In September 2026, crypto hacker attacks caused losses of $766 million
The Cryptonomist
58m ago
Ai Focus
September 2026 became the month with the most severe losses for crypto assets so far this year, with losses exceeding $766 million. PeckShield reports 55 major incidents that resulted in a loss of $766.5 million; CertiK records 97 incidents, resulting in a loss of $768.4 million. Bitget saw a theft of $388 million, and Liquid Network suffered an attack resulting in a loss of $320 million, which were the two largest incidents of the month.
Helpful
No.Help

In September 2026, losses caused by crypto hacker attacks exceeded $766 million, making it the month with the most severe theft of digital assets so far this year. Two independent blockchain security companies tracked these losses, and although they counted different numbers of incidents, their estimated losses were very close, indicating that the scale of vulnerability incidents that month was enormous and could not be ignored.

Key Points

  • September 2026 was the month with the most severe losses due to crypto hackers and vulnerability exploits this year, with losses exceeding 766 million US dollars.
  • PeckShield reported 55 major incidents, resulting in a total loss of 766.5 million US dollars; CertiK recorded 97 incidents, with a loss of 768.4 million US dollars.
  • Most of the losses in September came from two incidents: Bitget suffered a hack resulting in a loss of $388 million, and Liquid Network was attacked, resulting in a loss of $320 million.
  • It is reported that more than $270 million stolen in the Liquid Network attack has ultimately been recovered.
  • According to the 2026 dashboard of CertiK, there have been 656 security incidents so far this year, resulting in a cumulative loss of 2.68 billion US dollars.

September 2026 became the worst month for crypto hackers

According to two organizations that track this field, the total losses in September increased significantly compared to August. PeckShield reported that there were 55 major incidents that month, with a total theft amount of 766.5 million US dollars. Meanwhile, CertiK recorded even more incidents, a total of 97, and estimated the losses for that month at 768.4 million US dollars.

The difference between these two figures is less than 2 million US dollars, which is particularly noteworthy considering that the two companies use different statistical methods and track different ranges of events. Such overlap also confirms the scale of losses in September: it was not a single catastrophic vulnerability that distorted the data, but rather the entire crypto ecosystem was frequently attacked over a month.

In a statement released on Wednesday, CertiK stated that this change "clearly reminds us how quickly the threat environment can change."

Bitget and Liquid Network dominated the losses for that month.

The two attacks in September far exceeded other incidents. The Bitget hacker incident resulted in a loss of $388 million, while an independent vulnerability exploit on Liquid Network led to the theft of $320 million. Together, these two incidents amounted to approximately $708 million, accounting for the vast majority of the total losses for that month.

Bitget Vulnerability Suspected to Be Related to North Korea

According to CEO Gracy Chen, on the afternoon of September 24th, Bitget discovered 19 unauthorized transfers originating from certain areas of its hot wallet and warm wallet systems, while the cold wallet was not affected. CNBC cited Chen as stating that investigators traced the Internet Protocol addresses to a VPN service previously associated with North Korean hacker groups, and the characteristics of this attack match past patterns of activities related to that country.

Chen indicates that the security team at Bitget discovered that attackers had infiltrated a critical backend wallet system, utilized this system to forge transfer data, and triggered the exchange's authorization signature process. However, a private key leak has been ruled out. Bitget states that all losses will be covered by their user protection fund, which has a size of over 464 million US dollars.

Liquid Network Part of the funds has been recovered.

The scale of losses incurred in the attack on Liquid Network ranks second only to that of Bitget, amounting to 320 million US dollars. Unlike the Bitget incident, according to reports cited by Cointelegraph, a considerable portion of the funds stolen from Liquid Network—over 270 million US dollars—was later returned. So far this year, both incidents have been among the largest crypto theft cases, and the partial recovery of funds in the Liquid Network case has become one of the few bright spots in this costly month.

Smaller events and the overall situation in 2026

Not every vulnerability in September was as prominent as Bitget or Liquid Network, but some smaller platforms also suffered substantial losses. Safe Wallet lost 7.8 million dollars, DCENT lost 6 million dollars, and Duelbits lost 5.9 million dollars. These three incidents added up to a total loss of 19.7 million dollars for that month. Compared to the two major attacks, this is just a small portion, but it still reminds people that smaller crypto platforms are still exposed to risks.

From an annual perspective, the losses in September are even more prominent. The security dashboard of CertiK shows that as of now in 2026, there have been a total of 656 security incidents, resulting in cumulative losses of 2.68 billion US dollars. The losses in September alone account for more than 25% of the annual total, although 97 incidents that month represent only about 15% of the total number of incidents recorded by CertiK this year.

Constantly changing threat environment

CertiK's statement for the month summarizes the broader concerns of the industry. In addition to the phrase 'how quickly the environment can change under threat,' the company's data also shows that in September, the cumulative losses for 2026 were pushed up to 2.68 billion US dollars, and this figure continues to rise as the years progress.

For exchanges and wallet service providers, the data from September highlights a persistent issue: backend wallet systems and third-party integrations remain the main targets of attacks. As suspected in the Bitget case, attackers involved in complex operations continue to test the infrastructure that platforms once considered secure. For users and investors, this month serves as a reminder that even platforms with substantial funds and dedicated protection funds are not immune to attacks; however, the Bitget case also shows that such insurance-like reserves can at least mitigate some of the losses for customers when vulnerabilities do occur.

This article was generated with the assistance of artificial intelligence and has been reviewed by an editorial team.

Tip
$0
Like
0
Save
0
Views 13
WalletJYS reminds readers to view blockchain rationally, stay aware of risks, and beware of virtual token issuance and speculation. All content on this site represents market information or related viewpoints only and does not constitute any form of investment advice. If you find sensitive content, please click“Report”,and we will handle it promptly。
Submit
Comment 0
Hot
Latest
No comments yet. Be the first!
Related
Cervoz Launches M.2 that meets MIL-STD-810H standards, targeting critical mission embedded systems
Cervoz Technology Announces the Launch of T449 and T459 Series M.2 2280 NVMe SSD, Compliant with MIL-STD-810H Standards, Targeting Embedded Systems in National Defense, Aerospace, Transportation, and Industrial Automation. This series supports PCIe Gen4 x4, with a maximum read speed of 5,085 MB /s and a write speed of 4,765 MB /s, and provides hardware-level data protection and destruction features.
PR Newswire
·2026-10-01 21:25:08
10
Amazon Launches a New, Smaller, and Lighter Version of Kindle with a Borderless Design
Amazon releases a redesigned Kindle e-reader, featuring borderless design, thinner and lighter body, and claiming that the new screen's page-turning speed is 30% faster than the previous generation. The new Kindle starts at $149.99, with Paperwhite and Colorsoft also being updated simultaneously.
TechCrunch
·2026-10-01 21:16:07
14
RDNA 4 natively supported; FP8: Developers have successfully enabled AMD graphics cards to use NVIDIA DLSS 4, but the current performance is still not as good as that of FSR 4.
Videocardz has discovered that the GitHub project d4r has brought NVIDIA DLSS 4 and DLSS 4.5 super-resolution support to the AMD Radeon RX 9000 series of graphics cards. This project enables AMD graphics cards to run NVIDIA DLSS libraries through a software translation layer, but it is still in the early experimental stage, and its performance during testing is lower than that of DLSS 4, DLSS 3, and FSR 4.
The Block
·2026-10-01 21:16:05
13
National Debt Relief and Freeway Insurance Reach Cooperation
National Debt Relief announces a partnership with Freeway Insurance; both parties state that they will jointly provide more resources for consumers to help them meet financial needs such as insurance costs and unsecured debts. The two companies will also act as partners of NASCAR to carry out on-site activities during the weekend of Las Vegas racing events.
PR Newswire
·2026-10-01 21:16:04
14
Alphabet stock price rises 2.3% due to Gemini directly pointing to OpenAI and Anthropic
Alphabet's stock price rose by about 2.3%. Previously, Google released Gemini 4 Argon, targeting the high-end AI models of OpenAI and Anthropic. The company also provided a pricing of $2 per million inputs and $10 per million outputs.
Coinpaper
·2026-10-01 21:06:46
14
View More