Historical Exchange IndexA quiet registry of crypto exchanges, active and gone.

Reviewed event layer

Exchange incidents

Browse reviewed exchange incidents and lifecycle disruptions linked back to entity dossiers and supporting evidence.

Page 4 of 20 · showing 76100 of 494

Timeline events494
Affected exchanges291
Critical events283
Event-linked sources839

Leading recorded types

Incident mix

2025

25 events on this page
Regulatory actionhigh
Bit2MeCEXactive

Spain's CNMV authorised Bit2Me under MiCA

Spain's National Securities Market Commission authorised Bitcoinforme S.L., operating as Bit2Me, as a crypto-asset service provider under the European Union's MiCA framework by resolution dated July 28, 2025.

Status effect: activeConfidence: highDirect event-linked evidence: 2
Withdrawals suspendedcritical
WOO XCEXactive

WOO X temporarily paused withdrawals

As a precaution after the unauthorized-withdrawal incident, WOO X temporarily suspended withdrawals while completing an internal review and coordinating with security teams and other exchanges.

Status effect: limitedConfidence: highDirect event-linked evidence: 1
Hackcritical
WOO XCEXactive

WOO X reported unauthorized withdrawals from nine accounts

WOO X reported a contained incident in which nine user accounts experienced unauthorized withdrawals totaling about USD 14 million, while saying the affected users would be fully covered.

Status effect: limitedConfidence: highDirect event-linked evidence: 2
Withdrawals suspendedhigh
CoinDCXCEXactive

CoinDCX paused or limited some services after the breach

Reports described temporary product/service restrictions after the breach, including Web3 / INR and crypto-withdrawal handling, while CoinDCX worked to contain the incident and reassure users about fund safety.

Status effect: limitedConfidence: mediumDirect event-linked evidence: 0
Hackcritical
CoinDCXCEXactive

CoinDCX confirmed an internal operational-account hack

CoinDCX confirmed a security breach involving an internal operational account, with reports estimating about USD 44 million stolen; the company said customer funds were not affected.

Status effect: limitedConfidence: highDirect event-linked evidence: 2
Trading haltedhigh
BigONECEXactive

BigONE trading was temporarily halted

Reporting described BigONE as temporarily freezing or suspending trading functions after the USD 27 million security incident while working with SlowMist to trace stolen funds.

Status effect: limitedConfidence: mediumDirect event-linked evidence: 1
Hackcritical
BigONECEXactive

BigONE suffered a USD 27 million breach

BigONE confirmed a roughly USD 27 million hot-wallet / supply-chain breach, while stating that private keys and cold storage remained safe and that user balances would be fully covered.

Status effect: limitedConfidence: highDirect event-linked evidence: 1
Hackcritical
BigONECEXactive

BigONE disclosed a USD 27 million security incident

BigONE reported that a third-party supply-chain attack modified operating logic and enabled unauthorized transfers from hot wallets, with losses estimated at approximately USD 27 million.

Status effect: limitedConfidence: highDirect event-linked evidence: 2
Trading haltedcritical
GMXDEXactive

GMX disabled v1 trading and GLP mint/redeem

GMX disabled GMX v1 trading and GLP mint/redeem functionality on Arbitrum and Avalanche after the exploit, while stating or reporting that GMX v2 was unaffected.

Status effect: limitedConfidence: highDirect event-linked evidence: 1
Exploitcritical
GMXDEXactive

GMX v1 / GLP was exploited for about USD 42 million

GMX v1 / GLP on Arbitrum was exploited for about USD 42 million, with the attacker later offered a white-hat bounty and some funds reportedly returned.

Status effect: limitedConfidence: highDirect event-linked evidence: 1
Regulatory actionhigh
BitvavoCEXactive

Bitvavo announced Dutch MiCA authorisation

Bitvavo announced that the Dutch Authority for the Financial Markets had authorised Bitvavo B.V. as a crypto-asset service provider under the European Markets in Crypto-Assets Regulation.

Status effect: activeConfidence: highDirect event-linked evidence: 2
Regulatory actionhigh

Coinbase announced Luxembourg MiCA authorization

Coinbase announced that Coinbase Luxembourg S.A. had received authorization from Luxembourg's CSSF as a crypto-asset service provider under MiCA, supporting regulated service provision across the EU and EEA through the Luxembourg entity.

Status effect: activeConfidence: highDirect event-linked evidence: 2
Hackcritical
NobitexCEXactive

Nobitex suffered a politically motivated hack

Nobitex was attacked by hackers identifying as Predatory Sparrow / Gonjeshke Darande, with roughly USD 90 million in crypto assets transferred to inaccessible or burned addresses and source-code exposure threatened.

Status effect: limitedConfidence: highDirect event-linked evidence: 2
Hackhigh
NobitexCEXactive

Nobitex suffered major security breach

Nobitex suffered a major security incident in June 2025. Public reporting and blockchain analysis described more than $90 million in crypto assets being transferred to inaccessible addresses in an apparently politically motivated attack.

Status effect: activeConfidence: highDirect event-linked evidence: 2
Regulatory actionhigh
BybitCEXactive

Bybit EU GmbH received Austrian MiCAR authorization

Austria's Financial Market Authority granted Bybit EU GmbH authorization as a crypto-asset service provider under MiCAR for custody, exchange, placing, and transfer services, supporting Bybit's regulated EEA platform rollout.

Status effect: activeConfidence: highDirect event-linked evidence: 2
Exploitcritical

Cetus Protocol suffered a major exploit

Cetus Protocol suffered a major exploit on May 22, 2025, with reports estimating about USD 223 million to USD 260 million drained from Sui/Aptos liquidity pools and more than USD 160 million of assets later frozen or recovered through the Sui ecosystem response.

Status effect: limitedConfidence: highDirect event-linked evidence: 1
Regulatory actioncritical
eXchCEXdead

German authorities seized eXch infrastructure

The Frankfurt public prosecutor's cybercrime unit and the BKA seized the Germany-based server infrastructure of eXch and confiscated cryptocurrency assets, with support from the Dutch FIOD.

Status effect: limitedConfidence: highDirect event-linked evidence: 1