdrawal pipeline was the first to be completed" to make the reader think the order is fair. This hides who picked the order and why. The writer uses this to push the idea that Bitget is organized and smart. The reason sounds neutral but hides the real choice. This makes the exchange look calm and in charge.

The text says "The restoration schedule applies equally to all users, with no priority access for institutions, VIP customers, or Bitget employees" to make the reader think everyone is treated the same. This hides if the exchange really follows this rule. The writer uses this to push trust in Bitget. The words sound fair but do not prove it. This makes the reader believe the exchange is honest.

The text says "The attacker has continued moving stolen funds through THORChain" to make the reader think the attacker is still active and dangerous. This pushes fear about THORChain. The writer picks this detail to make the protocol look bad. This hides that THORChain is just a tool. The words make the reader blame the protocol instead of the real attacker.

The text says "THORChain stated that its network halt is an emergency security mechanism affecting the entire protocol" to make the reader think the freeze is normal and safe. This hides that real users lose money because of it. The writer uses this to push trust in THORChain. The words sound technical but hide the harm. This makes the reader accept the freeze as good.

The text says "The protocol lacks a built-in address blacklist, limiting its ability to block specific addresses" to make the reader think THORChain is weak and helpless. This hides that the protocol chose to stay neutral. The writer picks this detail to push blame on the system. This makes the reader feel the protocol is broken. The words hide the real design choice.

The text says "Crypto author Anndy Lian noted that THORChain can halt trading, stop outbound transactions, or pause a connected chain" to make the reader think the protocol has full control. This hides that using these tools hurts all users. The writer uses this to push the idea that THORChain could stop the attack. The words make the reader think the protocol is at fault for not acting. This hides the real trade-off.

The text says "Bitget CEO Gracy Chen has called on THORChain to refuse services to addresses connected to the attack" to make the reader think Bitget is trying to fix the problem. This hides that THORChain cannot do this without hurting others. The writer uses this to push Bitget as the good guy. The words make the reader blame THORChain for not helping. This hides the real limits of the system.

Emotion Resonance Analysis

The text carries several emotions that shape how the reader feels about the events. Fear appears strongly when the breach is described as compromising nearly $388 million in assets, and when the attacker is shown continuing to move stolen funds through THORChain. The word “compromised” and the large dollar amount push the reader to feel that something serious and dangerous has happened. This fear makes the reader pay closer attention and worry about the safety of their own money. Pride shows up when Bitget explains that Bitcoin withdrawals were restored first because their pipeline was completed, and when the CEO says the restoration schedule treats all users equally. These statements make the exchange look organized and fair, which helps build trust. Relief comes through the plan to bring back withdrawals step by step, starting with Bitcoin and then moving to Ether and other assets. The reader feels that things are getting better and that the situation is under control. Anger appears when the attacker is described as still moving stolen funds, and when THORChain is said to lack a blacklist that could stop them. These details make the reader feel upset that the bad person is still free and that the system cannot stop them. Sadness is present in the loss of so much money and in the fact that normal users are affected by the network halt, even though they did nothing wrong. This sadness makes the reader feel sympathy for people who lost money or cannot get their funds back.

These emotions guide the reader’s reaction in clear ways. Fear and anger push the reader to feel worried and upset, which makes them more likely to believe that the problem is big and needs fixing. Pride and relief help the reader trust Bitget, because the exchange looks calm and fair while fixing things. Sadness makes the reader feel bad for the people hurt by the attack, which builds sympathy for the victims. Together, these feelings steer the reader to see Bitget as a victim trying to fix a bad situation, while also feeling concerned about how safe their own money might be.

The writer uses emotion to persuade by choosing words that sound stronger than neutral facts. Instead of saying “a hack happened,” the text says the breach “compromised” a huge amount of money, which sounds scarier. Repeating the idea that the schedule is fair for everyone, with no priority for anyone, makes the reader trust Bitget more. The writer also makes the situation sound more extreme by showing the attacker still moving funds, which keeps fear and anger alive. Comparing THORChain’s halt to an emergency safety tool makes the protocol look responsible, even though it hurts all users. These writing tools increase emotional impact by keeping the reader feeling worried, trusting, and upset at the same time, which helps shape the overall message about safety, fairness, and blame.

Cookie settings
X
This site uses cookies to offer you a better browsing experience.
You can accept them all, or choose the kinds of cookies you are happy to allow.
Privacy settings
Choose which cookies you wish to allow while you browse this website. Please note that some cookies cannot be turned off, because without them the website would not function.
Essential
To prevent spam this site uses Google Recaptcha in its contact forms.

This site may also use cookies for ecommerce and payment systems which are essential for the website to function properly.
Google Services
This site uses cookies from Google to access data such as the pages you visit and your IP address. Google services on this website may include:

- Google Maps
Data Driven
This site may use cookies to record visitor behavior, monitor ad conversions, and create audiences, including from:

- Google Analytics
- Google Ads conversion tracking
- Facebook (Meta Pixel)