Search the site
Press ESC to close
LIVE
Loading...
Updating...
Breaking
Incidents Markets

MEXC Establishes Special Team Following $90,000 User Asset Theft Incident

Fact-checked
3 min read
492 words
Share

The centralized cryptocurrency exchange MEXC has officially responded to allegations regarding a security breach that resulted in the loss of approximately $90,000 in user assets. Following reports of the incident on social media platforms, the exchange confirmed that an initial investigation has been concluded and a dedicated task force has been assembled to address the affected account. The incident has raised concerns within the digital asset community regarding API security protocols and account recovery procedures on major trading platforms.

Investigation into API Vulnerabilities and Asset Recovery

The security incident surfaced when a user accused the platform of negligence following a prior account recovery process. According to the reports, the attacker managed to maintain access to the funds despite the user seeking assistance from the exchange to secure the account. The crux of the allegation involves the failure to revoke malicious API keys that the attacker had previously established. API (Application Programming Interface) keys allow external software to interact with an exchange account, and if compromised, they can permit unauthorized withdrawals or trading activity without the user's direct login.

  • Total estimated loss: $90,000
  • Primary vulnerability: Unrevoked API permissions after account recovery
  • Platform response: Creation of a specialized internal team
  • Current status: Investigation completed with "corresponding solutions" provided

Platform Response and Security Commitments

In a statement released via their official communication channels, MEXC detailed their proactive steps to mitigate the damage and prevent future occurrences. The exchange emphasized its commitment to protecting the rights and interests of its global user base.

The initial investigation has been completed and corresponding solutions have been provided. The platform has immediately established a special team, with dedicated personnel to follow up on the relevant account situation and subsequent handling. We will continue to advance the process and protect users' relevant rights and interests.

The platform's management indicated that they are currently working through the subsequent handling of the case, though specific details regarding compensation or the technical nature of the "solutions" remain undisclosed to the general public to maintain security integrity.

Implications for Exchange Security Standards

This event highlights the ongoing risks associated with custodial wallets and the complexities of securing account access in the Web3 ecosystem. Security analysts often recommend that users regularly audit their API settings and enable Multi-Factor Authentication (MFA) to add layers of protection beyond standard passwords. For exchanges like MEXC, which handle significant volumes of Bitcoin (BTC), Ethereum (ETH), and various altcoins, the incident serves as a reminder of the critical importance of comprehensive security audits during the account restoration process.

As of September 28, 2026, the MEXC special team remains active in resolving the dispute. The cryptocurrency community continues to monitor the situation closely, as the resolution of this case could set a precedent for how trading platforms manage third-party access and user liability in the event of technical oversights during security crises. Further updates are expected as the exchange moves toward a final resolution with the affected party.

Frequently Asked Questions

Quick answers to the most common questions about this topic.