Bybit releases 2025 security milestone: intercepts fraudulent funds of up to $300 million with a new AI-driven risk framework
The world's second-largest cryptocurrency exchange by trading volume, Bybit, today officially announced the comprehensive results of its 2025 Security Initiative. Bybit has built an industry-leading multi-layer defense architecture, successfully protecting the safety of tens of thousands of users and setting a new benchmark for proactive risk control in the digital asset space. According to a report by Chainalysis, global cryptocurrency losses due to scams and fraud reached as high as $17 billion in 2025.Redefining Industry Standards: Three-Tier Withdrawal Fraud Defense FrameworkTo break through the limitations of traditional post-event remediation in risk control, Bybit has pioneered a dynamic risk grading protection system that intervenes proactively before financial losses occur. This system categorizes potential fraud scenarios into three risk levels, each matched with differentiated response strategies—ensuring user withdrawal safety while maintaining a smooth trading experience on the platform.Level 1: Early Warning (Low Risk)Leveraging big data heuristic algorithms to identify abnormal behavior patterns (e.g., large withdrawals concentrated to a single new address), Bybit automatically triggers a risk questionnaire survey. Relevant insights assist the risk control operations team in blacklisting high-risk addresses in advance, achieving source interception.Level 2: Real-Time Warning (Medium Risk)When an account is flagged due to database breaches (cross-referencing external network leak data) or associated with suspicious withdrawal addresses, Bybit will trigger a real-time pop-up reminder during the withdrawal process. This mechanism guides users to pause operations and review transaction details, effectively resisting social engineering attacks that rely on urgency or emotional pressure.Level 3: Instant Interception + Cooling-Off Period (High Risk)For wallet addresses confirmed to be involved in fraud (including so-called "pig-butchering" investment scams), Bybit implements real-time withdrawal interception and enforces a 1-hour cooling-off period mechanism. This critical time window provides users with essential assurance to regain rational judgment and verify the authenticity of transactions.Overview of 2025 Achievements and Core DataThe measures implemented in the fourth quarter of 2025 have brought breakthrough results in user safety protection:Q4 Fraudulent Fund Interception and Recovery: Bybit successfully intercepted and recovered $300 million through proactive reminders, safeguarding the life savings of over 4,000 users;Q4 AI-Driven Risk Identification: Bybit's self-developed AI algorithm accurately identified 350 high-risk investment scam addresses through on-chain data analysis, helping 8,000 users avoid potential withdrawal losses;2025 Annual Infrastructure Resilience: The platform successfully withstood over 3 million hacker database breach (account hijacking) attacks;Q4 On-Chain Proactive Monitoring: The system automatically flagged 350 risk addresses, and the ticket operations team manually reviewed and marked 600 addresses, cumulatively avoiding nearly $1 million in immediate fraud losses.Co-Building a Safe Ecosystem: Industry Collaboration and Government-Enterprise LinkageBybit firmly believes that safety should not be a competitive barrier but a shared responsibility across the industry. The strategic focus for 2025 is on deep integration of external intelligence:"In 2025, our mission is to upgrade the risk control system from a 'silent shield' to a proactive, intelligent safety guardian," said David Zong, Head of Risk Control at Bybit Group. "By deeply integrating AI-driven on-chain monitoring with real-time intelligence from industry partners like TRM, Elliptic, and Chainalysis, we not only protect Bybit users but also help map the 'genetic blueprint' of fraud networks. We are opening and sharing these standardized monitoring clues across the entire ecosystem—because the safety of the industry begins with the safety of each participant."