Close Menu
    DevStackTipsDevStackTips
    • Home
    • News & Updates
      1. Tech & Work
      2. View All

      CodeSOD: A Unique Way to Primary Key

      July 22, 2025

      BrowserStack launches Figma plugin for detecting accessibility issues in design phase

      July 22, 2025

      Parasoft brings agentic AI to service virtualization in latest release

      July 22, 2025

      Node.js vs. Python for Backend: 7 Reasons C-Level Leaders Choose Node.js Talent

      July 21, 2025

      The best CRM software with email marketing in 2025: Expert tested and reviewed

      July 22, 2025

      This multi-port car charger can power 4 gadgets at once – and it’s surprisingly cheap

      July 22, 2025

      I’m a wearables editor and here are the 7 Pixel Watch 4 rumors I’m most curious about

      July 22, 2025

      8 ways I quickly leveled up my Linux skills – and you can too

      July 22, 2025
    • Development
      1. Algorithms & Data Structures
      2. Artificial Intelligence
      3. Back-End Development
      4. Databases
      5. Front-End Development
      6. Libraries & Frameworks
      7. Machine Learning
      8. Security
      9. Software Engineering
      10. Tools & IDEs
      11. Web Design
      12. Web Development
      13. Web Security
      14. Programming Languages
        • PHP
        • JavaScript
      Featured

      The Intersection of Agile and Accessibility – A Series on Designing for Everyone

      July 22, 2025
      Recent

      The Intersection of Agile and Accessibility – A Series on Designing for Everyone

      July 22, 2025

      Zero Trust & Cybersecurity Mesh: Your Org’s Survival Guide

      July 22, 2025

      Execute Ping Commands and Get Back Structured Data in PHP

      July 22, 2025
    • Operating Systems
      1. Windows
      2. Linux
      3. macOS
      Featured

      A Tomb Raider composer has been jailed — His legacy overshadowed by $75k+ in loan fraud

      July 22, 2025
      Recent

      A Tomb Raider composer has been jailed — His legacy overshadowed by $75k+ in loan fraud

      July 22, 2025

      “I don’t think I changed his mind” — NVIDIA CEO comments on H20 AI GPU sales resuming in China following a meeting with President Trump

      July 22, 2025

      Galaxy Z Fold 7 review: Six years later — Samsung finally cracks the foldable code

      July 22, 2025
    • Learning Resources
      • Books
      • Cheatsheets
      • Tutorials & Guides
    Home»Development»Cyberattack on CoinDCX Triggers $44M Loss, But No Impact on User Wallets

    Cyberattack on CoinDCX Triggers $44M Loss, But No Impact on User Wallets

    July 22, 2025

    CoinDCX cyberattack

    Indian cryptocurrency exchange CoinDCX has confirmed a cyberattack that resulted in a loss of approximately $44 million. The CoinDCX cyberattack, which occurred on July 19, 2025, targeted one of the platform’s internal operational accounts. CoinDCX co-founders have assured users that no customer’s funds were affected by the breach, and that trading operations remain uninterrupted. 

    Co-founder Neeraj Khandelwal disclosed the breach in a public post on X (formerly Twitter) on July 20, stating that the team had been working intensively to manage and investigate the incident. “We suffered a security attack early this morning (~17 hours ago),” Khandelwal posted. He clarified that the breach was limited to an internal account used solely for liquidity provisioning on a partner’s exchange. 

    “All the customer assets are safe, and the trading activity plus the INR withdrawals continue unhindered,” he said. Crypto withdrawals, for users who have access enabled, also remain operational. 

    CoinDCX cyberattack confirmed
    CoinDCX cyberattack confirmed (Source: X)

    CoinDCX emphasized that its customer wallets were not compromised due to the segregation between user assets and operational funds. “The incident was quickly contained by isolating the affected operational account,” Khandelwal explained, adding that the loss would be absorbed by the company’s treasury reserves. 

    Responding to the CoinDCX Cyberattack 

    CoinDCX co-founder and CEO Sumit Gupta also addressed the breach directly to reassure the community. In his statement, Gupta reiterated the platform’s commitment to transparency, confirming that customer funds remain “completely safe and protected in our secure cold wallet infrastructure.” 

    CoinDCX Cyberattack and Ongoing Investigation 
    Sumit Gupta detailing the CoinDCX cyberattack (Source: X)

    He further explained that CoinDCX had initiated a full-scale investigation with the help of top cybersecurity firms and forensic experts. “We are collaborating with the exchange partner to block and recover assets, and we’re also launching a bug bounty program,” he said. The company is taking additional steps to patch any vulnerabilities in its infrastructure to prevent similar incidents in the future. 

    The cyberattack on CoinDCX has prompted the company to temporarily suspend operations of its Web3 platform as a precautionary measure. However, CoinDCX assured users that all Web3 customer funds are also safe and that the service will resume shortly. 

    Conclusion 

    Gupta acknowledged that while the CoinDCX cyberattack was distressing, it also presents an opportunity for the company and the broader crypto industry to strengthen defenses against cyber threats. “Every security incident is a learning,” he said. “We commit to work together with experts to secure our industry. This is our time to win the war against cyberthreats.” 

    The Cyber Express has reached out to CoinDCX to learn more about this cyber incident. However, at the time of writing this, no official statement or response had been received. This is a developing story, and The Cyber Express will be closely monitoring the situation. We’ll update this post once we have more information on the CoinDCX cyberattack or any new statements from the company.  

    Source: Read More

    Facebook Twitter Reddit Email Copy Link
    Previous ArticleCrushFTP Servers Hit by Critical Zero-Day Vulnerability CVE-2025-54309
    Next Article Zero-Day Vulnerability Hits Microsoft SharePoint, Urgent Patch Issued

    Related Posts

    Development

    GPT-5 is Coming: Revolutionizing Software Testing

    July 22, 2025
    Development

    Win the Accessibility Game: Combining AI with Human Judgment

    July 22, 2025
    Leave A Reply Cancel Reply

    For security, use of Google's reCAPTCHA service is required which is subject to the Google Privacy Policy and Terms of Use.

    Continue Reading

    CVE-2025-5380 – Ashinigit XueShengZhuSu Image File Upload Remote Path Traversal Vulnerability

    Common Vulnerabilities and Exposures (CVEs)

    Elon Musk teasing a Grok male companion inspired by “50 Shades of Grey” — beating Microsoft’s AI CEO at his own game

    News & Updates
    Exploring Pages, Links, Tags, and Block References in Logseq

    Exploring Pages, Links, Tags, and Block References in Logseq

    Linux

    CVE-2025-44890 – Foresight Wireless FW-WGS-804HPT Stack Overflow Vulnerability

    Common Vulnerabilities and Exposures (CVEs)

    Highlights

    CVE-2025-32794 – OpenEMR Cross-Site Scripting (XSS) Vulnerability

    May 23, 2025

    CVE ID : CVE-2025-32794

    Published : May 23, 2025, 4:15 p.m. | 2 hours, 37 minutes ago

    Description : OpenEMR is a free and open source electronic health records and medical practice management application. A stored cross-site scripting (XSS) vulnerability in versions prior to 7.0.3.4 allows any authenticated user with patient creation privileges to inject arbitrary JavaScript code into the system by entering malicious payloads in the First and Last Name fields during patient registration. This code is later executed when viewing the patient’s encounter under Orders → Procedure Orders. Version 7.0.3.4 contains a patch for the issue.

    Severity: 7.6 | HIGH

    Visit the link for more details, such as CVSS details, affected products, timeline, and more…

    PyQSO – contact logging tool for amateur radio operators

    June 12, 2025

    Claude Code’s new tool is all about maximizing ROI in your organization – how to try it

    July 16, 2025

    CISA warns of ConnectWise ScreenConnect bug exploited in attacks

    June 3, 2025
    © DevStackTips 2025. All rights reserved.
    • Contact
    • Privacy Policy

    Type above and press Enter to search. Press Esc to cancel.