By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
News for IndiaNews for IndiaNews for India
  • Home
  • Posts
  • Search Page
  • About us
Reading: CoinDCX loses $44 mn to hackers. Why are crypto firms especially vulnerable?
Share
Font ResizerAa
News for IndiaNews for India
Font ResizerAa
  • Economics
  • Business
  • Home
  • Categories
    • Business
    • Economics
  • About us
  • Sitemap
Follow US
  • Advertise
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
News for India > Business > CoinDCX loses $44 mn to hackers. Why are crypto firms especially vulnerable?
Business

CoinDCX loses $44 mn to hackers. Why are crypto firms especially vulnerable?

Last updated: July 20, 2025 6:28 pm
3 weeks ago
Share
SHARE


Contents
What happened?Were customer funds affected?How did it happen?Can CoinDCX or WazirX be held liable?Why do crypto hacks keep happening?Who bears the brunt?

What happened and how, and why are crypto platforms especially susceptible to breaches? Mint explains.

What happened?

On 19 July, CoinDCX, India’s second-largest crypto exchange, suffered a cyberattack that cost it $44.2-million. The breach occurred in an internal operational wallet used to provide liquidity on a partner exchange, and was flagged by ethical hacker ZachXBT and later confirmed by CoinDCX’s CEO Sumit Gupta on X.

Were customer funds affected?

According to Gupta, no customer funds were affected. The compromised account was segregated from user wallets, and all assets stored in CoinDCX’s cold wallet infrastructure remained safe, he said, adding that trading and INR withdrawals continue to function normally. A cold wallet is a type of cryptocurrency storage that’s not connected to the internet for safety.

How did it happen?

CoinDCX attributed the incident to a “sophisticated server breach.” The compromised account was used for providing liquidity, which requires funds to be actively available, typically in hot wallets that are more vulnerable to hacks. The breach was contained by isolating the affected wallet.

Even short windows of access to a hot wallet can result in massive losses. The anonymous and irreversible nature of blockchain transactions means funds can be moved and laundered quickly, often before teams can respond.

Can CoinDCX or WazirX be held liable?

Though crypto platforms operate in a decentralised ecosystem, liability in India is increasingly being determined based on the custodial nature of the platform. An important but not yet explicitly defined distinction in India’s evolving crypto framework is between custodial and non-custodial platforms. Custodial platforms, such as centralised exchanges like CoinDCX and WazirX, hold users’ private keys on their behalf.

“Custodial exchanges—where user funds are stored—are expected to maintain high standards of cyber hygiene and may be held accountable for operational negligence, even if customer funds are unaffected,” said Sukrit Kapoor, Partner, King Stubb & Kasiva.

“..the absence of crypto-specific regulations cannot be a defence for poor governance or failure to safeguard digital assets,” he added.

Why do crypto hacks keep happening?

The latest incident ocurred almost exactly a year after crypto platform WazirX suffered a $234-million hack.

Crypto platforms remain attractive targets for hackers owing to a combination of technical complexity, regulatory gaps, and limited legal recourse. Crypto firms deal with complex integrations: multiple blockchains, DeFi protocols, third-party custodians, and so on. Each new layer adds more potential vulnerabilities, especially if security isn’t uniformly strong across all components.

Also, Once funds are moved from a compromised wallet, there’s no central authority—like a bank or regulator—to freeze or recover the stolen assets. Crypto exchanges lack centralized oversight or regulation in India so there’s no way to recover stolen funds.

These repeated incidents underscore the lack of centralised oversight or regulatory protection in India’s crypto landscape. Indian crypto exchanges are not governed by a dedicated RBI or Sebi framework. However, under the IT Act, they must comply with CERT-In (Indian Computer Emergency Response Team) guidelines, which mandate reporting cybersecurity incidents within six hours and maintaining logs and records, said Rahul Hingmire, managing partner, Vis Legis Law Practice.

The lack of crypto-specific laws or regulatory oversight means restitution is highly uncertain, especially when stolen assets are transferred across wallets and jurisdictions, especially offshore. This cauused WazirX to relocate to Panama.

“Panama is a known offshore jurisdiction with weak enforcement channels for foreign judgements, especially in crypto-related matters, making any legal claim from India practically toothless,” said Raheel Patel, partner at Gandhi Law Associates. “Indian regulators and courts may issue orders, but compelling a Panamanian entity with no physical or financial footprint in India to comply is near impossible without reciprocal enforcement treaties—which don’t exist here.”

Who bears the brunt?

Previously, victims of crypto hacks had little recourse due to a lack of regulatory clarity and cross-border complications.

However, in March 2023, the Indian government brought virtual digital assets (VDAs), which include cryptocurrencies, under the purview of the Prevention of Money Laundering Act (PMLA). Crypto exchanges must now register with FIU-IND, follow KYC norms, and report suspicious activity. “While these regulations are primarily aimed at preventing money laundering and terror financing, they indirectly impose a degree of accountability and operational diligence on exchanges,” said Rohit Jain, Managing Partner, Singhania & Co.

Nonetheless, recovering lost assets remains unlikely. “Unless the foreign entity has identifiable promoters in India or assets traceable through KYC and banking trails, recovery becomes speculative,” said Rishabh Gandhi, Managing Partner at Rishabh Gandhi and Advocates.



Source link

You Might Also Like

Market capitalisation of top 10 valued companies plummets by ₹1.36 lakh crore, Reliance worst hit | Stock Market News

Wall St Week Ahead-Inflation data to test stocks as some investors brace for rally to pause | Stock Market News

One-Time Bond Pariahs Go Neck and Neck With Germany, France | Stock Market News

Vijay L Bhambwani’s Ticker: Retail bulls latching on to slender hope

Hyperlocal Deliveries Fuel 300% Stock Rise for Shopee Owner Sea | Stock Market News

Share This Article
Facebook Twitter Email Print
Previous Article If Apple makes a foldable phone, analysts say this stock will benefit
Next Article Wall St Week Ahead-Industrial sectors gains to be tested as earnings ramp up | Stock Market News
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

We influence 20 million users and is the number one business and technology news network on the planet.

Find Us on Socials

News for IndiaNews for India
© Wealth Wave Designed by Preet Patel. All Rights Reserved.
  • BUSINESS