Back to dashboard
Monday, April 27, 2026 at 10:14 UTC

BinarisCEX

Cold storage breach attributed to nation-state actor.

Partial
Funds stolen
$198.40M
Recovered
$45.00M23%
Still outstanding
$153.40M
Chain
Ethereum
Category
CEX
Attack vector
Private Key Compromise
Reported by
SlowMist
Incident ID
e14

Exploit & recovery timeline

  1. Apr 27, 2026 · 08:14 UTC
    Attack preparation

    Attacker wallets funded and staged ahead of the private key compromise exploit against BinarisCEX.

  2. Apr 27, 2026 · 10:14 UTC
    Exploit executed

    $198.4M drained from BinarisCEX on Ethereum via Private Key Compromise.

  3. Apr 27, 2026 · 11:14 UTC
    Detected by SlowMist

    SlowMist flagged the anomalous transactions and published an initial alert.

  4. Apr 27, 2026 · 14:14 UTC
    Protocol response

    BinarisCEX paused affected contracts or withdrawals and began tracing outbound flows.

  5. Apr 28, 2026 · 10:14 UTC
    Funds traced

    Stolen assets followed through mixers, bridges, and exchange deposit addresses.

  6. May 4, 2026 · 10:14 UTC
    Partial recovery

    $45.0M of $198.4M recovered (23%); the remainder is still unaccounted for.

  7. May 27, 2026 · 10:14 UTC
    Investigation continues

    Remaining funds monitored across chains with exchange partners notified.