Document Forgery: Main Cause of OKX Account Hacks

3 Min Read

On June 12, 2024, cryptocurrency exchange OKX confirmed a security breach involving multiple user accounts, resulting in the theft of client funds.

  • OKX identified document forgery as the main cause of the breach.
  • Security measures with Google Authenticator and SMS verification were not compromised.
  • All affected clients have been fully compensated.
  • OKX plans to introduce new security features to prevent future incidents.

Document Forgery Leads to Security Breach at OKX

On June 12, 2024, the cryptocurrency exchange OKX confirmed a breach in several user accounts, leading to significant financial losses. The breach was attributed to forged documents and unauthorized access to personal information. Contrary to initial speculation, OKX assured users that the incident was not due to vulnerabilities in their security systems, such as Google Authenticator or SMS verification.

Details of the Incident

According to OKX, the attackers managed to obtain sensitive user information through document forgery. This breach allowed them unauthorized access to user accounts and the capability to siphon off funds. Despite the breach, OKX emphasized the robustness of their security protocols, denying any connection between the incident and their existing verification tools.

Expert Opinions and Speculations

Earlier theories from security experts at SlowMist suggested that hackers intercepted SMS messages to gain access to accounts and create new API keys for trading and withdrawals. Additionally, the Dilation Effect group indicated a potential loophole allowing bypassing of Google Authenticator or SMS verification without triggering a 24-hour suspension on withdrawals. However, OKX has firmly denied these claims, maintaining that the breach was solely due to document forgery.

OKX’s Response and Future Measures

In response to the breach, OKX has taken several steps to enhance its security framework. The exchange has improved its facial recognition controls using artificial intelligence and fully compensated all affected clients. Additionally, OKX plans to implement a mechanism for the expiration of verified addresses to prevent similar incidents in the future.

Broader Impact on the Crypto Market

This breach is a stark reminder of the ongoing security challenges in the cryptocurrency space. The incident, along with a previous hack involving $2 million stolen via Telegram and deepfake videos, led to a substantial $630 million outflow from OKX within a week. Despite these setbacks, OKX’s swift response and commitment to customer compensation and enhanced security measures may help restore user confidence and stability in the platform.

US Treasury’s Over-$5B Buyback Fails to Halt 10-Year Bond Sell-Off

The U.S. Treasury accepted $5.2 billion in offers during its first expanded long-term bond buyback on September 10, while the 10-year yield subsequently approached 4.98%.

6 Min Read
Mexican Authorities Find 300-GPU Crypto Farm, Suspect Electricity Theft

Mexican authorities uncovered a suspected illegal cryptocurrency mining farm near the Necaxa dam in Tlaola, Puebla, finding about 300 GPUs and investigating possible electricity theft and money laundering.

4 Min Read
OpenAI Faces Lawsuit From Man Saying ChatGPT Convinced Him He Is Jesus

Michael Lines sued OpenAI and CEO Sam Altman, alleging ChatGPT reinforced religious delusions during a 2025 manic episode ending in a March suicide attempt; OpenAI said it is reviewing the…

5 Min Read
Canary Capital Launches First US Spot TRX ETF With Staking

Canary Capital launched the Canary Staked TRX ETF on Cboe BZX under ticker TRXS on Sept. 9, 2026, offering direct TRX exposure and staking rewards.

5 Min Read
Anthropic Models 3 US Economic Scenarios Through 2030

Anthropic published a model outlining three scenarios for the U.S. economy through 2030, with its extreme scenario suggesting annual GDP growth could reach 15% alongside historically high unemployment.

7 Min Read