Cryptopolitan
2025-07-31 11:54:51

Police arrest CoinDCX employee involved in $44M exploit

One of India’s biggest crypto heists took a dramatic twist when Bengaluru police arrested a CoinDCX software engineer. The detainment comes after $44 million of funds vanished from the platform, and it may all boil down to a classic case of social engineering. The suspect, Rahul Agarwal, was a full-time employee at CoinDCX with access to internal systems. On July 19, around 2:37 am, someone used his credentials to transfer just one USDT, which was a test run. Meanwhile, by 9:40 am, the hackers had siphoned off a jaw-dropping ₹379 crore ($44 million) across six wallets. Freelance gig or inside job? CoinDCX’s internal probe revealed that Rahul’s company laptop had been compromised. The suspect claimed that he was unaware of the breach and insisted he was a victim himself. However, he admitted to taking freelance gigs from unknown third parties via WhatsApp calls and foreign numbers, which eventually raised serious red flags. Police reportedly found ₹15 lakh ($17,000) deposited into Rahul’s account from unknown sources. One of the files he received from these “clients” may have been a Trojan that gave hackers access to CoinDCX systems. He was detained on July 26, and investigations are in full swing now. The massive hack came to light when the on-chain sleuth ZachXBT flagged a breach at CoinDCX . Later, the platform’s CEO, Sumit Gupta, confirmed the incident. ZachXBT, in a post, highlighted that a CoinDCX team member was telling people to engage with Sumit’s post to appreciate the platform’s transparency. Meanwhile, the CoinDCX team waited for 17 hours to disclose the breach, and that came after the sleuth alerted the public about the incident. Source: ZachXBT’s X Reacting to the arrest, ZachXBT stated “why are people so negligent?” He also wrote, “is a software engineer, yet opens random files sent to him on a company laptop.” CoinDCX blames sophisticated attackers CoinDCX CEO, in a fresh post, mentioned that some media reports have surfaced referencing the FIR the platform filed with the Karnataka Police regarding the security incident that impacted the platform. However, as the investigation is ongoing, they cannot engage with the media or public on the issue. He added that the breach appears to be the result of a “sophisticated social engineering attack”, with the attackers targeting employees to compromise internal systems. They claim that the company is fully cooperating with law enforcement. Some media reports have surfaced referencing the FIR we filed with the Karnataka Police regarding the security incident that impacted our platform. As this is an ongoing investigation, we unfortunately cannot engage with the media or public on this issue. We want to ensure the… — Sumit Gupta (CoinDCX) (@smtgpt) July 31, 2025 The platform has launched a “Recovery Bounty Programme” offering 25% of any retrieved funds to anyone who can help. That’s a cool $11 million in bounty, one of the largest ever seen in India’s crypto space. On the market side, the global crypto market cap surged marginally over the last day to stand at $3.89 trillion. Bitcoin price is up by 30% in the last 30 days, hovering above the $118k zone. Ethereum added 57% of gains in the same period. ETH is trading at an average price of $3,857. KEY Difference Wire helps crypto brands break through and dominate headlines fast

Crypto 뉴스 레터 받기
면책 조항 읽기 : 본 웹 사이트, 하이퍼 링크 사이트, 관련 응용 프로그램, 포럼, 블로그, 소셜 미디어 계정 및 기타 플랫폼 (이하 "사이트")에 제공된 모든 콘텐츠는 제 3 자 출처에서 구입 한 일반적인 정보 용입니다. 우리는 정확성과 업데이트 성을 포함하여 우리의 콘텐츠와 관련하여 어떠한 종류의 보증도하지 않습니다. 우리가 제공하는 컨텐츠의 어떤 부분도 금융 조언, 법률 자문 또는 기타 용도에 대한 귀하의 특정 신뢰를위한 다른 형태의 조언을 구성하지 않습니다. 당사 콘텐츠의 사용 또는 의존은 전적으로 귀하의 책임과 재량에 달려 있습니다. 당신은 그들에게 의존하기 전에 우리 자신의 연구를 수행하고, 검토하고, 분석하고, 검증해야합니다. 거래는 큰 손실로 이어질 수있는 매우 위험한 활동이므로 결정을 내리기 전에 재무 고문에게 문의하십시오. 본 사이트의 어떠한 콘텐츠도 모집 또는 제공을 목적으로하지 않습니다.