{"id":5228,"date":"2025-07-21T05:41:58","date_gmt":"2025-07-21T05:41:58","guid":{"rendered":"https:\/\/bitunikey.com\/news\/coindcx-goes-live-again-inr-withdrawals-reopen-after-44m-breach\/"},"modified":"2025-07-21T05:42:02","modified_gmt":"2025-07-21T05:42:02","slug":"coindcx-goes-live-again-inr-withdrawals-reopen-after-44m-breach","status":"publish","type":"post","link":"https:\/\/bitunikey.com\/news\/coindcx-goes-live-again-inr-withdrawals-reopen-after-44m-breach\/","title":{"rendered":"CoinDCX goes live again\u2014INR withdrawals reopen after $44m breach"},"content":{"rendered":"<p><\/p>\n<div class=\"post-detail__content blocks\">\n<p class=\"is-style-lead\">India\u2019s largest crypto exchange is back online after a $44 million breach exposed a blind spot in its operational infrastructure. <\/p>\n<p class=\"is-style-default\">While no customer funds were touched, the CoinDCX hack\u2014traced to a Tornado Cash-funded wallet\u2014raises fresh questions about transparency and wallet hygiene in a market still building user trust. Now fully operational, CoinDCX is vowing stronger safeguards and a bug bounty program to stay ahead of the next exploit.<\/p>\n<h3 class=\"wp-block-heading\"><strong>ZachXBT IDs attack<\/strong><\/h3>\n<p class=\"is-style-default\">On-chain investigator ZachXBT first <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/t.me\/investigations\/264\" target=\"_blank\">identified<\/a> the attack approximately 17 hours prior to the exchange publicly disclosing the incident.<\/p>\n<p>ZachXBT traced the attack to an address funded with 1 ETH from Tornado Cash, with the attacker later bridging stolen funds from Solana (SOL) to Ethereum (ETH).<\/p>\n<p>Tel Aviv-based security firm Cyvers flagged the suspicious withdrawals, prompting manual attribution, as the affected CoinDCX hot wallet lacked public tags and proof-of-reserves documentation.<\/p>\n<figure class=\"wp-block-embed is-type-rich is-provider-twitter wp-block-embed-twitter\">\n<div class=\"wp-block-embed__wrapper\">\n<blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\">\n<p lang=\"en\" dir=\"ltr\">Hi everyone,<\/p>\n<p>At <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/twitter.com\/CoinDCX?ref_src=twsrc%5Etfw\" target=\"_blank\">@CoinDCX<\/a>, we have always believed in being transparent with our community, hence I am sharing this with you directly.<\/p>\n<p>Today, one of our internal operational accounts \u2013 used only for liquidity provisioning on a partner exchange \u2013 was compromised due to a\u2026 <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/t.co\/L1kZhjKAxQ\" target=\"_blank\">pic.twitter.com\/L1kZhjKAxQ<\/a><\/p>\n<p>\u2014 Sumit Gupta (CoinDCX) (@smtgpt) <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/twitter.com\/smtgpt\/status\/1946597988660645900?ref_src=twsrc%5Etfw\" target=\"_blank\">July 19, 2025<\/a><\/p><\/blockquote>\n<\/div>\n<\/figure>\n<h3 class=\"wp-block-heading\"><strong>Customer funds remain secure<\/strong><\/h3>\n<p>CoinDCX CEO Sumit Gupta addressed the community directly and mentioned that the breach did not impact customer assets.<\/p>\n<p>\u201cNo customer funds have been impacted. Your assets remain completely safe and protected in our secure cold wallet infrastructure,\u201d Gupta stated in his initial disclosure.<\/p>\n<p>    <!-- .cn-block-related-link --><\/p>\n<p>The hack affected an internal operational account used solely to provision liquidity on a partner exchange, not consumer deposit wallets.<\/p>\n<p>\u201cThe incident was quickly contained by isolating the affected operational account. Since our operational accounts are segregated from customer wallets, the exposure is only limited to this specific account,\u201d Gupta explained.<\/p>\n<h3 class=\"wp-block-heading\"><strong>CoinDCX exchange restores full functionality<\/strong><\/h3>\n<p>Following the security incident, CoinDCX temporarily suspended certain operations while investigating the breach. The exchange has since restored all trading activities and INR withdrawal capabilities without restrictions.<\/p>\n<figure class=\"wp-block-embed is-type-rich is-provider-twitter wp-block-embed-twitter\">\n<div class=\"wp-block-embed__wrapper\">\n<blockquote class=\"twitter-tweet\" data-width=\"500\" data-dnt=\"true\">\n<p lang=\"en\" dir=\"ltr\">Trading and INR withdrawals on CoinDCX are fully operational and running smoothly. \u2705<\/p>\n<p>You can withdraw your INR anytime \u2014  without restrictions. We\u2019re here for you, and we stand by our commitment to honour all withdrawal requests. \ud83d\udcaf<\/p>\n<p>A gentle reminder: Don\u2019t panic sell your\u2026 <a href=\"https:\/\/t.co\/e4DWVvYx0i\">https:\/\/t.co\/e4DWVvYx0i<\/a><\/p>\n<p>&mdash; Sumit Gupta (CoinDCX) (@smtgpt) <a href=\"https:\/\/twitter.com\/smtgpt\/status\/1946650609152819589?ref_src=twsrc%5Etfw\">July 19, 2025<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script>\n<\/div>\n<\/figure>\n<p>\u201cTrading and INR withdrawals on CoinDCX are fully operational and running smoothly. You can withdraw your INR anytime \u2014 without restrictions,\u201d Gupta announced. He urged users against panic selling, warning that hasty decisions \u201coften leads to poor prices and unnecessary losses.\u201d<\/p>\n<h3 class=\"wp-block-heading\"><strong>What\u2019s next<\/strong><\/h3>\n<p>The exchange is collaborating with its partner platform to block and recover stolen assets while implementing additional security measures.<\/p>\n<p>CoinDCX plans to launch a bug bounty program to incentivize security researchers to identify potential vulnerabilities.<\/p>\n<p>\u201cEvery security incident is a learning and we will learn from this and further strengthen our platform,\u201d Gupta stated.<\/p>\n<p>    <!-- .cn-block-related-link --><\/p><\/div>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n","protected":false},"excerpt":{"rendered":"<p>India\u2019s largest crypto exchange is back online after a $44 million breach exposed a blind spot in its operational infrastructure. While no customer funds were touched, the CoinDCX hack\u2014traced to&hellip;<\/p>\n","protected":false},"author":1,"featured_media":2400,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-5228","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cryptocurrency"],"_links":{"self":[{"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/posts\/5228","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/comments?post=5228"}],"version-history":[{"count":1,"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/posts\/5228\/revisions"}],"predecessor-version":[{"id":5229,"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/posts\/5228\/revisions\/5229"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/media\/2400"}],"wp:attachment":[{"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/media?parent=5228"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/categories?post=5228"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/tags?post=5228"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}