Refreshed 2h ago· updates every 6h

Binance (2019) — Crypto Hack

Laundered
May 7, 2019·
Bitcoin
Amount Stolen
$40.0M
7,000 BTC
Recovered
$0

Binance lost 7,000 BTC in a sophisticated attack combining phishing, malware, and API key theft to bypass 2FA and security checks.

Summary

Binance lost 7,000 BTC in a sophisticated attack combining phishing, malware, and API key theft to bypass 2FA and security checks.

How It Was Compromised — CEX via Phishing / Malware

CEXPhishing / Malware

Hackers used a combination of phishing, malware, and viruses to obtain API keys and 2FA codes from a large number of Binance user accounts. The coordinated withdrawal of 7,000 BTC was executed in a single transaction, triggering Binance's automated risk management systems — but too late. CEO CZ announced Binance's SAFU fund would cover all losses.

Fund Flow & Laundering Analysis

The 7,000 BTC were immediately dispersed across hundreds of addresses to fragment tracking. Funds moved through Bitcoin mixers and were sold via OTC desks in small batches. Binance covered user losses from its Secure Asset Fund for Users (SAFU). The attacker's identity was never confirmed, though the sophistication suggested organized crime or state actors.

Related Incidents

For educational and transparency purposes only. Not financial advice. Data compiled from public sources and may contain approximations.