Crypto casino Duelbits confirmed that an unauthorized incident drained approximately $7 million from its hot wallets, forcing the platform offline. Suspicious transfers affected wallets on Ethereum, BNB Chain, Tron, and Bitcoin; the stolen assets were reportedly consolidated primarily into Ether. Blockchain security firm Scam Sniffer assessed the activity as a possible private-key compromise.
Duelbits said customer funds remain safe and that it has identified the incident, though it has not disclosed the attack vector, custody design, or technical root cause. The company is investigating the breach while rebuilding deposit and withdrawal infrastructure and replenishing hot wallets before restoring services.

Track how attackers are adapting to this technology.
4 events from the most recent confirmed update back to the earliest known activity.
On X, Duelbits co-founder Joe said that customer funds remained safe and that the company had identified what occurred. He said an official statement would follow within 24 hours while the company rebuilt deposit and withdrawal infrastructure before restoring service.
Duelbits confirmed that an unauthorized incident had drained approximately $7 million from its hot wallets and took the platform offline. The company began investigating, replenishing affected hot wallets, and rebuilding deposit and withdrawal systems prior to restoring operations.
Investigators identified an additional unauthorized transfer of 8.1 BTC from a Duelbits Bitcoin hot wallet, bringing the reported total loss to about $7 million. Most stolen assets were reportedly converted into Ether and consolidated in an address holding roughly 2,234 ETH.
Scam Sniffer identified approximately $4.2 million in abnormal transfers from Duelbits hot wallets on Ethereum, BNB Chain, and Tron to newly created addresses. The activity was assessed as a suspected private-key compromise, though Duelbits did not confirm the attack vector.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Follow how adversaries are adapting to this technology, and where it touches your stack today.
2 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.