Critical Wallet Bug Found After $30M Upbit Hack

Critical Wallet Bug Found After $30M Upbit Hack

Kane Pepi

Last Updated July 29, 2025

Cryptocurrencies are considered a high-risk asset class. Investing in them may result in the loss of part or all of your capital. The content on this website is intended solely for informational and educational use and should not be interpreted as financial or investment advice.

Best ICO was developed by blockchain experts to help traders and investors identify the best new ICOs and most promising crypto presales in the market. As one of the top ICO listing websites, we maintain rigorous standards to deliver accurate, timely information about the latest cryptocurrency ICOs and best upcoming crypto ICO opportunities.

Our team specializes in uncovering the ICO projects 2025 will offer, providing in-depth analysis of tokenomics, team credentials, and growth potential. We focus particularly on the best ICO crypto candidates, evaluating each project’s viability as a crypto to invest in.

Upbit has confirmed it found a critical flaw in its internal wallet system while investigating the $30 million hack that hit the exchange earlier this week. The company says the bug could have allowed attackers to derive private keys by analyzing past wallet activity. It remains unclear if the flaw was used in the breach.

Upbit said the issue was discovered during an emergency audit launched after suspicious withdrawals were detected on November 27. The flaw was found in the exchange’s wallet software. According to Upbit, the vulnerability could have let someone analyzing blockchain data uncover private keys tied to wallets.

CEO Oh Kyung-seok said in a translated statement,

 “We identified a security vulnerability in our system that could have allowed someone analyzing publicly visible Upbit wallet transactions on the blockchain to infer private keys.”

Upbit explained that its system generated weak or predictable signature data. While public blockchain data should not reveal private keys, the flaw may have allowed someone to reverse-engineer that data using past transactions.

Exchange Suspends Activity and Fixes the Flaw

Following the discovery, Upbit paused all deposits and withdrawals. The team activated an emergency protocol and began a full review of wallet and network infrastructure.

“We identified and addressed the vulnerability during a comprehensive inspection of all related networks and wallet systems,” Oh said. 

Upbit moved remaining funds to cold storage and patched the system.

The exchange confirmed that the breach led to losses worth about 44.5 billion KRW, or $30 million. Around $26 million belonged to customers. Roughly $1.5 million of the stolen funds have been frozen. Upbit said it will cover all user losses from its own reserves.

Broader Security Review Underway

Upbit is now conducting a full audit across its systems. The company said deposits and withdrawals will stay suspended until security checks are completed. It plans to release public updates throughout the process.

The exchange admitted the breach exposed gaps in its infrastructure. It said upgrades are being made to strengthen its systems and prevent similar issues in the future. 

“No security system can ever be considered perfect,” Upbit stated in the notice.

Authorities Look Into Possible Lazarus Group Link

On November 26, Upbit halted activity after detecting unusual withdrawals involving Solana-based tokens. These included SOL, ORCA, RAY, and JUP. The company then moved all assets to cold storage and began replacing its wallet setup.

South Korean authorities have opened a formal investigation. They are also reviewing whether the Lazarus Group, a North Korea-linked hacking group, may be connected to the attack.

Upbit operates under parent company Dunamu, which is preparing for a planned merger with tech firm Naver. The company has not confirmed the source of the attack, and investigations are still ongoing.

More Articles

BlackRock Positions Bitcoin ETF Alongside Treasuries for 2025

BlackRock has positioned its spot Bitcoin product in its list of the top investment themes of 2025 alongside the BlackRock..

XRP Missed Opportunity Debate Grows as Price Lags Market Shifts

The crypto market discourse surrounding the XRP missed opportunity story is blowing up, with the token trading significantly lower than..

By Kane Pepi

Kane Pepi is an established financial and cryptocurrency writer with over 2,000 articles, tutorials, and market insights under his belt. Kane has a reputation for offering concise explanations of complex financial matters due to his competence in specialized fields such as asset valuation and analysis, portfolio management, and financial crime prevention. He has a Bachelor’s Degree in Finance, a Master’s Degree in Financial Crime, and is now working on his Doctorate degree, which will focus on the difficulties of money laundering in the cryptocurrency and blockchain technology industries. Kane’s abundance of knowledge and expertise in the sector make him an invaluable resource for anybody navigating the world of finance and cryptocurrency.

More Articles

You might also like