• Dapps:16.23K
  • Blockchains:78
  • Active users:66.47M
  • 30d volume:$303.26B
  • 30d transactions:$879.24M

Incident Report: Attack on Bybit Cryptocurrency Exchange

user avatar

by Giorgi Kostiuk

3 hours ago


Cryptocurrency exchange Bybit has released a report on a major security incident. The investigation found that the attack resulted from vulnerabilities in Safe{Wallet}'s infrastructure.

Incident Details

Unauthorized activity was detected on February 21, 2025, when Bybit noticed suspicious transactions involving one of their Ethereum (ETH) cold wallets. According to the report, the breach took place during a multisig transaction from cold wallet to hot wallet via Safe{Wallet}.

Investigation Results

Sygnia and Verichains conducted the investigation and revealed several key points: malicious JavaScript was injected into the resource hosted on Safe{Wallet}'s AWS S3 bucket. Timestamp changes and public web history archives indicated a deliberate intervention.

Implications and Conclusions

Just two minutes after the attack was executed and publicly disclosed, new versions of compromised JavaScript files were uploaded to Safe{Wallet}'s infrastructure, removing the malicious code. Bybit stated that its own infrastructure was not compromised, but the incident highlighted vulnerabilities in third-party wallet solutions.

The case with Bybit underscores the importance of securing third-party crypto solutions. All identified vulnerabilities have been reported to minimize the risk of similar incidents.

0

Share

Other news

Grayscale Launches Polkadot ETF: Prospects and Challenges

Grayscale seeks SEC approval for a Polkadot ETF, highlighting benefits and challenges for investors.

user avatarGiorgi Kostiuk

a few seconds ago

Moonshot App: Your Gateway to the Memecoin Market

Discover how Moonshot distinguishes itself in the crypto landscape through unique features and partnerships.

user avatarGiorgi Kostiuk

a minute ago

MANTRA: RWAccelerator and the Future of Real Asset Tokenization

MANTRA unveils RWAccelerator with Google Cloud to support startups in real asset tokenization.

user avatarGiorgi Kostiuk

a minute ago

Venus Protocol: A Growing Force in DeFi

Venus Protocol shows significant growth in DeFi, offering users lending and borrowing on BNB Chain.

user avatarGiorgi Kostiuk

2 minutes ago

SEC Approves YLDS — The First Interest-Bearing Stablecoin

SEC approves YLDS, the first interest-bearing stablecoin as a registered financial instrument meeting U.S. regulations.

user avatarGiorgi Kostiuk

3 minutes ago

DEGA Agents: Overview of AI Assistants and Their Capabilities

DEGA Agents offer users new AI assistant capabilities with X integration. One account can create one assistant.

user avatarGiorgi Kostiuk

4 minutes ago

dapp expert logo
© 2020-2025. DappExpert. All rights reserved.
© 2020-2025. DappExpert. All rights reserved.

Important disclaimer: The information presented on the Dapp.Expert portal is intended solely for informational purposes and does not constitute an investment recommendation or a guide to action in the field of cryptocurrencies. The Dapp.Expert team is not responsible for any potential losses or missed profits associated with the use of materials published on the site. Before making investment decisions in cryptocurrencies, we recommend consulting a qualified financial advisor.