Sunday, September 13, 2026

Biggest-Ever Bitcoin Hack Uncovered: $3.5B Stolen in Silent Breach

A massive cryptocurrency theft that remained hidden for over four years has been uncovered, revealing what may be the largest Bitcoin hack in history.

LuBian, once one of the world’s most prominent Bitcoin mining pools, lost approximately $3.5 billion in a sophisticated attack that went largely undetected since December 2020.

The breach began on December 28, 2020, when hackers successfully infiltrated LuBian’s systems and made off with over 90% of the mining pool’s Bitcoin holdings.

At the time of the attack, LuBian controlled nearly 6% of the Bitcoin network’s total hash rate, making it a significant player in the cryptocurrency mining ecosystem as of May 2020.

The attackers didn’t stop there. Just one day later, on December 29, 2020, approximately $6 million worth of additional Bitcoin and USDT was stolen from a LuBian address operating on the Bitcoin Omni layer, demonstrating the hackers’ thorough understanding of the company’s infrastructure and digital asset holdings.

What makes this case particularly striking is the extended period the theft remained undetected by the broader cryptocurrency community.

The hack only came to light recently through analysis conducted by blockchain intelligence firm Arkham, highlighting significant gaps in transparency and security reporting within the cryptocurrency mining sector.

Following the devastating losses, LuBian attempted damage control by rotating their remaining funds to recovery wallets on December 31, 2020.

However, by that point, the majority of their Bitcoin reserves had already been compromised.

This revelation raises serious questions about security practices among major cryptocurrency mining operations and the potential for similar undetected breaches across the industry.

Mining pools handle enormous volumes of Bitcoin on behalf of thousands of miners worldwide, making them attractive targets for sophisticated cybercriminals.

The $3.5 billion theft surpasses previous record-breaking cryptocurrency hacks, including the infamous Mt. Gox exchange collapse and more recent breaches of centralized exchanges.

The scale of the LuBian hack underscores the evolving sophistication of cryptocurrency-focused cybercrime operations.

The cryptocurrency industry continues to grapple with security challenges as digital asset values have soared over the past several years.

This incident serves as a stark reminder of the importance of robust security measures, regular audits, and transparent reporting practices among cryptocurrency service providers.

As investigations continue, the LuBian hack stands as a watershed moment for cryptocurrency security, potentially prompting industry-wide reforms in how mining pools and other major cryptocurrency operators protect and monitor their digital assets.

Find this News Interesting! Follow us on Google NewsLinkedIn, and X to Get Instant Updates!

Divya
Divya
Divya is a Senior Journalist at GBhackers covering Cyber Attacks, Threats, Breaches, Vulnerabilities and other happenings in the cyber world.

Hot this week

How To Access Dark Web Anonymously and know its Secretive and Mysterious Activities

What is Deep Web The deep web, invisible web, or...

How to Build and Run a Security Operations Center (SOC Guide) – 2023

Today’s Cyber security operations center (CSOC) should have everything...

Russian Hackers Bypass EDR to Deliver a Weaponized TeamViewer Component

TeamViewer's popularity and remote access capabilities make it an...

Web Server Penetration Testing Checklist – 2026

Web server pentesting is performed under three significant categories: identity,...

ATM Penetration Testing – Advanced Testing Methods to Find The Vulnerabilities

ATM Penetration testing, Hackers have found different approaches to...

Threat Actors Use Claude AI Agents to Automate Cyberattacks and Steal Sensitive Data

Threat actors are increasingly using Claude-based AI workflows to...

China-Linked Hackers Chain Chrome Zero-Day With Windows Kernel Flaw in Attacks

China-linked threat actors UTA0560 and JungleBamboo chained a Google...

New Phishing Campaign Abuses Windows Mshta.exe to Steal Credentials and Secrets

A newly identified phishing campaign is abusing the legitimate...

CISA Warns of Critical GitLab Vulnerability Exploited in Attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has...

Researchers Uncover 10,000+ Malware Loaders Behind YouTube and SEO Poisoning Campaign

A long-running pay-per-install (PPI) operation that used YouTube gaming...

VLC Media Player Flaws Let Attackers Corrupt Memory and Leak Sensitive Data

Two security vulnerabilities in VLC media player versions 3.0.0...

CISA Adds Exploited MikroTik RouterOS Flaws to Security Alert

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has...

Related Articles

Recent News