Fetch is not publication
Automated output enters a review queue. Entity, product, region and event severity must be validated before an alert is published.
Risk Radar
Evidence-backed incidents that can change an exchange’s rating, confidence or exposure guidance. An alert is not published from an unverified social post alone.
Security data layer
51 of 45 exchange-signal connections are automated or probe-configured. Manual and discovery-only sources stay visible instead of being reported as live data.
Automated output enters a review queue. Entity, product, region and event severity must be validated before an alert is published.
A reachable API or homepage cannot establish that withdrawals work for every asset, user and jurisdiction.
CVE, phishing and complaint matches never affect a score until the affected product and supporting evidence are verified.
Registry verified 2026-07-27 · No commercial phishing or reputation API is represented as connected.
Published incidents
Last research update 2026-07-27. Rating impact is shown as a model input, not an estimate of financial loss.
Coinbase said trading, deposits, withdrawals and other services were unavailable or degraded for roughly eight hours, with full recovery taking longer.
HashKey Global announced a temporary withdrawal suspension and published a same-day resumption notice.
The former French PSAN record E2022-037 must not be presented as current authorisation.
The U.S. Department of Justice announced a guilty plea and more than $504 million in penalties and forfeiture.
Coinbase said criminals recruited overseas support agents to steal data from a subset of customers; passwords, private keys and direct platform funds were not reported exposed.
The official OKX status page lists a trading-service issue on 27 March 2024 and keeps it separate from planned maintenance.
The U.S. Department of Justice states that Binance Holdings pleaded guilty and agreed to penalties, compliance remediation and an independent monitor.
Crypto.com reported 483 affected users and unauthorised withdrawals of 4,836.26 ETH, 443.93 BTC and about US$66,200 in other crypto, with affected customers reimbursed.
The incident involved 7,000 BTC. Binance said affected user losses were covered through SAFU.
Bybit reported that one Ethereum cold wallet was compromised, with approximately US$1.46 billion in ETH and liquid-staking assets removed.
KuCoin reported that private keys for several hot wallets were compromised in an APT attack, affecting 154 tokens worth approximately US$285 million at the time.
Monitoring perimeter
A category can remain empty until evidence reaches the publication threshold. Empty does not mean the risk cannot occur.
Categories with published events
Also monitored — no verified public event yet