TLDR
Nobitex hack leads to $73M loss, with funds traced to the Tron network; hot wallets compromised.
Hacktivist group Predatory Sparrow claims responsibility, accusing Nobitex of aiding Iranian regime sanctions evasion.
Nobitex promises full compensation for lost funds through its insurance, ensuring cold wallet assets remain secure.
Security breach raises concerns over centralized exchanges’ vulnerability, especially in regions with limited oversight.
Iran’s largest cryptocurrency exchange, Nobitex, has suffered a major security breach, resulting in a significant loss of funds. The exploit targeted the platform’s hot wallets and internal reporting infrastructure, leading to an estimated loss of $73 million.
The hack has raised concerns over the security of centralized exchanges, especially in regions with limited regulatory oversight. Blockchain investigator ZachXBT first flagged the suspicious transactions, linking the outflows to the Tron network.
Details of the Nobitex Crypto Hack
The cyberattack on Nobitex was first reported on June 18, 2025, when suspicious withdrawals from the exchange were detected.
According to ZachXBT, the funds were transferred from multiple wallets connected to the exchange. The total amount stolen was traced to a wallet on the Tron network, amounting to nearly $73 million. The attacker used the fast transaction speeds of Tron to move the stolen funds quickly, making tracking and recovery difficult.
اطلاعیه در خصوص حادثه امنیتی
صبح امروز ۲۸ خرداد، تیم فنی ما نشانههایی از دسترسی غیرمجاز به بخشی از زیرساختهای اطلاعرسانی و کیف پول گرم را شناسایی کرده است. بلافاصله پس از تشخیص، تمام دسترسیها متوقف شد و تیمهای امنیتی داخلی ما در حال بررسی دقیق ابعاد این حادثه هستند.
یادآور…
— Nobitex | نوبیتکس (@nobitexmarket) June 18, 2025
The exchange confirmed the breach, stating that it only affected the hot wallet and reporting infrastructure. Nobitex emphasized that user funds stored in cold wallets remain secure. The company has since halted its website and app operations to conduct a thorough investigation. They also assured users that losses would be compensated through an insurance fund.
Predatory Sparrow Claims Responsibility
Following the attack, the hacker group known as Predatory Sparrow, or Gonjeshke Darande, took responsibility for the incident. This pro-Israel hacktivist group has previously targeted entities linked to the Iranian government.
In a statement, they accused Nobitex of helping the Iranian regime bypass international sanctions and using the platform for military and financial operations. The group threatened to release Nobitex’s internal source code and user data, adding further concern about the scale of the breach.
Predatory Sparrow has been involved in other high-profile attacks targeting Iranian institutions. In addition to the Nobitex hack, they also claimed responsibility for an attack on Bank Sepah, a state-owned Iranian bank, accusing it of funding military activities. These actions highlight the ongoing tension between cyberattackers and Iranian institutions, particularly in the digital space.
Security and Response from Nobitex
In response to the attack, Nobitex has assured users that it is fully committed to addressing the breach. The company stated that it is investigating the incident and working with its internal security teams to understand the full scope of the exploit. “
We have detected unauthorized access to certain parts of our infrastructure,” Nobitex said in a statement. “All access was suspended immediately, and a full investigation is underway.”
The exchange has also pledged to compensate users for the stolen funds through its insurance fund. Despite the severity of the breach, Nobitex reassured users that assets stored in cold storage were unaffected. However, the hack has raised questions about the platform’s security protocols and how well it is equipped to prevent such incidents.
Stay Ahead of the Market with Benzinga Pro!
Want to trade like a pro? Benzinga Pro gives you the edge you need in today's fast-paced markets. Get real-time news, exclusive insights, and powerful tools trusted by professional traders:
- Breaking market-moving stories before they hit mainstream media
- Live audio squawk for hands-free market updates
- Advanced stock scanner to spot promising trades
- Expert trade ideas and on-demand support