Blockchain security firm SlowMist has found a vulnerability on cryptocurrency exchange HitBTC. The firm shared the alert on X on Sunday, stating, “We have identifiedBlockchain security firm SlowMist has found a vulnerability on cryptocurrency exchange HitBTC. The firm shared the alert on X on Sunday, stating, “We have identified

SlowMist issues public security alert about HitBTC

Blockchain security firm SlowMist has found a vulnerability on cryptocurrency exchange HitBTC.

The firm shared the alert on X on Sunday, stating, “We have identified a potential critical vulnerability and reached out via DM in advance under responsible disclosure, but have not yet received a response.

SlowMist also added that the exchange should contact them “promptly to coordinate next steps.”

How did HitBTC respond to the security threat disclosure?

Going by recent public announcements from SlowMist security analysts, exchanges don’t tend to act with the level of urgency one would expect from custodians of user funds.

The latest one involving HitBTC is at least the third time in recent weeks that SlowMist has publicly disclosed attempted security warnings after failing to establish contact with cryptocurrency exchanges.

In December, the security firm issued similar notices to Seychelles-registered Azbit and Turkish exchange ICRYPEX Global, both of which handle significant daily trading volumes but failed to acknowledge the warnings.

HitBTC is one of the oldest cryptocurrency exchanges still in business since its founding in 2013. The platform, registered in the British Virgin Islands, has a trading volume of over $110 million in the past 24 hours as of the time of writing. Over 250 cryptocurrencies and 800 trading pairs are available on the exchange.

Security concerns are persistent

SlowMist’s 2025 annual security report documented 200 security incidents resulting in losses of approximately $2.935 billion, representing a 46% increase in financial damage compared with the previous year, despite fewer total incidents being recorded as opposed to 2024.

According to SlowMist’s report, “Exchange-related incidents numbered only 12 but caused staggering losses of up to USD 1.809 billion.”

By comparison, decentralized finance (DeFi) protocols experienced 126 incidents resulting in $649 million in losses.

According to data shared by security firm Certik, around $117.8 million was lost to exploits in the crypto space in December 2025 alone.

The shift from higher incident counts to larger individual losses shows that these attacks are becoming more sophisticated and targeted.

Security analysts note that professionalized hacker groups, including state-sponsored actors with alleged North Korean links, are moving from opportunistic attacks to systematic, multi-step operations designed to extract maximum value from fewer high-profile targets.

As Cryptopolitan reported yesterday, one crypto user lost approximately $1.08 million worth of Aave-wrapped Ethereum LBTC (aEthLBTC) in a phishing attack after signing a malicious “permit” signature.

Major AI companies like Anthropic, OpenAI, and Google have also reported that criminals are tapping into their platforms to orchestrate complex phishing operations, develop harmful software, and execute various digital attacks. Security specialists warn that criminals are also producing fake audio and video clips of company leaders to trick employees into giving up sensitive information.

How should crypto exchanges respond to threat warnings?

Security experts usually recommend that cryptocurrency platforms establish clear contact points for reporting vulnerabilities, including publicly available security email addresses and long-term public keys for encrypted communication. Industry guidelines expect that affected parties respond within two working days of initial contact.

When security researchers like SlowMist in this case struggle to establish contact after multiple attempts, they are left with no other option than public disclosure to ensure transparency, especially when user funds face potential risk.

SlowMist has built a reputation for lending weight to the blockchain security apparatus.

The firm assisted in freezing or recovering approximately $19.29 million in stolen funds during 2025 through its threat intelligence network and MistTrack analysis platform. Across 18 major incidents, roughly $387 million of $1.957 billion in stolen funds was frozen or recovered, yielding a recovery rate of 13.2%.

If you're reading this, you’re already ahead. Stay there with our newsletter.

Piyasa Fırsatı
PUBLIC Logosu
PUBLIC Fiyatı(PUBLIC)
$0.01913
$0.01913$0.01913
+0.89%
USD
PUBLIC (PUBLIC) Canlı Fiyat Grafiği
Sorumluluk Reddi: Bu sitede yeniden yayınlanan makaleler, halka açık platformlardan alınmıştır ve yalnızca bilgilendirme amaçlıdır. MEXC'nin görüşlerini yansıtmayabilir. Tüm hakları telif sahiplerine aittir. Herhangi bir içeriğin üçüncü taraf haklarını ihlal ettiğini düşünüyorsanız, kaldırılması için lütfen service@support.mexc.com ile iletişime geçin. MEXC, içeriğin doğruluğu, eksiksizliği veya güncelliği konusunda hiçbir garanti vermez ve sağlanan bilgilere dayalı olarak alınan herhangi bir eylemden sorumlu değildir. İçerik, finansal, yasal veya diğer profesyonel tavsiye niteliğinde değildir ve MEXC tarafından bir tavsiye veya onay olarak değerlendirilmemelidir.

Ayrıca Şunları da Beğenebilirsiniz

From XRP to Flare: Seasoned Enthusiast Shares What’s Next for Ecosystem

From XRP to Flare: Seasoned Enthusiast Shares What’s Next for Ecosystem

The post From XRP to Flare: Seasoned Enthusiast Shares What’s Next for Ecosystem appeared on BitcoinEthereumNews.com. Flare’s power is in community, infrastructure developer Tim Rowley says “FAssets are imminent” Tim Rowley, one of the earliest enthusiasts of the Flare (FLR) ecosystem, reflects on what makes the blockchain special and what might be next for Flare (FLR) and its adoption workloads. Flare’s power is in community, infrastructure developer Tim Rowley says Tim Rowley, an Australian blockchain educationist and passionate Flare (FLR) ecosystem contributor, shared a reflection on his journey in the ecosystem. He recalled the early days when he became involved because of his father participating in a Spark (the predecessor of FLR) airdrop to the holders of XRP. Image via X While Flare was still in its very nascent stage of an EVM blockchain, Rowley admitted that the passionate community was its strength from the very beginning. Then, he started learning the concept of FTSO, a Flare-specific design of blockchain oracles. Rowley launched FTSO.AU, the first Flare oracle infrastructure provider. Expanding his involvement with the ecosystem, Rowley contributed to Flare Metrics, a data tracker for Flare’s validators, and Flare Builders, a developer experience resource for Flare and its canary network Songbird. The primary motivation was bringing new community members to both ecosystems: This is the very reason we have Flare Metrics and Flare Builders. Our aim is to provide unbiased information such as network statistics and other projects among us that make Flare great. Instead of answering individual questions, we have put this information in a format that can reach a larger audience (this is also the same reason I started making YouTube videos, it’s easier to share a single video that answers the same question many have). Flare (FLR) is a unique Layer-1 blockchain focused on data-heavy use cases. It was introduced in late Q4, 2020, as a “utility fork” of XRP Ledger. “FAssets are…
Paylaş
BitcoinEthereumNews2025/09/21 03:43
TD Cowen cuts Strategy price target to $440, cites lower bitcoin yield outlook

TD Cowen cuts Strategy price target to $440, cites lower bitcoin yield outlook

Despite the target cut, TD Cowen said Strategy remains an attractive vehicle for investors seeking bitcoin exposure.
Paylaş
Coinstats2026/01/15 07:29
How to earn from cloud mining: IeByte’s upgraded auto-cloud mining platform unlocks genuine passive earnings

How to earn from cloud mining: IeByte’s upgraded auto-cloud mining platform unlocks genuine passive earnings

The post How to earn from cloud mining: IeByte’s upgraded auto-cloud mining platform unlocks genuine passive earnings appeared on BitcoinEthereumNews.com. contributor Posted: September 17, 2025 As digital assets continue to reshape global finance, cloud mining has become one of the most effective ways for investors to generate stable passive income. Addressing the growing demand for simplicity, security, and profitability, IeByte has officially upgraded its fully automated cloud mining platform, empowering both beginners and experienced investors to earn Bitcoin, Dogecoin, and other mainstream cryptocurrencies without the need for hardware or technical expertise. Why cloud mining in 2025? Traditional crypto mining requires expensive hardware, high electricity costs, and constant maintenance. In 2025, with blockchain networks becoming more competitive, these barriers have grown even higher. Cloud mining solves this by allowing users to lease professional mining power remotely, eliminating the upfront costs and complexity. IeByte stands at the forefront of this transformation, offering investors a transparent and seamless path to daily earnings. IeByte’s upgraded auto-cloud mining platform With its latest upgrade, IeByte introduces: Full Automation: Mining contracts can be activated in just one click, with all processes handled by IeByte’s servers. Enhanced Security: Bank-grade encryption, cold wallets, and real-time monitoring protect every transaction. Scalable Options: From starter packages to high-level investment contracts, investors can choose the plan that matches their goals. Global Reach: Already trusted by users in over 100 countries. Mining contracts for 2025 IeByte offers a wide range of contracts tailored for every investor level. From entry-level plans with daily returns to premium high-yield packages, the platform ensures maximum accessibility. Contract Type Duration Price Daily Reward Total Earnings (Principal + Profit) Starter Contract 1 Day $200 $6 $200 + $6 + $10 bonus Bronze Basic Contract 2 Days $500 $13.5 $500 + $27 Bronze Basic Contract 3 Days $1,200 $36 $1,200 + $108 Silver Advanced Contract 1 Day $5,000 $175 $5,000 + $175 Silver Advanced Contract 2 Days $8,000 $320 $8,000 + $640 Silver…
Paylaş
BitcoinEthereumNews2025/09/17 23:48