BlockBeats news, September 28: Xie Jiajin, head of Bitget's Chinese-speaking region, stated during the "Bitget Incident Review" livestream that Bitget has completed a comprehensive fix for this vulnerability and implemented the following rectifications:
First, isolate the affected systems. The relevant servers have been isolated from the network to contain the spread of the attack, and evidence has been preserved for tracing purposes;
Second, reset internal credentials and tighten high-sensitivity permissions. All internal login credentials have been invalidated and reissued, credentials stolen by the attacker have been rendered useless, high-sensitivity permissions have been fully revoked and re-segmented, and critical operations now require multi-person approval;
Third, the vulnerability details have been reported to the relevant third-party security vendor and assistance has been provided for analysis and remediation. The relevant functions were suspended before the fix was completed;
Fourth, all subsequent withdrawals must undergo independent verification.
This incident was caused by an attacker exploiting a vulnerability in a third-party security product to steal Bitget's internal network permission credentials and forge withdrawal instructions to the wallet system. Bitget immediately contacted the vendor, synchronized the incident details, and assisted with the remediation.
Currently, the incident is fully under control, and no new unauthorized transfers have been discovered; all affected systems have been isolated, and all vulnerabilities have been fully fixed. Each chain must still pass multiple core verifications before withdrawals are restored.

