Поделиться этой статьей

ZB Exchange Loses Nearly $5M in Suspected Hack, Pauses Withdrawals

The self-titled “world’s most secure” exchange may be the third crypto company to suffer a multimillion-dollar exploit this week.

Обновлено 11 мая 2023 г., 4:33 p.m. Опубликовано 4 авг. 2022 г., 12:24 p.m. Переведено ИИ

Crypto exchange ZB Exchange has paused user withdrawals, likely in response to a suspected hack that appears to have drained nearly $5 million in tokens from the firm’s hot wallet on Tuesday.

The multimillion-dollar loss is the latest in a series of security breaches to hit crypto companies this year and the third multimillion-dollar hack reported this week.

STORY CONTINUES BELOW
Не пропустите другую историю.Подпишитесь на рассылку The Protocol сегодня. Просмотреть все рассылки

Blockchain security company PeckShield called attention to the likely exploit that seems to have drained $4.8 million in tether , , and other digital currencies from the exchange’s hot wallet on Wednesday. Transaction records show that the tokens were later sold on several decentralized exchanges for ether .

ZB Exchange hasn't yet publicly responded to the hack and didn't immediately respond to a request for comment. The firm did announce it is pausing withdrawals, citing “temporary maintenance,” in a blog post on Tuesday.

Several of the exchange’s users took to Twitter to voice concerns about how they would access their funds amid the freeze on withdrawals and to criticize the exchange’s silence on the suspected security breach.

In recent months, a series of multimillion-dollar exploits has rattled investor confidence in cryptocurrency markets and prompted many investors to become increasingly cautious of where they store their assets.

In June, a North Korean government-backed group plundered $100 million in altcoins from the Horizon bridge, a cross-chain bridge that enables token transfers between the Harmony blockchain and other networks. Then, earlier this week, hackers drained more than $5 million in tokens, including Solana's SOL token and USD coin (USDC), from around 8,000 Solana software wallets.

Also this week, cross-chain bridge Nomad suffered an exploit that drained nearly $190 million worth of crypto. According to a recent report from blockchain security firm Chainalysis, $2 billion worth of crypto has been siphoned out of cross-chain bridges so far this year, which accounts for 69% of the crypto theft this year.

Cross-chain bridges are used to send tokens between blockchains and are a popular tool used by the crypto community.

ZB Exchange, which once billed itself as the “world’s most secure” crypto exchange, was founded in 2013 under the name CHBTC.co and has over $1 billion in daily transaction volume.

The exchange, which used to be based in China, suspended its operations when regulators there banned fundraising through initial coin offerings in 2017. The move came after the Chinese central bank voiced concerns about the then largely popular and mostly unregulated fundraising method’s use in several financial scams. Since then, the company has moved overseas, operating out of Hong Kong with offices in Australia and the U.S.

Больше для вас

Protocol Research: GoPlus Security

GP Basic Image

Что нужно знать:

  • As of October 2025, GoPlus has generated $4.7M in total revenue across its product lines. The GoPlus App is the primary revenue driver, contributing $2.5M (approx. 53%), followed by the SafeToken Protocol at $1.7M.
  • GoPlus Intelligence's Token Security API averaged 717 million monthly calls year-to-date in 2025 , with a peak of nearly 1 billion calls in February 2025. Total blockchain-level requests, including transaction simulations, averaged an additional 350 million per month.
  • Since its January 2025 launch , the $GPS token has registered over $5B in total spot volume and $10B in derivatives volume in 2025. Monthly spot volume peaked in March 2025 at over $1.1B , while derivatives volume peaked the same month at over $4B.

Больше для вас

New React bug that can drain all your tokens is impacting 'thousands of' websites

Hacker sitting in a room

Attackers are using the vulnerability to deploy malware and crypto-mining software, compromising server resources and potentially intercepting wallet interactions on crypto platforms.

Что нужно знать:

  • A critical vulnerability in React Server Components, known as React2Shell, is being actively exploited, putting thousands of websites at risk, including crypto platforms.
  • The flaw, CVE-2025-55182, allows remote code execution without authentication and affects React versions 19.0 through 19.2.0.
  • Attackers are using the vulnerability to deploy malware and crypto-mining software, compromising server resources and potentially intercepting wallet interactions on crypto platforms.