Indian cryptocurrency exchange CoinDCX confirmed a major security breach on Saturday (July 19, 2025) that resulted in hackers stealing $44 million from the platform.
Co-founder Sumit Gupta acknowledged the attack while reassuring users that customer funds remain secure and trading operations continue normally.
The cyberattack targeted one of CoinDCX’s internal operational accounts, which was specifically designed for liquidity management to facilitate smoother trading operations.
According to Gupta, this compromised account was completely segregated from customer wallets, limiting the exposure to the exchange’s internal systems rather than user funds.
The hackers successfully gained unauthorized access to this operational account on Saturday, exploiting vulnerabilities that allowed them to drain $44 million from the platform’s reserves.
The attack represents a significant financial blow to one of India’s largest cryptocurrency exchanges, highlighting the ongoing security challenges facing digital asset platforms globally.
Gupta moved quickly to contain the incident by isolating the affected operational account, preventing further unauthorized access or potential spread to other systems.
The rapid response helped limit the scope of the breach to the single compromised account, avoiding a more catastrophic scenario that could have impacted customer assets directly.
Customer Assets Remain Safe
Despite the substantial financial loss, CoinDCX emphasized that customer funds and assets remain completely unaffected by the security breach. Key protective measures and operational continuity include:
- Complete customer wallet protection: The exchange’s architecture maintains strict segregation between operational accounts and customer wallets, proving effective in protecting user investments during the attack.
- Confirmed asset safety: “I confirm that the CoinDCX wallets used to store customer assets are not impacted and are completely safe,” Gupta stated in his transparency-focused social media announcement.
- Uninterrupted trading operations: All trading activities and withdrawal functions continue to operate normally, with no disruption to customer services.
- Full service availability: Users can continue executing trades, depositing funds, and withdrawing their cryptocurrencies without any restrictions or delays related to the security incident.
- Treasury absorption of losses: The $44 million loss will be fully absorbed by CoinDCX’s treasury reserves, ensuring no financial burden falls on customers or investors.
This approach demonstrates the exchange’s financial resilience and commitment to protecting user interests despite suffering a significant internal loss. The separation of funds represents a critical security measure that prevented the hack from directly impacting the exchange’s user base.
Investigation Underway
CoinDCX has released its internal security and operations teams to conduct a comprehensive investigation into the breach.
The exchange is collaborating with leading cybersecurity partners to analyze the attack vectors, trace the movement of stolen funds, and identify potential recovery mechanisms.
The investigation focuses on understanding how the attackers gained access to the operational account and identifying security gaps that enabled the breach.
This analysis will inform enhanced security measures designed to prevent similar incidents in the future.
Gupta acknowledged that security incidents, while unsettling, provide valuable learning opportunities for strengthening platform defenses.
The exchange commits to implementing additional security measures based on investigation findings and industry best practices.
CoinDCX has been experiencing strong growth recently, with spot trading volumes surging 32% month-on-month to $492 million in May 2025, representing a 132% year-over-year increase.
The exchange’s ability to absorb this loss while maintaining operations demonstrates its financial stability during a period of expansion.
Find this Story Interesting! Follow us on LinkedIn and X to Get More Instant Updates.
.webp?w=356&resize=356,220&ssl=1)




