Bitget CEO Gracy Chen stated she is not optimistic about recovering the $388 million stolen during last week's security breach. The exchange initially reported a $352 million loss but revised the figure upward after a complete accounting of transfers. Chen referenced the February 2025 Bybit hack as a cautionary example, noting that Bybit froze only about 3.5% of its stolen funds over a year, and emphasized that freezing assets does not equate to full recovery.
The investigation identified a compromised third-party security product as the vector for fraudulent withdrawal commands, though cold wallets remained unaffected. While Bitget has resumed Bitcoin and Ethereum withdrawals, external interventions have been limited; NEAR Intents blocked over $50 million, and Tether and Circle froze approximately $318,013. To incentivize assistance, Bitget launched a bounty program offering 5% of frozen or recovered funds, excluding those obtained through law enforcement channels.
This development underscores the persistent challenge of asset recovery in decentralized finance, where technical containment does not guarantee financial restitution. By explicitly comparing their situation to Bybit’s earlier incident, Bitget highlights the structural limitations of current blockchain forensics and cross-chain seizure mechanisms. The reliance on third-party security products as an attack vector also raises critical questions about supply chain vulnerabilities within major cryptocurrency exchanges, suggesting that internal private-key management may no longer be the sole determinant of platform safety.
From an institutional adoption perspective, the low probability of recovery poses significant operational risks for centralized exchanges. If users perceive that large-scale breaches result in permanent capital loss rather than temporary disruption, trust in custodial solutions may erode. Stakeholders should monitor the effectiveness of the new bounty programs and independent investigations by Mandiant and SlowMist, as these will determine whether the industry can develop more robust frameworks for tracking and reclaiming illicitly transferred digital assets across multiple networks.


