{"id":37973,"date":"2025-07-21T14:02:01","date_gmt":"2025-07-21T14:02:01","guid":{"rendered":"https:\/\/dogewisperer.com\/?p=37973"},"modified":"2025-07-21T14:02:01","modified_gmt":"2025-07-21T14:02:01","slug":"coindcx-suffers-44-2m-security-breach-customer-funds-confirmed-safe","status":"publish","type":"post","link":"https:\/\/dogewisperer.com\/?p=37973","title":{"rendered":"CoinDCX Suffers $44.2M Security Breach; Customer Funds Confirmed Safe"},"content":{"rendered":"<div>\n<p><em>CoinDCX, a leading Indian crypto exchange, suffered a $44.2M hack on July 19, targeting an internal wallet. Customer funds remain safe, as the breach did not affect reserves.<\/em><\/p>\n<p><span data-preserver-spaces=\"true\">Crypto exchanges combine three core <\/span><span data-preserver-spaces=\"true\">components of trading<\/span><span data-preserver-spaces=\"true\">: settlement, execution, and custody. In traditional finance, these functions are segregated, making exchanges like the NYSE and NASDAQ resilient to failures that could result in massive losses. However, <\/span><span data-preserver-spaces=\"true\">in<\/span><span data-preserver-spaces=\"true\"> the crypto industry<\/span><span data-preserver-spaces=\"true\">, the<\/span><span data-preserver-spaces=\"true\"> landscape is entirely different.<\/span><\/p>\n<p><span data-preserver-spaces=\"true\">Tokens for which exchanges provide liquidity are decentralized, and exchanges are responsible for securely storing user assets to protect them from hackers. Over time, hackers have become increasingly sophisticated, executing some of the largest heists, resulting in billions of dollars in losses, impacting even some of the <\/span><a class=\"general-link\" href=\"https:\/\/99bitcoins.com\/cryptocurrency\/best-solana-meme-coins\/\" target=\"_blank\" rel=\"nofollow noopener sponsored\"><span data-preserver-spaces=\"true\">top Solana meme coins<\/span><\/a><span data-preserver-spaces=\"true\">. This year, Bybit lost over $4 billion but quickly recovered without pausing operations.<\/span><\/p>\n<p><strong><span data-preserver-spaces=\"true\">DISCOVER:\u00a0<\/span><a class=\"general-link\" href=\"https:\/\/99bitcoins.com\/cryptocurrency\/next-crypto-to-explode\/\" target=\"_blank\" rel=\"nofollow noopener sponsored\"><span data-preserver-spaces=\"true\">20+ Next Crypto to Explode in 2025\u00a0<\/span><\/a><\/strong><\/p>\n<h2><span data-preserver-spaces=\"true\">CoinDCX Hacked for $44 Million<\/span><\/h2>\n<p><span data-preserver-spaces=\"true\">On July 19, CoinDCX, one of India\u2019s largest crypto exchanges, lost over $44 million in USDC and USDC from an internal operational wallet. <\/span><\/p>\n<p><span data-preserver-spaces=\"true\">Crucially, this wallet was separate from the exchange\u2019s reserves, ensuring that user funds, often verified through proof-of-reserves, were unaffected.<\/span><\/p>\n<p><span data-preserver-spaces=\"true\">The breach, first detected by ZachXBT and Cyvers Alerts on X, revealed unauthorized transfers from the exchange, raising concerns about the vulnerabilities of centralized exchanges. Analysts noted that the breach targeted an internal wallet <\/span><span data-preserver-spaces=\"true\">used<\/span><span data-preserver-spaces=\"true\"> for liquidity provision on a partner exchange.<\/span><\/p>\n<p><span data-preserver-spaces=\"true\">As mentioned, this wallet was separate from CoinDCX\u2019s published proof-of-reserves. The attacker initiated the exploit using 1 ETH, sending funds to Tornado Cash, a crypto mixer. <\/span><\/p>\n<blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\">\n<p lang=\"en\" dir=\"ltr\">Our system has detected a hack into <a href=\"https:\/\/twitter.com\/CoinDCX?ref_src=twsrc%5Etfw\">@CoinDCX<\/a>  centralized exchange 20 hours ago.<br \/>Here&#39;s what we know:<br \/>&#8211; The hacker stole around $44.2M in USDC\/USDT from one of the exchange&#39;s operational wallets on Solana.<br \/>&#8211; The hacker funded the hack with 1 ETH from Tornado Cash.<br \/>&#8211; Part of the\u2026 <a href=\"https:\/\/t.co\/5PLliaZ6m4\">pic.twitter.com\/5PLliaZ6m4<\/a><\/p>\n<p>&mdash; \ud83d\udea8 Cyvers Alerts \ud83d\udea8 (@CyversAlerts) <a href=\"https:\/\/twitter.com\/CyversAlerts\/status\/1946625586597888163?ref_src=twsrc%5Etfw\">July 19, 2025<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p><span data-preserver-spaces=\"true\">Subsequently, the hacker executed multiple transactions to obscure the original transfer, converting stolen funds to <a class=\"cpp-widget-coin cpp-widget-99btc\" href=\"https:\/\/cryptonews.com\/coins\/ethereum\/\" target=\"_blank\" rel=\"nofollow sponsored\" data-symbol=\"eth\" data-name=\"Ethereum\" data-price=\"3813.188300000000000\" data-change=\"2.03\" data-chart-style=\"99btc\" data-cta_text=\"Buy with Best Wallet\"><img decoding=\"async\" src=\"https:\/\/cimg.co\/coinlogo\/4\/5b7fc72f06f17.svg\" alt=\"eth logo\">ETH <span style=\"color: #37a72b;\">\u25b22.03%<\/span><\/a> and <span class=\"cpp-widget-coin cpp-widget-99btc\" data-symbol=\"sol\" data-name=\"Solana\" data-price=\"191.016600000000000\" data-change=\"5.58\" data-chart-style=\"99btc\" data-cta_text=\"Buy with Best Wallet\"><img decoding=\"async\" src=\"https:\/\/99bitcoins.com\/wp-content\/uploads\/2025\/06\/solana-sol-logo-2.svg\" alt=\"sol logo\">SOL <span style=\"color: #37a72b;\">\u25b25.58%<\/span><\/span> before bridging them across different blockchains. By dispersing funds across multiple intermediary wallets, the hacker aimed to complicate tracing efforts.<\/span><\/p>\n<p><span data-preserver-spaces=\"true\"><\/p>\n<div class=\"cpp-crypto-chart cpp-crypto-chart-99btc cpp-crypto-chart-eth\" data-coin-symbol=\"eth\" data-price-usd=\"ETH Price (USD)\" data-main-color=\"#4caf05\" data-watermark-image=\"https:\/\/99bitcoins.com\/wp-content\/uploads\/2025\/06\/99bitcoins-logo.png\" data-chart-style=\"99btc\">\n<div class=\"cpp-chart-top-section\">\n<div class=\"cpp-chart-info-section\">\n<div class=\"cpp-chart-logo\"><img decoding=\"async\" src=\"https:\/\/cimg.co\/coinlogo\/4\/5b7fc72f06f17.svg\" alt=\"eth logo\"><\/div>\n<div class=\"cpp-chart-coin-details\">\n<div class=\"cpp-chart-labels-row\">\n<div class=\"cpp-chart-coin-name\">Ethereum<\/div>\n<div class=\"cpp-chart-price-info\">Price<\/div>\n<div class=\"cpp-chart-market-cap\">Market Cap<\/div>\n<\/div>\n<div class=\"cpp-chart-values-row\">\n<div class=\"cpp-chart-coin-symbol\">ETH<\/div>\n<div class=\"cpp-chart-price\"><\/div>\n<div class=\"cpp-chart-market-cap-value\">$460.30B<\/div>\n<\/div>\n<\/div>\n<\/div>\n<div class=\"cpp-chart-selectors cpp-chart-selectors-99btc\"><span class=\"cpp-chart-selector\" data-period=\"24h\">24h<\/span><span class=\"cpp-chart-selector\" data-period=\"7d\">7d<\/span><span class=\"cpp-chart-selector\" data-period=\"30d\">30d<\/span><span class=\"cpp-chart-selector\" data-period=\"1y\">1y<\/span><span class=\"cpp-chart-selector\" data-period=\"all_time\">All time<\/span><\/div>\n<\/div>\n<p><canvas id=\"cpp-chart-687e45e64da71\" class=\"cpp-chart-container cpp-chart-container-99btc\"><\/canvas><\/div>\n<p><\/span><\/p>\n<p><strong><span data-preserver-spaces=\"true\">DISCOVER:\u00a0<\/span><a class=\"general-link\" href=\"https:\/\/99bitcoins.com\/cryptocurrency\/next-1000x-crypto\/\" target=\"_blank\" rel=\"nofollow noopener sponsored\"><span data-preserver-spaces=\"true\">Next 1000X Crypto: 10+ Crypto Tokens That Can Hit 1000x in 2025<\/span><\/a><\/strong><\/p>\n<h2><span data-preserver-spaces=\"true\">Intervention: User Funds Unaffected<\/span><\/h2>\n<p><span data-preserver-spaces=\"true\">CoinDCX did not immediately detect the breach. According to ZachXBT, stolen funds were moved 17 hours before the exchange disclosed the hack. This delayed response has drawn sharp criticism from the community, with some questioning the exchange\u2019s transparency and preparedness.<\/span><\/p>\n<blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\">\n<p lang=\"en\" dir=\"ltr\">Why is a CoinDCX team member telling people to engage with this post and thank you for the \u201ctransparency\u201d?<\/p>\n<p>Your team waited 17 hours to disclose (not until after it was alerted publicly) <a href=\"https:\/\/t.co\/jElwOd9IHY\">pic.twitter.com\/jElwOd9IHY<\/a><\/p>\n<p>&mdash; ZachXBT (@zachxbt) <a href=\"https:\/\/twitter.com\/zachxbt\/status\/1946626657218863302?ref_src=twsrc%5Etfw\">July 19, 2025<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p><span data-preserver-spaces=\"true\">In response, Sumit Gupta, the CEO, emphasized that no customer funds were lost, as funds remained segregated. The platform announced it would absorb the loss from its corporate treasury reserves, ensuring no financial impact on its user base.<\/span><\/p>\n<blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\">\n<p lang=\"en\" dir=\"ltr\">Since yesterday the CoinDCX team has been working around the clock and we have published the First Incident Report on the July 19th server breach. The report covers all the key points:<\/p>\n<p>-Customer funds are 100% safe. All user assets are stored in segregated cold wallets. <br \/>-The\u2026 <a href=\"https:\/\/t.co\/Ouuplc521Q\">https:\/\/t.co\/Ouuplc521Q<\/a><\/p>\n<p>&mdash; Sumit Gupta (CoinDCX) (@smtgpt) <a href=\"https:\/\/twitter.com\/smtgpt\/status\/1946867532327240088?ref_src=twsrc%5Etfw\">July 20, 2025<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p><span data-preserver-spaces=\"true\">Furthermore, CoinDCX temporarily suspended crypto services, including fiat withdrawals, though some core trading operations remained unaffected. <\/span><\/p>\n<p><span data-preserver-spaces=\"true\">The exchange <\/span><span data-preserver-spaces=\"true\">is collaborating<\/span><span data-preserver-spaces=\"true\"> with partner exchanges and external cybersecurity firms to investigate the incident and recover stolen assets. The attacker\u2019s wallet addresses have been made public, and on-chain sleuths have been asked to assist in tracking the stolen funds.<\/span><\/p>\n<p><span data-preserver-spaces=\"true\">To enhance its security, CoinDCX launched a recovery bug bounty program. Those who participate and help the exchange recover funds will receive up to 25% of what they recovered. <\/span><\/p>\n<blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\">\n<p lang=\"en\" dir=\"ltr\">Announcing the <a href=\"https:\/\/twitter.com\/CoinDCX?ref_src=twsrc%5Etfw\">@CoinDCX<\/a> Recovery Bounty Program: Up to 25% of any recovered funds will be awarded to individuals or teams who can help trace and retrieve the stolen crypto.<\/p>\n<p>Just to give more context:<br \/>-&gt; We want to be upfront. The exposure was from our own reserves, and we have\u2026 <a href=\"https:\/\/t.co\/GHHlxf3PxB\">https:\/\/t.co\/GHHlxf3PxB<\/a><\/p>\n<p>&mdash; Sumit Gupta (CoinDCX) (@smtgpt) <a href=\"https:\/\/twitter.com\/smtgpt\/status\/1947215040899158359?ref_src=twsrc%5Etfw\">July 21, 2025<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p><span data-preserver-spaces=\"true\">Last year, WazirX, another Indian exchange, was hacked, losing $235 million due to an exploit in its multisig wallet. The stolen amount was nearly 50% of its total reserves, and included losses of some of the <\/span><a class=\"general-link\" href=\"https:\/\/99bitcoins.com\/cryptocurrency\/best-crypto-to-buy\/\" target=\"_blank\" rel=\"nofollow noopener sponsored\"><span data-preserver-spaces=\"true\">best cryptos to buy<\/span><\/a><span data-preserver-spaces=\"true\">. <\/span><\/p>\n<p><span data-preserver-spaces=\"true\">Similar to the CoinDCX hack, the attacker, linked to the Lazarus Group, used Tornado Cash to obfuscate transfers.<\/span><\/p>\n<p><strong><span data-preserver-spaces=\"true\">DISCOVER:<\/span><\/strong> <a class=\"general-link\" href=\"https:\/\/99bitcoins.com\/cryptocurrency\/next-1000x-crypto\/\" target=\"_blank\" rel=\"nofollow noopener sponsored\"><span data-preserver-spaces=\"true\">Next 1000x Crypto \u2013 12 Coins That Could 1000x in 2025<\/span><\/a><\/p>\n<div class=\"nnbtc-key-takeaways\">\n<h2 class=\"nnbtc-key-takeaways__title\">CoinDCX $44.2M Crypto Hack: Customer Funds Safe<\/h2>\n<ul class=\"nnbtc-key-takeaways__list\">\n<li class=\"nnbtc-key-takeaways__list-item\">\n         <span data-preserver-spaces=\"true\">CoinDCX hacked for $44 million<\/span><span data-preserver-spaces=\"true\">\u00a0<\/span>    <\/li>\n<li class=\"nnbtc-key-takeaways__list-item\">\n         <span data-preserver-spaces=\"true\">Customer funds not affected<\/span><span data-preserver-spaces=\"true\">\u00a0<\/span>    <\/li>\n<li class=\"nnbtc-key-takeaways__list-item\">\n         <span data-preserver-spaces=\"true\">Tornado Cash crypto mixer used<\/span><span data-preserver-spaces=\"true\">\u00a0<\/span>    <\/li>\n<li class=\"nnbtc-key-takeaways__list-item\">\n         <span data-preserver-spaces=\"true\">CoinDCX to absorb loss and recoup stolen funds from its treasury<\/span><span data-preserver-spaces=\"true\">\u00a0<\/span>    <\/li>\n<\/ul><\/div>\n<p>The post <a href=\"https:\/\/99bitcoins.com\/news\/altcoins\/coindcx-suffers-44-2m-security-breach-customer-funds-confirmed-safe\/\">CoinDCX Suffers $44.2M Security Breach; Customer Funds Confirmed Safe<\/a> appeared first on <a href=\"https:\/\/99bitcoins.com\/\">99Bitcoins<\/a>.<\/p>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>CoinDCX, a leading Indian crypto exchange, suffered a $44.2M hack on July 19, targeting an internal wallet. Customer funds remain safe, as the breach did not affect reserves. Crypto exchanges combine three core components of trading: settlement, execution, and custody. In traditional finance, these functions are segregated, making exchanges like the NYSE and NASDAQ resilient [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"iawp_total_views":0,"footnotes":""},"categories":[2],"tags":[3,4,5],"class_list":["post-37973","post","type-post","status-publish","format-standard","hentry","category-news","tag-crypto","tag-doge","tag-news"],"_links":{"self":[{"href":"https:\/\/dogewisperer.com\/index.php?rest_route=\/wp\/v2\/posts\/37973","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/dogewisperer.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/dogewisperer.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/dogewisperer.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/dogewisperer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=37973"}],"version-history":[{"count":0,"href":"https:\/\/dogewisperer.com\/index.php?rest_route=\/wp\/v2\/posts\/37973\/revisions"}],"wp:attachment":[{"href":"https:\/\/dogewisperer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=37973"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/dogewisperer.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=37973"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/dogewisperer.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=37973"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}