South Korea To Review Seized Crypto Custody Practices After Recovery Phase Leak Incident

bitcoinist發佈於 2026-03-03更新於 2026-03-03

文章摘要

South Korean financial authorities, led by Deputy Prime Minister and Finance Minister Koo Yun-cheol, have pledged to review and strengthen the management of seized crypto assets after a series of security incidents resulted in losses of nearly $30 million. This decision follows a recent leak by the National Tax Service, which accidentally exposed a wallet’s recovery seed phrase in a press release, leading to the theft of $4.8 million in tokens. The government plans to collaborate with agencies like the Financial Services Commission to enhance security measures and prevent future breaches. This incident is part of a broader pattern, including earlier losses of $21 million in Bitcoin from a prosecutor’s office and $1.4 million from a police station, highlighting systemic vulnerabilities in the custody of digital assets by public institutions.

South Korean financial authorities have pledged to revise their crypto custody practices following public scrutiny over multiple incidents that led to the loss of nearly $30 million in seized digital assets over the past few months.

Authorities Move To Enhance Crypto Custody Practices

South Korea’s Deputy Prime Minister and Minister of Finance, Koo Yun-cheol, affirmed that authorities will review their management practices of seized crypto assets by government and public authorities, and develop measures to prevent the theft and loss of these assets.

“In response to the recent digital asset information leak incident at the National Tax Service (NTS), the government will promptly review the status and management practices of digital assets held and managed by government and public institutions—such as those seized from delinquent taxpayers—in collaboration with relevant agencies, including the Financial Services Commission (FSC) and the Financial Supervisory Service (FSS),” the finance minister wrote in a Sunday X post.

“We will also swiftly develop and implement measures to prevent recurrence, including strengthening digital asset security management,” he continued, noting that the South Korean government only holds crypto assets acquired through legal enforcement actions, such as seizure.

The upcoming review and Koo’s statement follow a wave of criticism over the authorities’ practices and management of crypto assets after the tax agency exposed the recovery seed phrase of a seized wallet, leading to unauthorized access and theft of the tokens inside it.

As reported by Bitcoinist, South Korea’s National Tax Service recently published an official press release to highlight its crackdown on tax nonpayers, but accidentally shared a full wallet seed phrase in the process.

The Thursday press release was reportedly part of a broader NTS enforcement campaign targeted at people who owed taxes, showing seized crypto assets as evidence of the agency’s efforts.

Nonetheless, it included an image of two Ledger cold wallets alongside a handwritten sheet of paper that exposed the wallets’ complete mnemonic recovery phrases.

Soon after, one of the confiscated wallets’ entire balance, 4 million Pre-Retogeum (PRTG) tokens worth around $4.8 million, was transferred to another address, blockchain researchers found, but noted that the cryptocurrency has extremely low liquidity.

According to Professor Cho Jae-woo of Hansung University’s Blockchain Research Institute, the other wallets with seed phrases visible in the same image did not appear to carry significant risk, as the leaked tokens are also difficult to convert into cash.

The expert criticized the incident, but shared his hope that it “serves as a turning point for the establishment of a robust virtual asset management system within Korea’s public sector.”

South Korea’s Custody Mishaps

Last week’s incident is the latest in a series of security breaches that have led to the loss of around $27 million in seized crypto assets under the government’s custody since the start of the year.

In January, the Gwangju District Prosecutors’ Office faced backlash after discovering that 320 Bitcoin (BTC), worth around $21 million, had gone missing months ago. According to local reports, authorities only discovered the theft during a routine check of seized financial assets held as criminal evidence.

Prosecutors found that the crypto assets, first seized in 2021, were lost to a scam in August while authorities were handling the assets. Notably, a malicious actor drained the wallets after investigators mistakenly accessed a phishing website.

In an unexpected turn of events, the hacker returned the stolen Bitcoin in mid-February, the Gwangju District Prosecutors’ Office confirmed, vowing to continue to track down the malicious actors involved while conducting related investigations and inspections.

The incident led to a nationwide review, which revealed another security breach at the Seoul Gangnam Police Station last month. The Gangnam station announced it had lost 22 BTC, worth around $1.4 million at the time, that were voluntarily submitted to authorities during an investigation in November 2021.

Local news outlets reported that the leak had not been detected until recently, as the investigation into that case had been suspended. The inspection revealed that the cold wallet storing the Bitcoin was not stolen. However, the assets stored inside had vanished without a trace, deepening concerns about local authorities’ knowledge of cryptocurrencies and proper measures to handle and custody seized digital assets.

Bitcoin trades at $66,811 in the one-week chart. Source: BTCUSDT on TradingView

相關問答

QWhat prompted South Korean financial authorities to review their crypto custody practices?

AThe review was prompted by a series of security incidents, most recently the National Tax Service's accidental leak of a wallet's recovery seed phrase, which led to the theft of seized crypto assets and public scrutiny over the loss of nearly $30 million.

QHow much in Pre-Retogeum (PRTG) tokens was stolen from the seized wallet after the NTS leak, and what was its approximate value?

A4 million Pre-Retogeum (PRTG) tokens, worth approximately $4.8 million, were stolen from the seized wallet.

QWhat was the significant Bitcoin-related security breach that occurred at the Gwangju District Prosecutors' Office earlier this year?

AIn January, the Gwangju District Prosecutors' Office discovered that 320 Bitcoin (BTC), worth around $21 million, had been stolen from a seized wallet months earlier after investigators mistakenly accessed a phishing website.

QAccording to Finance Minister Koo Yun-cheol, what type of crypto assets does the South Korean government hold?

AThe South Korean government only holds crypto assets that have been acquired through legal enforcement actions, such as seizure.

QWhat was the outcome of the Bitcoin theft from the Gwangju District Prosecutors' Office?

AIn an unexpected turn of events, the hacker returned the stolen Bitcoin in mid-February.

你可能也喜歡

如何让自己变得让人工智能永远也无法取代

面对人工智能的冲击,许多人担心工作被取代。然而,真正的威胁在于个人对他人和系统的依赖,以及由此产生的“薪资奴役”——即为生存而从事无意义、枯燥的工作。摆脱这种困境的关键,不是抵制技术,而是成为拥有高自主性的“不可受雇”个体。 文章提出了成功抵御AI替代的五个核心要素:自主性(主动行动的能力)、品味(判断事物价值的经验)、说服力(让他人关注你工作的能力)、毅力(坚持并从错误中学习)和迭代(根据反馈持续改进)。这些能力无法仅通过理论学习获得,必须通过实践来培养。 要启动转变,首先要彻底改变环境,重塑身份认同。其次,应选择一个能获得真实、快速反馈的实践领域,例如创业。在众多技能中,内容创作(媒体)比编写代码更具优势,因为其价值是主观的,需要独特的审美和判断力,这正是AI目前难以完全复制的。 具体行动上,可以从三个步骤开始: 1. **挖掘原始素材**:反思自己长期痴迷的知识领域、轻松解决的难题或童年被压抑的兴趣,找到独特的个人经验。 2. **确立反向思考主轴**:找出你坚信但主流观点错误的地方,或行业内普遍忽视的“皇帝新衣”,形成独特的批判性视角。 3. **立即发布**:将前两步的思考融合,撰写并发布第一个核心内容(如帖子、视频),勇敢接受真实世界的反馈,并在此基础上持续学习和迭代。 最终,抵御AI的关键在于构建一份与自身身份深度契合的毕生事业,通过持续的内容创作和真实互动,建立无法被自动化取代的独特价值和影响力。行动,从今天发布第一个想法开始。

marsbit5 小時前

如何让自己变得让人工智能永远也无法取代

marsbit5 小時前

通过掷骰子离线保管比特币密钥:并非人人愿意为之

文章探讨了通过投掷骰子生成比特币钱包种子短语的安全方法及其现实挑战。核心观点如下: **1. 骰子提供物理熵源** 骰子结果由众多微小变量决定,理论上虽可预测,但实践中无法被攻击者复制或计算,从而提供高质量的随机性。每个六面骰子投掷约产生2.585比特熵,50次投掷即可满足典型12词助记词(128比特熵)的安全需求。 **2. Coldcard漏洞事件凸显手工熵源的价值** 近期Coldcard硬件钱包因固件漏洞导致其内部随机数生成器存在缺陷,致使约1128枚比特币被盗。但那些**完全**通过足量骰子投掷生成种子短语的用户未受此漏洞影响,因为他们的主密钥未使用有缺陷的生成器。 **3. 重要警示:手工种子并非万能保护** 安全研究员指出,即使用户使用骰子生成了安全的种子,若他们使用了Coldcard的其他功能(如生成纸钱包、克隆密钥、共享签名密钥、密码等),这些**衍生密钥**仍可能调用有漏洞的随机数生成器,从而存在风险。安全种子不保证设备生成的所有秘密都安全。 **4. 手工生成熵源的现实局限性** 尽管数学上可靠,但该方法对大多数用户并不友好: * **过程繁琐易错**:需投掷50-99次,精确记录,任何输入错误都会导致钱包完全不同。 * **引入新风险**:用户可能在记录、转换过程中泄露信息,或使用有偏的骰子/投掷方式。 * **用户体验差**:难以想象大规模推广需要用户手动投掷近百次骰子。安全措施需适应现实生活场景和普通用户的知识水平。 **5. 给用户的建议** 受影响的Coldcard用户应: * 更新固件至最新版。 * 检查是否使用过有漏洞的功能生成了次级密钥或密码,如有则需立即更换。 * 考虑采用多签方案,使用不同厂商的设备分散风险。 **结论**:手工投掷骰子生成熵源是技术娴熟用户的一个有效安全选项,但其过程复杂、容易出错,不适合作为主流用户的默认方法。长远目标是依赖安全、透明且无需专业知识的硬件/软件随机数生成方案。

cryptonews.ru9 小時前

通过掷骰子离线保管比特币密钥:并非人人愿意为之

cryptonews.ru9 小時前

交易

現貨
活动图片