BlockBeats news, September 28: In the "Bitget Incident Review" livestream, Xie Jiayin, head of Bitget's Chinese-speaking region, stated that during this incident, the attacker exploited a vulnerability in a third-party security product to steal internal network privilege credentials, forged withdrawal instructions to the wallet system, deceived the wallet into executing abnormal transfers that had passed risk verification, and ultimately completed the attack.
Throughout the process, the attacker did not use common viruses or malicious programs, but instead relied entirely on real identities and routine operations and maintenance activities for disguise and trace removal. This was a relatively high-level targeted attack.
After the incident, Bitget has investigated and completely ruled out the possibility of private key leakage, and there is also no possibility of internal involvement. The hacker exploited a vulnerability in a third-party security product, stole Bitget's internal credentials, and impersonated an identity.

