Cryptocurrency exchange Bitget announced that, as a result of its investigation into a recent security incident, it was determined that the attacker exploited a vulnerability in an external security product to obtain internal authentication information. Bitget explained via X, "The attacker used the acquired authentication information to send false withdrawal commands to the wallet system, bypassing risk controls and allowing abnormal transfers to be executed. However, no private keys were leaked, and the cold wallet was not affected." It added, "We have disclosed the attacker's address and related on-chain tracing data, and we plan to finalize the internal security report this week."