In early June 2024, the cryptocurrency world was shaken by a massive theft that targeted Bitget, one of the leading digital‑asset exchanges. Hackers managed to siphon off a substantial amount of crypto assets, prompting an urgent response from the broader industry.

Two of the most influential stablecoin issuers—Circle, the company behind USDC, and Tether, the issuer of USDT—joined forces to mitigate the damage by attempting to freeze the illicit wallet that held a portion of the stolen funds. The breach at Bitget was notable not only for its size but also for the sophistication of the attack. According to preliminary investigations, the perpetrators exploited a combination of phishing tactics and a vulnerability in the exchange’s internal wallet management system. By the time the breach was detected, the hackers had already moved a large portion of the stolen assets into multiple wallets, making the trail difficult to follow.

Among the assets taken were significant quantities of Bitcoin (BTC), Ethereum (ETH), as well as stablecoins such as USDT and USDC, which together accounted for roughly $318,000 of the total loss. Circle and Tether’s decision to intervene was driven by a broader industry principle: while decentralized assets are, by design, resistant to centralized control, stablecoin issuers retain certain levers that can be used to curb illicit activity.

Both companies maintain a blacklist of addresses that are prohibited from receiving or sending their respective tokens. By adding the compromised wallet to these blacklists, Circle and Tether effectively rendered the USDT and USDC held in that address unusable on compliant platforms. This means that any exchange, wallet service, or financial institution that respects the issuers’ compliance policies will automatically reject transactions involving the blacklisted address. The practical impact of this action is twofold.

First, it prevents the immediate conversion of the frozen stablecoins into fiat or other cryptocurrencies on compliant platforms, thereby slowing the hackers’ ability to liquidate their gains. Second, it sends a clear message to the broader ecosystem that stablecoin issuers are willing to take decisive steps when their tokens are used in illicit contexts.

This move aligns with ongoing regulatory expectations that stablecoin providers implement robust anti‑money‑laundering (AML) and counter‑terrorist financing (CTF) controls. Despite the success in freezing the USDT and USDC, the majority of the stolen funds remain in Ethereum (ETH).

Unlike ERC‑20 tokens such as USDT and USDC, native Ether does not have a central authority that can block or freeze transactions. Ethereum’s design is fundamentally permission‑less, meaning that once a transaction is signed and broadcast to the network, it is irreversible and cannot be halted by any single entity.

This characteristic underscores a key challenge for regulators and industry participants: while stablecoins can be partially controlled through issuer policies, the underlying blockchain assets they are often paired with remain beyond direct intervention. The Bitget incident has sparked renewed debate about the balance between decentralization and security.

Critics argue that the inability to freeze native crypto assets creates a loophole that criminals can exploit, while proponents of decentralization contend that any form of central control undermines the core ethos of blockchain technology. In response, several proposals have emerged, ranging from the development of on‑chain governance mechanisms that could allow for emergency freezes, to the creation of layered compliance solutions that monitor and flag suspicious activity without directly interfering with the blockchain’s immutable ledger. From a technical standpoint, Circle and Tether leveraged their existing compliance infrastructure to execute the blacklist. Both companies maintain real‑time monitoring systems that scan blockchain activity for addresses flagged for illicit behavior.

When an address is identified as suspicious, the issuers can issue a transaction that updates the token contract’s internal list of prohibited addresses. This update is propagated across the network, ensuring that any attempt to transfer the token to or from the blacklisted address is automatically rejected by the smart contract logic. It is important to note that this mechanism only works for tokens that are built with such a blacklist feature; not all ERC‑20 tokens include this capability. The broader crypto community has responded positively to the swift action taken by Circle and Tether.

Industry analysts see this as a sign that stablecoin issuers are taking their regulatory responsibilities seriously and are willing to collaborate with exchanges, law‑enforcement agencies, and other stakeholders to combat theft and fraud. Moreover, the incident has highlighted the importance of having diversified risk mitigation strategies. While freezing stablecoins can buy time and limit immediate losses, it is not a panacea for all types of crypto theft, especially when the stolen assets include non‑fungible tokens (NFTs) or native coins that cannot be frozen.

Looking ahead, both Circle and Tether have indicated that they will continue to refine their monitoring tools and expand cooperation with global regulators. They are also exploring the possibility of implementing more granular controls, such as transaction‑level limits and real‑time alerts for large movements of stablecoins. These enhancements aim to provide a more proactive defense against future attacks, reducing the window of opportunity for hackers to move funds undetected. In conclusion, the Bitget hack serves as a stark reminder of the evolving threat landscape in the cryptocurrency sector.

While the loss of assets remains a painful reality for the exchange and its users, the coordinated response by Circle and Tether demonstrates that the industry possesses tools to limit damage when stablecoins are involved. The inability to freeze native Ether, however, underscores a persistent vulnerability that will likely drive further innovation in blockchain security and regulatory frameworks. As the ecosystem matures, a combination of technological safeguards, robust compliance measures, and collaborative efforts among issuers, exchanges, and regulators will be essential to protect users and maintain trust in digital finance.