The crypto industry suffered approximately $730 million in security losses in September. Related statistics show that incidents involving Bitget and Liquid Network accounted for a relatively high share of that month's losses, with the focus of attacks shifting toward exchange backends and infrastructure; the disclosures characterized this change as a strong industry warning. The specific distribution of previous attack targets has not yet been disclosed. These are the core disclosed facts and the single development this article focuses on.
In terms of entities involved, the Bitget-related incident is classified as exchange risk exposure, while the Liquid Network-related incident involves the network infrastructure level. Together, the two accounted for a relatively high share of September security losses, indicating that the month's losses were not entirely composed of scattered project incidents but were concentrated in a small number of platforms and infrastructure that have a real impact on market operations. It should be noted that the relevant report did not disclose the specific loss amount share, cause of the incidents, or handling details, so the relevant judgments are limited to disclosed information.
From the perspective of loss distribution, the two incidents involving Bitget and Liquid Network together accounted for a relatively high share. This concentration may mean that the impact of a single incident is more easily transmitted to user confidence, platform risk controls, and industry security expectations. Compared with multiple small, dispersed security incidents, losses concentrated in key platforms and infrastructure may have a more direct impact on market participants' risk perception. With the precise proportion still unclear, "a high share" should not be equated with a specific range.
Changes in the attack surface are the most closely watched part of the month's security data. Once security issues arise in exchange backends and infrastructure, they may involve more core data, asset flows, and system operations, potentially with a broader impact. Exchanges and infrastructure perform key functions connecting users, assets, and networks, and their security status is directly tied to market participants' operational safety and platform stability; therefore, this change may be a strong warning signal.
In terms of industry impact, the scale and concentrated nature of September losses suggest that if security investment remains focused on front-end protection, it may not cover current risks. Exchange backends, network infrastructure, and related operational systems need to undergo continuous security review. For users and institutional participants, such incidents may affect their assessment of platform security capabilities and may change their level of caution regarding asset custody, trade execution, and infrastructure selection. However, the relevant disclosures did not provide more incident details, so specific improvement measures should not be over-inferred.
In terms of risk contagion, the impact of security incidents is usually not limited to a single platform. When losses are concentrated in exchange backends and infrastructure, the market may focus on whether there are common risks in the related areas and whether similar platforms face similar exposure. The above changes indicate that this development is not merely a summary of September security data; it also reflects that attack target selection is changing. This change may prompt platforms to re-examine backend permission management, infrastructure redundancy, and security response mechanisms, but specific measures still need to be based on subsequent disclosures by the parties involved.
Regarding platform and infrastructure responsibility, market attention is on the security responsibilities of trading platforms and infrastructure providers. Exchanges need to address issues such as user asset security, system stability, and risk response, while infrastructure providers need to address network operations, asset flows, and node security. Because disclosed technical details are limited, the causes of the incidents should not be over-inferred, but it can be confirmed that the concentration of the attack surface on backends and infrastructure may increase the industry's focus on operations and maintenance systems, permission management, and system resilience. The $730 million monthly loss scale also makes it difficult for the industry to treat security issues as isolated incidents.
For market participants, the September security loss data provides an important window for observing industry risk. The $730 million monthly loss, along with the high share of the Bitget and Liquid Network incidents, shows that security risk remains a foundational issue for the crypto market. When evaluating trading platforms and infrastructure, participants may pay more attention to security incident disclosures, asset protection arrangements, and system recovery capabilities. At the same time, single-month data should be avoided as a linear extrapolation into a long-term trend. From this perspective, security has become a variable that cannot be ignored in the operation of the crypto market.
Follow-up attention will mainly focus on three areas. First, whether the data on approximately $730 million in crypto security losses in September will be further refined, especially the specific share and scope of impact of the Bitget and Liquid Network-related incidents in total losses. Second, whether the trend of attack focus shifting toward exchange backends and infrastructure will continue, which may affect the direction of industry security resource allocation. Third, whether the relevant platforms and infrastructure providers will disclose progress in incident handling, the status of user assets, and subsequent security hardening arrangements. Before more facts are disclosed, market participants should maintain an objective focus on security risks rather than judging market direction based solely on a single data point.



