Scan to download
BTC $59,702.98 -1.75%
ETH $1,569.72 -2.79%
BNB $559.28 -0.68%
XRP $1.03 -3.08%
SOL $67.06 -1.09%
TRX $0.3236 -1.09%
DOGE $0.0746 -1.67%
ADA $0.1434 -2.66%
BCH $190.83 +0.87%
LINK $7.24 -2.34%
HYPE $63.65 +0.54%
AAVE $81.04 +3.27%
SUI $0.6794 -0.93%
XLM $0.1772 -4.82%
ZEC $411.09 -0.46%
BTC $59,702.98 -1.75%
ETH $1,569.72 -2.79%
BNB $559.28 -0.68%
XRP $1.03 -3.08%
SOL $67.06 -1.09%
TRX $0.3236 -1.09%
DOGE $0.0746 -1.67%
ADA $0.1434 -2.66%
BCH $190.83 +0.87%
LINK $7.24 -2.34%
HYPE $63.65 +0.54%
AAVE $81.04 +3.27%
SUI $0.6794 -0.93%
XLM $0.1772 -4.82%
ZEC $411.09 -0.46%

compensation

All
Article
Flash

In the past six years, the five major virtual asset platforms in South Korea have experienced 57 incidents of hacking and system failures, with a total compensation amount reaching 7 billion won

According to the Korea Herald, the five major virtual asset trading platforms in South Korea (Upbit, Bithumb, Coinone, Korbit, Gopax) have experienced a total of 57 hacking and system failure incidents over the past six years (from 2020 to April 2026), with a total compensation amount of approximately 7 billion Korean won (about 5.1 million USD). By exchange, the number of incidents is as follows: Upbit 26 incidents, Bithumb 14 incidents, Gopax 8 incidents, Coinone 6 incidents, Korbit 3 incidents.Among them, Bithumb compensated approximately 2.5 billion Korean won (about 1.8 million USD) for the BTC misissue incident in February this year, Upbit compensated approximately 790 million Korean won (about 570,000 USD) for a hacking incident in November 2025, and compensated approximately 3.2 billion Korean won (about 2.3 million USD) for a system incident on December 3, 2024. It is worth noting that the standards for compiling incident reports by exchanges and the scale and form of compensation vary. For example, Gopax counts errors that occur when viewing the asset list as system failures, while Bithumb only counts situations where all customers encounter difficulties using core services for more than 10 minutes as system failures.In addition, Bithumb also provided some applicants who suffered losses due to system failures with free fee vouchers instead of cash compensation. The compensation amounts for system failures are as follows: Upbit approximately 3.21 billion Korean won, Bithumb approximately 3.2 billion Korean won, Coinone approximately 49 million Korean won. Korbit and Gopax did not provide any compensation.

Drift announced the restart of its Perp DEX for the Solana ecosystem, with revenue used to establish a user compensation fund

Drift Protocol stated that its current top priority is to restart the platform and restore revenue-generating capabilities to expedite the recovery process of user funds. After the platform restarts, it will become the largest USDT-based perpetual contract trading platform on Solana, and the related revenue will be used to support a specially established user compensation fund.Drift claims that substantial progress has been made in the restart efforts with strategic support from Tether and other partners. To enhance security, Drift announced the appointment of Noah Prince, the former head of engineering at Helium Protocol, as the protocol lead, responsible for protocol restructuring and security system upgrades.Meanwhile, former members of the Gauntlet team have also joined the restart efforts, providing risk management and treasury design support for the platform, including clearing engine reviews, funding rate optimization, market parameter adjustments, and ongoing risk monitoring. Additionally, Drift has hired the cybersecurity company Mandiant to conduct an independent forensic investigation of the attack incident.The investigation results indicate that this attack can be clearly attributed to the North Korean hacker group UNC6862, which is associated with multiple cyber attack operations. Drift stated that it will continue to prioritize security in advancing the platform restart and will announce the user compensation mechanism and specific timeline in the future.

US law firm applies to block the transfer of Kelp attack, freezing ETH, involving compensation amounting to over 870 million dollars

According to Cointelegraph, the U.S. law firm Gerstein Harrow LLP has applied to the court for an injunction to prevent Arbitrum DAO from transferring frozen Ethereum assets related to the Kelp attack.The law firm claims that its clients have obtained default judgments in three cases against North Korea, totaling approximately $877 million (including punitive damages and interest), and assert a right to claim the related assets.Previously, Kelp DAO was attacked on April 18, resulting in losses of about $292 million, which is believed to be related to the North Korean hacker group Lazarus Group. Subsequently, the Arbitrum security committee urgently froze approximately 30,766 Ether (about $73 million).The incident has sparked controversy. Some community members believe that if the injunction takes effect, it will delay the return of funds to the victimized users and shift the North Korean-related debts onto secondary victims. Previously, Aave Labs had proposed to unfreeze the funds and inject them into a compensation fund to restore the damaged assets.It is worth noting that Gerstein Harrow has previously filed claims regarding assets stolen by North Korean-related hackers and frozen by cryptocurrency platforms, including the 2023 Heco Bridge incident. Industry analysts believe that this case may have a demonstrative impact on the disposal of DAO assets and the definition of cross-jurisdictional claims.

Syndicate Labs suffered a private key leak attack, approximately 18.5 million SYND were transferred, and they promised full compensation to users

According to official news, Syndicate Labs disclosed that its cross-chain bridge contract was maliciously upgraded on two chains due to a private key leak. The attacker transferred and sold approximately 18.5 million SYND (about $330,000) and around $50,000 worth of user tokens. The incident only affected specific chains, while others were not impacted.Syndicate Labs stated that this attack involved multi-stage reconnaissance, infrastructure mapping, and careful execution, demonstrating a high level of technical complexity, and ruled out the involvement of internal personnel. The root cause was that the private key was stored in a password management tool without an additional layer of encryption, and the upgrade process did not utilize multi-signature or hardware signature mechanisms, nor did it have early warning and circuit breaker measures for contract upgrades.Syndicate Labs announced that it will fully compensate all affected users, including returning 18.5 million SYND and providing additional compensation, while also fully compensating affected application chain clients. The company has initiated security upgrade measures, including strengthening private key encryption, tightening access permissions, and plans to introduce hardware or multi-signature mechanisms and upgrade path monitoring to prevent similar incidents from occurring again.
app_icon
ChainCatcher Building the Web3 world with innovations.