Close Menu
Cryphedge.com
  • Home
  • Crypto News
    • Bitcoin
    • NFT News
  • Altcoins
  • Scams
  • Blockchain
  • Regulations
  • Trading
Facebook X (Twitter) Instagram
Cryphedge.com
  • Home
  • Crypto News
    • Bitcoin
    • NFT News
  • Altcoins
  • Scams
  • Blockchain
  • Regulations
  • Trading
Cryphedge.com
Home » Binance CEO had WeChat hacked by cellphone exploit that likely leaves your own crypto exposed
Binance CEO had WeChat hacked by cellphone exploit that likely leaves your own crypto exposed

Binance CEO had WeChat hacked by cellphone exploit that likely leaves your own crypto exposed

December 10, 20256 Mins ReadNo Comments Scams
Share
Facebook Twitter LinkedIn Pinterest Email

Binance co-CEO Yi He said her WeChat account was hijacked on Dec. 10 after a cell number tied to the profile was reclaimed and could not be recovered at first.

The account was later restored after Binance worked with WeChat’s security team, according to a spokesperson cited the same day.

Posts that appeared after the takeover promoted a token called “Mubarakah,” and on-chain data shared by Lookonchain pointed to a pump-and-dump that netted about $55,000 before the content was removed.

Why Yi He’s WeChat hack matters beyond Binance

The episode arrived days after Yi He’s elevation to co-CEO was announced at Binance Blockchain Week, placing an executive’s identity at the center of a web platform incident rather than a crypto infrastructure breach.

Web accounts tied to phone numbers remain exposed to recovery flows that attackers can capture without touching wallets, custody systems, or exchange backends, a pattern that has shaped several market-moving incidents over the past two years.

According to the SEC’s postmortem on its January 2024 X compromise, a phone number on the agency’s account lacked two-factor protection, and a fake ETF-approval post briefly moved Bitcoin by roughly $1,000 before corrections followed. The SEC and FBI later detailed arrests linked to that hack.

According to the SEC document, that case has become a reference point for how a single spoofed message can reshape price action and trigger liquidations without any on-chain exploit.

SlowMist’s founder resurfaced guidance last week describing how WeChat account captures can proceed with leaked credentials and “frequent contacts” verification. That method can advance recovery by messaging two contacts to satisfy identity checks, creating a low-friction path for attackers.

According to City News Service in Shanghai, Chinese carriers typically reissue canceled numbers after around 90 days, a secondary issuance practice that intersects with legacy SMS recovery and leaves dormant accounts exposed when numbers are recycled.

If an old number remains tied to an abandoned profile, a new holder can receive SMS prompts or meet recovery checks that either bypass or weaken password reliance, which aligns with Yi He’s account that the number linked to her profile “was seized for use.”

WeChat’s role in crypto circles raises conversion risk when executive or key opinion leader accounts are hijacked. Many OTC USDT trades and retail community discussions run through the app, and a familiar handle can convey enough implied trust to draw flows into thin-liquidity contracts.

That dynamic differs from a random spam link on X, where user overlap and transaction intent may be lower.

Binance’s own ecosystem has encountered social-account risk this year, with BNB Chain’s official X account compromised on Oct. 1, ten phishing links posted, and about $8,000 in user losses later reimbursed.

The immediate market impact around Yi He’s WeChat case appeared contained. As of Dec. 10 in London trading hours, BNB was roughly flat on the day near $890, with intraday highs and lows ranging between $927.32 and $884.67.

Ticker Price (USD) Δ vs prior close Intraday high Intraday low
BNB 890.17 -9.02 (-0.01%) 927.32 884.67

The economic payoff cited in this incident, approximately $55,000, fits a lower band for single-push memecoin shills. Coordinated hijacks across multiple X accounts have cleared around $500,000 in a month by repeatedly directing retail into new tokens.

A simple reach-to-revenue illustration helps frame incentives

As a model, if a hijacked executive account reaches 1 to 5 million contacts, if 0.05% to 0.20% click through, and if 10% of those clickers deploy $100 each into a shallow pool, gross inflows would span about $5,000–$100,000 per post, consistent with the $55,000 estimate.

While this is a model, not a statement of fact, it aligns with observed outcomes when an identity carries audience trust and the token’s liquidity is thin.

Rising loss totals across 2024 provide the macro backdrop. Chainalysis and TRM Labs estimate roughly $2.2 billion in stolen crypto this year, with a midyear pivot toward attacks on centralized services, even as the share of illicit activity on-chain remains under 1%.

Sanctioned entities are leaning more on stablecoins, according to Chainalysis and TRM Labs, which keeps policy attention on operational and identity risks that can be exploited without cracking cryptography. The policy response is shifting, too.

South Korea moved on Nov. 27 toward “bank-level” no-fault liability for exchanges after the Upbit incident, creating a possible blueprint for how regulators may assign responsibility for platform-adjacent losses that involve social engineering or third-party platform weaknesses.

The security mechanics in Yi He’s case highlight where controls can fail

SIM recycling plus social recovery allows takeovers when a platform accepts SMS or contact-based proofs over hardware-bound factors. “Frequent contacts” verification accelerates capture by co-opting social ties, especially when contacts are accustomed to authorizing routine actions.

If an executive account is dormant, device fingerprints and session recency may be stale, making it easier for a recycled number to pass recovery gates.

According to Binance security alerts published earlier this year, attackers have repeatedly tested WeChat-centric flows that combine leaked credentials, contact verification, and number reuse.

For boards and compliance teams, executive identities now function like market infrastructure. A single unvetted post can mobilize nine-figure volume, lead to user losses, and force public remediation. That governance perimeter sits outside exchange custody and traditional cybersecurity budgets.

It spans personal devices, legacy accounts, carrier policies, and third-party platform settings, which complicates control audits and disclosure protocols.

The SEC X incident, the BNB Chain account compromise, and ongoing celebrity memecoin hijacks reported by media like WIRED show that social-account security is a repeatable route to market impact.

Given the facts to date, forward paths fall into three bands

A contained reputational blip would involve no further impostor posts, a short platform note from Binance, no user losses beyond the attacker’s take, and limited BNB or broader Binance market impact.

A policy ripple with limited market stress would see APAC or European authorities issue guidance on executive social-account governance, possibly leaning on South Korea’s direction, with hardware-key mandates and no-fault compensation standards for verified social-engineered incidents.

An escalation to a market-moving spoof would target a listing or airdrop claim, coordinate across channels, and push nine-figure volume before takedown, echoing the SEC precedent and prior cross-account hijacks.

Signposts include new phishing domains or wallet clusters tied to known scam infrastructure, enterprise attestations of web account controls, and WeChat statements on recycled-number remediation.

Risk-reducing measures are well mapped. A kill-switch policy for executive accounts not used for business, phone, or SMS recovery, disabled; hardware keys enforced; and organization SSO for any channel that could be construed as corporate communication would cut exposure.

Platform-side, WeChat could require recent successful device-bound logins before allowing broadcast-scale posting from public-figure accounts linked to recycled numbers, and expand enterprise-grade verification for high-reach handles.

Those measures would not eliminate spoofing, but they would reduce the likelihood and shorten the window during which a hijack can monetize an audience.

Open items remain. It is not yet clear whether Binance users suffered direct losses from links posted on WeChat and whether any restitution will be offered for off-platform harm.

It is also unknown whether secondary channels amplified the “Mubarakah” posts or whether WeChat’s internal network effects contained the impact.

Confirmation of the token’s chain and contracts, and any coordination between centralized venues and DEX front ends to flag or block trading, would clarify the operational footprint.

Yi He’s account has been restored, according to Binance, and attention now shifts to whether carriers and WeChat adjust safeguards around recycled numbers and contact-based recovery.

Mentioned in this article
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
cryphedge

Related Posts

The next big DeFi exploit will start before the code is deployed

May 26, 2026

THORChain exploit turns DeFi halt into trust test

May 16, 2026

Ripple insider warns XRP holders as fake airdrop scams surge across XRPL

May 14, 2026

AI scams in crypto approach breaking point

April 26, 2026
Add A Comment

Comments are closed.

Editors Picks

On-Chain Age Metrics Hint At Potential Bounce

June 10, 2026

Hyperliquid price slides 11%: What’s behind the sell-off and what comes next

June 10, 2026

Talks Turn Rocky As Ethics Fight And Law Enforcement Fears Threaten Deal

June 10, 2026

XRP Realized Profit Ratio Falls Below 1 As Network Fees Collapse 91.5%, Signaling Intense Capitulation

June 9, 2026
About

cryphedge is an online news portal that aims to share the latest crypto news, bitcoin, altcoin, blockchain, nft news, regulation, trading, crypto scams and much more stuff.

Facebook X (Twitter) Instagram Pinterest YouTube
Top Insights

10 Best AI Crypto to Buy In 2026

February 1, 2026

Australian regulator warns of crypto ‘horror scenarios’ if Trump loosens regulation

February 20, 2025

Bitcoin trades near $119K after new all-time high; Coinbase rebrands wallet to ‘Base App’

July 17, 2025
Subscribe
Please enable JavaScript in your browser to complete this form.
Loading
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Terms of Use
  • DMCA

Type above and press Enter to search. Press Esc to cancel.

  • bitcoinBitcoin(BTC)$61,193.00-2.39%
  • ethereumEthereum(ETH)$1,619.36-3.04%
  • tetherTether(USDT)$1.000.00%
  • binancecoinBNB(BNB)$583.60-2.43%
  • usd-coinUSDC(USDC)$1.000.01%
  • rippleXRP(XRP)$1.11-4.28%
  • solanaSolana(SOL)$63.41-4.05%
  • tronTRON(TRX)$0.3225420.53%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.030.54%
  • dogecoinDogecoin(DOGE)$0.083378-2.29%
  • HyperliquidHyperliquid(HYPE)$55.56-10.52%
  • USDSUSDS(USDS)$1.000.00%
  • leo-tokenLEO Token(LEO)$9.470.10%
  • RainRain(RAIN)$0.0130990.95%
  • zcashZcash(ZEC)$419.09-11.34%
  • CantonCanton(CC)$0.163518-0.09%
  • stellarStellar(XLM)$0.185240-6.03%
  • WhiteBIT CoinWhiteBIT Coin(WBT)$50.4113.07%
  • moneroMonero(XMR)$317.18-1.15%
  • cardanoCardano(ADA)$0.159505-4.64%
  • chainlinkChainlink(LINK)$7.66-2.38%
  • Ethena USDeEthena USDe(USDE)$1.000.01%
  • USD1USD1(USD1)$1.000.04%
  • ToncoinToncoin(TON)$1.67-2.88%
  • daiDai(DAI)$1.000.02%
  • bitcoin-cashBitcoin Cash(BCH)$197.04-4.46%
  • MemeCoreMemeCore(M)$2.85-3.92%
  • hedera-hashgraphHedera(HBAR)$0.078178-2.49%
  • litecoinLitecoin(LTC)$42.14-0.63%
  • suiSui(SUI)$0.74-0.79%
  • Circle USYCCircle USYC(USYC)$1.130.00%
  • LABLAB(LAB)$9.17-14.90%
  • PayPal USDPayPal USD(PYUSD)$1.000.00%
  • avalanche-2Avalanche(AVAX)$6.46-3.24%
  • shiba-inuShiba Inu(SHIB)$0.000005-1.13%
  • nearNEAR Protocol(NEAR)$2.07-3.34%
  • crypto-com-chainCronos(CRO)$0.059601-2.42%
  • Global DollarGlobal Dollar(USDG)$1.00-0.01%
  • tether-goldTether Gold(XAUT)$4,147.79-3.80%
  • BlackRock USD Institutional Digital Liquidity FundBlackRock USD Institutional Digital Liquidity Fund(BUIDL)$1.000.00%
  • Ondo US Dollar YieldOndo US Dollar Yield(USDY)$1.13-0.23%
  • BittensorBittensor(TAO)$205.19-4.18%
  • pax-goldPAX Gold(PAXG)$4,157.65-3.75%
  • World Liberty FinancialWorld Liberty Financial(WLFI)$0.0592976.41%
  • mantleMantle(MNT)$0.53-1.65%
  • WorldcoinWorldcoin(WLD)$0.495565-2.81%
  • OndoOndo(ONDO)$0.343462-5.70%
  • AsterAster(ASTER)$0.621.21%
  • Ripple USDRipple USD(RLUSD)$1.000.00%
  • polkadotPolkadot(DOT)$0.93-2.97%
  • AudieraAudiera(BEAT)$5.4222.42%
  • HTX DAOHTX DAO(HTX)$0.000002-0.48%
  • uniswapUniswap(UNI)$2.45-2.12%
  • okbOKB(OKB)$70.50-3.90%
  • Falcon USDFalcon USD(USDF)$0.99-0.06%
  • usddUSDD(USDD)$1.000.00%
  • Pi NetworkPi Network(PI)$0.124791-3.17%
  • BFUSDBFUSD(BFUSD)$1.00-0.02%
  • MorphoMorpho(MORPHO)$2.0113.15%
  • SkySky(SKY)$0.055241-2.19%
  • internet-computerInternet Computer(ICP)$2.24-2.84%
  • bitget-tokenBitget Token(BGB)$1.76-3.57%
  • PepePepe(PEPE)$0.000003-2.44%
  • ethereum-classicEthereum Classic(ETC)$6.92-1.26%
  • United StablesUnited Stables(U)$1.000.02%
  • USDtbUSDtb(USDTB)$1.00-0.01%
  • Spiko EU T-Bills Money Market FundSpiko EU T-Bills Money Market Fund(EUTBL)$1.22-0.03%
  • Blockchain CapitalBlockchain Capital(BCAP)$106.960.00%
  • quant-networkQuant(QNT)$64.86-2.98%
  • cosmosCosmos Hub(ATOM)$1.814.56%
  • aaveAave(AAVE)$61.10-1.44%
  • Invesco Short Duration US Government Securities FundInvesco Short Duration US Government Securities Fund(USTB)$11.110.03%
  • DeXeDeXe(DEXE)$19.10-15.36%
  • kucoin-sharesKuCoin(KCS)$6.492.00%
  • kaspaKaspa(KAS)$0.0316180.56%
  • Janus Henderson Anemoy Treasury FundJanus Henderson Anemoy Treasury Fund(JTRSY)$1.110.01%
  • ​​Stable​​Stable(STABLE)$0.03506712.78%
  • render-tokenRender(RENDER)$1.56-4.26%
  • algorandAlgorand(ALGO)$0.089608-1.90%
  • POL (ex-MATIC)POL (ex-MATIC)(POL)$0.074620-1.73%
  • nexoNEXO(NEXO)$0.77-0.98%
  • EthenaEthena(ENA)$0.078766-1.90%
  • 币安人生 (BinanceLife)币安人生 (BinanceLife)(币安人生)$0.70-0.10%
  • Janus Henderson Anemoy AAA CLO FundJanus Henderson Anemoy AAA CLO Fund(JAAA)$1.040.02%
  • justJUST(JST)$0.079909-3.52%
  • gatechain-tokenGate(GT)$6.33-1.34%
  • Venice TokenVenice Token(VVV)$13.97-10.56%
  • xdce-crowd-saleXDC Network(XDC)$0.031313-1.19%
  • BeldexBeldex(BDX)$0.079357-0.03%
  • GHOGHO(GHO)$1.00-0.01%
  • filecoinFilecoin(FIL)$0.75-2.42%
  • FlareFlare(FLR)$0.006864-3.60%
  • Usual USDUsual USD(USD0)$1.000.05%
  • SirenSiren(SIREN)$0.76-37.78%
  • Provenance BlockchainProvenance Blockchain(HASH)$0.0100522.37%
  • YLDSYLDS(YLDS)$1.000.00%
  • aptosAptos(APT)$0.65-2.76%
  • injective-protocolInjective(INJ)$5.11-10.11%
  • MidnightMidnight(NIGHT)$0.030742-3.62%
  • Pump.funPump.fun(PUMP)$0.001462-6.07%