{"id":13161,"date":"2019-05-08T08:21:17","date_gmt":"2019-05-08T08:21:17","guid":{"rendered":"https:\/\/davidgerard.co.uk\/blockchain\/?p=13161"},"modified":"2019-05-08T09:53:12","modified_gmt":"2019-05-08T09:53:12","slug":"binance-hacked-largest-tether-exchange-cuts-off-withdrawals-for-the-next-week","status":"publish","type":"post","link":"https:\/\/davidgerard.co.uk\/blockchain\/2019\/05\/08\/binance-hacked-largest-tether-exchange-cuts-off-withdrawals-for-the-next-week\/","title":{"rendered":"Binance hacked \u2014 largest Tether exchange cuts off withdrawals for the next week"},"content":{"rendered":"<p>Crypto exchange hacks are <em>incredibly<\/em> rare, and only happen every month or so. <a href=\"https:\/\/binance.zendesk.com\/hc\/en-us\/articles\/360028031711\">Today&#8217;s winner is Binance,<\/a> who lost 7000 BTC (about $40 million) in one transaction some time on Tuesday. They posted about it at 23:34 UTC on 7 May:<\/p>\n<blockquote><p>We have discovered a large scale security breach today, May 7, 2019 at 17:15:24 (UTC). Hackers were able to obtain a large number of user API keys, 2FA codes, and potentially other info. The hackers used a variety of techniques, including phishing, viruses and other attacks. We are still concluding all possible methods used.<\/p><\/blockquote>\n<p>This is <a href=\"https:\/\/www.blockchain.com\/btc\/tx\/e8b406091959700dbffcff30a60b190133721e5c39e89bb5fe23c5a554ab05ea\">the hack transaction.<\/a> Many of the outputs are SegWit <a href=\"https:\/\/en.bitcoin.it\/wiki\/Bech32\">bech32<\/a> addresses, which a lot of block explorers can&#8217;t read yet \u2014 try <a href=\"https:\/\/blockchair.com\/bitcoin\/\">Blockchair<\/a> to read those, if you want to go sleuthing. (<a href=\"https:\/\/blockchair.com\/bitcoin\/address\/bc1qp6k6tux6g3gr3sxw94g9tx4l0cjtu2pt65r6xp\">Example.<\/a>)<\/p>\n<p>Oh, and all withdrawals are suspended for a week.<\/p>\n<h3>Immediate consequences of the hack<\/h3>\n<p>Binance has reassured customers that their <a href=\"https:\/\/www.binance.vision\/glossary\/secure-asset-fund-for-users\">SAFU insurance fund<\/a> fully covers the loss, and customers will not be out anything.<\/p>\n<p>The SAFU fund was created after <a href=\"https:\/\/binance.zendesk.com\/hc\/en-us\/articles\/360006675312\">July 2018 irregularities<\/a> on the exchange involving <a href=\"https:\/\/thenextweb.com\/hardfork\/2018\/07\/05\/syscoin-binance-cryptocurrency-2\/\">Syscoin,<\/a> a minor altcoin. SAFU contains only Binance&#8217;s own BNB on-exchange token \u2014 and the July 2018 compensation to affected traders was paid out in BNB.<\/p>\n<p>Binance proprietor Changpeng Zhao (CZ) did a 37-minute Periscope stream <a href=\"https:\/\/www.youtube.com\/watch?v=CDm-m1FNl1w&amp;feature=youtu.be\">a few hours ago,<\/a> after 29 hours without sleep.<\/p>\n<p>Immediately upon the hack announcement, the Bitcoin price went down $200, between 23:30 UTC on 7 May and 00:15 UTC on 8 May:<\/p>\n<p>&nbsp;<\/p>\n<p><a href=\"https:\/\/davidgerard.co.uk\/blockchain\/2019\/05\/08\/binance-hacked-largest-tether-exchange-cuts-off-withdrawals-for-the-next-week\/coinbase-btc-usd-2019-05-08\/\" rel=\"attachment wp-att-13170\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter wp-image-13170\" src=\"https:\/\/davidgerard.co.uk\/blockchain\/wp-content\/uploads\/2019\/05\/coinbase-btc-usd-2019-05-08.png\" alt=\"\" width=\"550\" height=\"199\" srcset=\"https:\/\/davidgerard.co.uk\/blockchain\/wp-content\/uploads\/2019\/05\/coinbase-btc-usd-2019-05-08.png 683w, https:\/\/davidgerard.co.uk\/blockchain\/wp-content\/uploads\/2019\/05\/coinbase-btc-usd-2019-05-08-300x108.png 300w\" sizes=\"auto, (max-width: 550px) 100vw, 550px\" \/><\/a><\/p>\n<p style=\"text-align: center;\"><i><small>BTC price in US Dollars on Coinbase last night, times in BST (UTC+1)<\/small><\/i><\/p>\n<p>&nbsp;<br \/>\nCZ says that Coinbase has pledged to <a href=\"https:\/\/twitter.com\/cz_binance\/status\/1125956814720253952\">block deposits from the hack addresses.<\/a> Of course, it&#8217;s trivial to move the coins to yet another address \u2014 there&#8217;s no details as to how many transactions past the hack will also be blocked.<\/p>\n<p><a href=\"https:\/\/rubin.io\/\">Jeremy Rubin<\/a> floated the idea that Binance could pay the miners to <a href=\"https:\/\/www.coindesk.com\/binance-may-consider-bitcoin-rollback-following-40-million-hack\">roll back the hack transaction on the Bitcoin blockchain<\/a> \u2014 but Binance decided this was really just <a href=\"https:\/\/twitter.com\/cz_binance\/status\/1126002001093939200\">not possible,<\/a> let alone a good idea.<\/p>\n<p>&nbsp;<\/p>\n<p><a href=\"https:\/\/davidgerard.co.uk\/blockchain\/2019\/05\/08\/binance-hacked-largest-tether-exchange-cuts-off-withdrawals-for-the-next-week\/bitcoin-reorg-to-reverse-hack\/\" rel=\"attachment wp-att-13187\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter wp-image-13187\" src=\"https:\/\/davidgerard.co.uk\/blockchain\/wp-content\/uploads\/2019\/05\/bitcoin-reorg-to-reverse-hack.jpg\" alt=\"\" width=\"400\" height=\"483\" srcset=\"https:\/\/davidgerard.co.uk\/blockchain\/wp-content\/uploads\/2019\/05\/bitcoin-reorg-to-reverse-hack.jpg 589w, https:\/\/davidgerard.co.uk\/blockchain\/wp-content\/uploads\/2019\/05\/bitcoin-reorg-to-reverse-hack-249x300.jpg 249w\" sizes=\"auto, (max-width: 400px) 100vw, 400px\" \/><\/a><\/p>\n<p>&nbsp;<\/p>\n<h3>Withdrawals are suspended \u2014 for you<\/h3>\n<p>The important bit is that trading will continue \u2014 but Bitcoin deposits and withdrawals are suspended for a week. Your coins are <a href=\"https:\/\/binance.zendesk.com\/hc\/en-us\/articles\/360028031711\">stuck on the exchange:<\/a><\/p>\n<blockquote><p>Most importantly, deposits and withdrawals will need to REMAIN SUSPENDED during this period of time. We beg for your understanding in this difficult situation.<\/p>\n<p>We will continue to enable trading, so that you may adjust your positions if you wish. Please also understand that the hackers may still control certain user accounts and may use those to influence prices in the meantime. We will monitor the situation closely. But we believe with withdrawals disabled, there isn\u2019t much incentive for hackers to influence markets.<\/p><\/blockquote>\n<p>That&#8217;s <a href=\"https:\/\/twitter.com\/Bitfinexed\/status\/1125913758822486022\">at least 188,000 bitcoins<\/a> that can&#8217;t be sold on real markets for a week. The Bitcoin price on Binance is likely to diverge wildly from the prices on exchanges still open to withdrawals.<\/p>\n<p>Binance itself \u2014 and insiders \u2014 would be able to move their coins off just fine. The price differences would create remarkable arbitrage opportunities, and ability to capture what liquidity exists in the markets \u2014 for those privileged few who can still deposit and withdraw.<\/p>\n<h3>The Tether problem<\/h3>\n<p>Binance is a Tether exchange \u2014 in fact, it&#8217;s the largest Tether exchange. (Its other stablecoins and its gateways to conventional currency have trivial volume.) And Tether has a number of serious issues at present, with Bitfinex and Tether&#8217;s <a href=\"https:\/\/davidgerard.co.uk\/blockchain\/2019\/04\/30\/bitfinex-tether-and-the-ny-attorney-general-everything-is-fine\/\">problems in New York<\/a> over the past week.<\/p>\n<p>&nbsp;<\/p>\n<p>https:\/\/twitter.com\/soleil_dusoir9\/status\/1125951290704580608<\/p>\n<p>&nbsp;<\/p>\n<p>Bitcoin prices are already being affected by Bitfinex and Tether&#8217;s issues \u2014 there&#8217;s a <a href=\"https:\/\/cryptowat.ch\/assets\/btc\">massive spread between the prices<\/a> for BTC-USD on Bitfinex and the prices on other US Dollar exchanges.<\/p>\n<p>Though, as I write this, there&#8217;s no large spread on BTC-USDT between Binance and other Tether exchanges.<\/p>\n<p>Meanwhile, Bitfinex&#8217;s \u2014 not Binance&#8217;s \u2014 cold wallet is <a href=\"https:\/\/twitter.com\/Bitfinexed\/status\/1125784717649960960\">being drained at an amazing rate<\/a> \u2014 as customers rush to get their bitcoins off the exchange, to somewhere they can cash them out.<\/p>\n<p>Binance customers can&#8217;t get their coins out for the next week. But, here&#8217;s hoping there&#8217;s no big Bitcoin price crash before withdrawals go back on!<\/p>\n<p>&nbsp;<\/p>\n<br><br><div align=\"center\"><p><a href=\"https:\/\/www.patreon.com\/bePatron?u=8420236\"><img src=\"https:\/\/davidgerard.co.uk\/blockchain\/wp-content\/uploads\/2021\/10\/become_a_patron_button.svg\" alt=\"Become a Patron!\" title=\"Become a Patron!\" width=217 height=51><\/a><br><p style=\"align:center;\" class=\"patreon-badge\"><i>Your subscriptions keep this site going. <a href=\"https:\/\/www.patreon.com\/bePatron?u=8420236\">Sign up today!<\/a><\/i><\/p><\/div>","protected":false},"excerpt":{"rendered":"<p>Crypto exchange hacks are incredibly rare, and only happen every month or so. Here&#8217;s hoping there&#8217;s no big Bitcoin price crash before withdrawals are back on!<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"jetpack_post_was_ever_published":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[1],"tags":[568,21,38,1275,39],"class_list":["post-13161","post","type-post","status-publish","format-standard","hentry","category-uncategorised","tag-binance","tag-bitcoin","tag-bitfinex","tag-cz","tag-tether"],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/davidgerard.co.uk\/blockchain\/wp-json\/wp\/v2\/posts\/13161","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/davidgerard.co.uk\/blockchain\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/davidgerard.co.uk\/blockchain\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/davidgerard.co.uk\/blockchain\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/davidgerard.co.uk\/blockchain\/wp-json\/wp\/v2\/comments?post=13161"}],"version-history":[{"count":35,"href":"https:\/\/davidgerard.co.uk\/blockchain\/wp-json\/wp\/v2\/posts\/13161\/revisions"}],"predecessor-version":[{"id":13198,"href":"https:\/\/davidgerard.co.uk\/blockchain\/wp-json\/wp\/v2\/posts\/13161\/revisions\/13198"}],"wp:attachment":[{"href":"https:\/\/davidgerard.co.uk\/blockchain\/wp-json\/wp\/v2\/media?parent=13161"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/davidgerard.co.uk\/blockchain\/wp-json\/wp\/v2\/categories?post=13161"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/davidgerard.co.uk\/blockchain\/wp-json\/wp\/v2\/tags?post=13161"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}