Yahoo North Korea-Linked Hackers Steal $387 Million from Bitget Using AI for Fund Tracing
Article Content
- •North Korean hackers stole $387 million from Bitget on September 24, 2026.
- •Chainalysis used AI to trace funds, reducing investigation time from over 20 hours to under 10 minutes.
- •The total crypto theft attributed to North Korea in 2026 exceeds $1 billion.
On September 24, 2026, hackers attributed to North Korea stole $387 million from the Bitget crypto exchange. The funds were rapidly transferred across multiple blockchains, primarily Ethereum and XRP, using complex laundering techniques to obscure their trail. Chainalysis utilized in-house AI to trace the stolen funds, compressing over 20 hours of manual reconciliation into under 10 minutes. The investigation revealed that the stolen assets were moved through cross-chain liquidity protocols and instant swaps, complicating tracking efforts. The total value of cryptocurrency stolen by North Korean actors in 2026 has now surpassed $1 billion. Chainalysis continues to monitor the identified addresses and track the movement of the stolen funds. The speed and sophistication of the operation highlight ongoing risks from state-sponsored cyber theft in the crypto sector.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (7)
Following this threat?
Track Bitget in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
What methods were used to steal the funds?
How much cryptocurrency has been stolen by North Korea in 2026?
What is Chainalysis doing about the stolen funds?
Continue Reading
Citrix NetScaler Critical Vulnerabilities Exploited: Urgent Patching Required Citrix NetScaler ADC and Gateway products are affected by critical vulnerabilities CVE-2026-88771 and CVE-2026-88772, both assigned a CVSS score of 9.5. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on September 27, 2026, and mandated…
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited Citrix disclosed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting NetScaler ADC and Gateway systems, which are being actively exploited. Both vulnerabilities have a CVSS score of 9.5 and allow unauthenticated attackers to execute arbitrary commands remotely. CVE-2026-88771 arises…