Upbit Shifts Nearly All Assets to Cold Storage as Exchange Responds to Security Concerns

bitcoinistPublished on 2025-12-11Last updated on 2025-12-11

Abstract

Following a hack that stole $30 million from a Solana hot wallet, Upbit is shifting nearly all customer assets to cold storage, now holding approximately 99% of funds offline. This move places it among the most conservative exchanges globally in terms of online asset exposure, surpassing cold storage ratios of major competitors like Coinbase and Kraken. The decision follows Upbit's second significant security breach and aligns with stricter regulatory expectations in South Korea. While this enhances security, analysts caution that minimal hot wallet reserves could slow withdrawals during high volatility, potentially exacerbating price discrepancies in Korea’s closed crypto market. Upbit has committed to reimbursing affected users and assures that its rebuilt systems will maintain liquidity under normal conditions.

In the aftermath of a hack that saw attackers steal 44.5 billion won (approximately $30 million) from a Solana hot wallet, Upbit has begun shifting nearly all customer assets into cold storage, a move that now places it among the most conservative platforms globally in terms of online asset exposure.

This transition marks one of the strongest security pivots by a major exchange, signaling a broader industry conversation about balancing rapid withdrawals with the need to reduce attack surfaces.

As digital asset markets continue to expand, Upbit’s response provides a real-time glimpse into how platforms balance operational liquidity against systemic cyber risks.

BTC's price records some small gains on the daily chart. Source: BTCUSD on Tradingview

Upbit Pushes Hot Wallet Usage Toward Zero

Following its internal review and system overhaul, Upbit confirmed that it now stores approximately 99% of user assets in cold wallets, with hot wallet exposure reduced to about 1% and expected to decrease further.

As of late October, the exchange held 98.33% of customer funds offline, a rate already well above the 80% minimum required under South Korea’s Virtual Asset User Protection Act.

This shift follows a pattern of rising caution. The recent breach was Upbit’s second significant attack, occurring on November 27, mirroring a 2019 incident that saw more than 342,000 ETH drained from its systems.

This year’s Solana-based attack resulted in withdrawals across 24 tokens within less than an hour, prompting an immediate shutdown of hot wallet operations and emergency transfers to cold storage. Upbit has pledged to fully reimburse affected users from corporate reserves.

Domestic data suggests that the exchange already leads the market in cold storage usage, maintaining the lowest hot wallet ratio among local competitors, whose cold wallet shares range from 82% to 90%.

Security Benchmark Sets Pressure on Global and Local Exchanges

Upbit’s near-99% cold wallet ratio surpasses the standards of major global exchanges. Coinbase stores about 98% of its funds offline, while Kraken’s ratio sits between 95% and 97%.

Several Asian exchanges, including OKX and Gate.io, maintain similar levels. With Upbit’s latest update, the platform now stands at the forefront of global cold storage practices.

Industry observers note that the move aligns with broader regulatory momentum. South Korea’s Financial Services Commission is considering new rules that would require exchanges to compensate users for losses resulting from hacks, regardless of fault, similar to the standards imposed on banks.

Liquidity Questions Linger in a Restricted Market

While security is at the center of Upbit’s restructuring, analysts caution that running with minimal hot wallet reserves may slow withdrawals during periods of heightened market volatility.

South Korea’s crypto market is largely closed to foreign participants, restricting arbitrage and creating conditions where delays can exacerbate price discrepancies, commonly known as the “Kimchi premium.”

During last month’s temporary withdrawal suspension, liquidity was effectively trapped, resulting in sharply widening price gaps between the Korean and global markets. Still, Upbit maintains that its rebuilt systems and predictive models will ensure sufficient liquidity under normal trading conditions.

Cover image from ChatGPT, BTCUSD chart from Tradingview

Related Reads

NVIDIA Begins Adding Soap to the Bubble

NVIDIA is taking on a dual role: not just as a leading chip supplier, but as a massive capital allocator across the entire AI supply chain. In 2026, the company has committed over $40 billion in investments within five months, targeting everything from optical fiber manufacturing and data center operations to foundational AI model development. This investment spree, described as a systematic "sprinkler" approach, primarily funds companies that are major buyers of NVIDIA's own GPUs. Critics, including analysts from Goldman Sachs, label this a "circular revenue" loop—comparable to a supplier financing a customer to buy more of its products. A prominent example is NVIDIA's investment in OpenAI, which is expected to generate around $13 billion in revenue for NVIDIA, much of which may be reinvested back into OpenAI. While CEO Jensen Huang dismisses the "circular financing" critique as "absurd," arguing the investments are confidence votes in long-term generational shifts, some analysts express discomfort. They note that while investments in critical supply chain components like optics are strategically sound, funding new cloud providers like CoreWeave feels like "pre-paying for your own GPUs." The strategy carries significant risks. If the AI investment cycle turns, the market may question how much demand is genuine versus artificially sustained by NVIDIA's own balance sheet. Despite posting record-breaking earnings—$215.9 billion in annual revenue and $120 billion in net profit for FY2026—NVIDIA's stock fell after its report, signaling that "beating expectations" may no longer be enough to assure investors about the duration of the AI spending boom. The article concludes that while a bubble isn't necessarily a fraud, NVIDIA's actions resemble adding soap to a bubble—making it appear more robust and durable. This creates a complex scenario requiring extreme冷静 from investors to distinguish between real structural growth and financial engineering.

marsbit6m ago

NVIDIA Begins Adding Soap to the Bubble

marsbit6m ago

Short Positions Have Been Squeezed Out: Will the Next Leg of the U.S. Stock AI Rally Continue in Seoul?

"Short Squeeze Exhausted: Will the Next Leg of the AI Rally Continue in Seoul?" A Nomura report suggests the US AI stock rally, which saw the S&P 500 rise ~16.6% in 28 days largely driven by 10 key stocks, may be pausing. The fuel from short covering, CTA fund positioning, and volatility-control strategies is nearing its limit. For the rally to continue, new momentum from retail and sentiment-driven FOMO (Fear Of Missing Out) is needed. South Korea's market provided a potential answer on the very day the report was published. The KOSPI index surged 4.32%, triggering a buy-side circuit breaker, led by massive gains in chip giants SK Hynix (+11.98%) and Samsung. This surge is characterized by retail "hynix FOMO" and overseas funds precisely buying into AI themes via chip-focused ETFs, shifting from broad Korean market ETFs. The Korean rally is a high-beta extension of the US AI capital expenditure story, as major cloud providers plan massive infrastructure spending, directly benefiting memory chip leaders. However, this linkage also implies vulnerability. The sustainability of this next leg depends on whether US tech stocks correct, the trajectory of US inflation (with upcoming CPI data key), and geopolitical tensions around the Strait of Hormuz. Seoul has emerged as the new epicenter of the AI trade, but its fate remains tied to these broader macro and market dynamics.

marsbit11m ago

Short Positions Have Been Squeezed Out: Will the Next Leg of the U.S. Stock AI Rally Continue in Seoul?

marsbit11m ago

Borrowing Money from a Hundred Years Later, Building Incomprehensible AI

Tech giants like Alphabet, Amazon, Meta, and Microsoft are undergoing a radical financial transformation due to AI. Their traditional "light-asset, high-free-cash-flow" model is being dismantled by staggering capital expenditures on AI infrastructure—data centers, GPUs, and power. Combined 2026 guidance exceeds $700 billion, a 4.5x increase from 2022, causing free cash flow to plummet (e.g., Amazon's fell 95%). To fund this, they are borrowing unprecedented sums through long-dated, multi-currency bonds (e.g., Alphabet's 100-year bond). The world's most conservative capital—pensions, insurers—is now funding Silicon Valley's most speculative bet. This shift makes these companies resemble heavy-asset industrials (railroads, utilities) rather than software firms, threatening their premium valuations. Historically, such infrastructure booms (railroads, fiber optics) followed a pattern: genuine technology, overbuilding fueled by competitive frenzy, aggressive debt financing, and a crash triggered by financial conditions—not technology failure. The infrastructure remained, but many original builders and financiers did not survive. The core gamble is a "time arbitrage": using cheap debt today to build scale and lock in customers before AI capabilities commoditize. They are betting that AI revenue will materialize before debt comes due. Their positions vary: Amazon is under immediate cash pressure; Meta's path to monetization is unclear; Alphabet has a robust core business buffer; Microsoft has the shortest path from infrastructure to revenue. The contract is set: the most risk-averse global capital has lent its time to Silicon Valley, awaiting a future that is promised but uncertain.

marsbit1h ago

Borrowing Money from a Hundred Years Later, Building Incomprehensible AI

marsbit1h ago

Trading

Spot
Futures
活动图片