05 Apr 2025

light mode

Martin Köppelmann Speaks Out on Safe Global Hack—What Went Wrong?

Martin Köppelmann from Gnosis with a hacker silhouette and Bybit logos in the background - The Coinomist

The Safe Wallet team has gained increased attention after forensic reports on the nearly $1.5 billion ByBit hack emerged. It turns out that the North Korean hacking group Lazarus compromised one of Safe Global’s developers’ machines, targeting Bybit’s cold wallet.

On this page

As seen in the investigation results shared by Bybit CEO Ben Zhou, malicious code originated from Safe Wallet’s infrastructure, not Bybit’s.

While the situation is serious, Martin Köppelmann, co-founder of Gnosis (which is behind the development of Safe Wallet), is taking the matter head-on, offering an explanation of what really happened.

Instead of evading blame, Köppelmann acknowledges the situation, admitting that safe.global was compromised, but the interface code is safe.

In response to a plethora of questions directed to the Safe team, Köppelmann explained:

What we were trying to say was that this was not a bug in the open source code you will find on our Github but instead came through malicious access to the server. This difference is important because others use the code as well.

Although it’s still unclear how Lazarus Group found a way into the developer’s server, Köppelmann’s statement means that the open-source code is fine, but the attackers altered the code on the developer’s machine.

Safe Wallet Team Is Looking Into the Case: Martin Köppelmann Responds to CZ

After news of the breach broke, Safe released a statement, explaining what went down. They made it clear that there were no issues with their smart contracts or front-end code.

But CZ, Binance’s former CEO, wasn’t having it. He took to X, calling the update “not that great” and accusing Safe of using vague language to downplay the situation.

He wanted more details—how exactly the hacker got into the developer’s machine, how they tricked multiple signers into approving shady transactions, what kind of access the machine had to Bybit’s systems, and why only certain addresses were targeted.

Martin Köppelmann stepped in to clear things up. He explained that the hacker had tampered with a developer’s machine to specifically target the Bybit Safe. In his words:

The interface was modified specifically targeting the Bybit Safe. So when Bybit would do a transaction – it would show the transaction but actually send a different transaction to the wallet (hardware wallet).

As for how multiple signers were tricked, he admitted there’s still some uncertainty but suggested the attackers likely used advanced techniques to bypass the multisig system.

In the end, he thanked CZ for raising these important questions.

Security Matters Are More Complex Than They Can Seem 

Amid the discussions, Martin Köppelmann shared his thoughts on security:

If you have a 1 line hot take of how to fix security, you are wrong.

According to him, from the outside, it might seem like fixing security is just a matter of implementing XYZ measures. But in reality, to prevent future incidents, a team needs to address all possible vulnerabilities at once – a much harder challenge.

For those unfamiliar, Martin Köppelmann is a Berlin-based founder specializing in IT Systems Engineering. He co-founded Gnosis in 2017, a blockchain infrastructure company that builds tools for developers.

The content on The Coinomist is for informational purposes only and should not be interpreted as financial advice. While we strive to provide accurate and up-to-date information, we do not guarantee the accuracy, completeness, or reliability of any content. Neither we accept liability for any errors or omissions in the information provided or for any financial losses incurred as a result of relying on this information. Actions based on this content are at your own risk. Always do your own research and consult a professional. See our Terms, Privacy Policy, and Disclaimers for more details.

Articles by this author
Bitget Secures Digital Asset Service Provider License from El Salvador

Bitget Secures Digital Asset Service Provider License from El Salvador

Crypto exchange Bitget has received the Digital Asset Service Provider (DASP) license from El Salvador, allowing the platform to expand its crypto offerings in the country.

Anahit Avetisyan
Free ChatGPT Plus Now Available for College Students in North America

Free ChatGPT Plus Now Available for College Students in North America

OpenAI has announced free access to ChatGPT Plus for college and university students in the United States and Canada until May 2025.

Vlad Vovk
BTC Faces Resistance at $85K as Trade War Pressure Mounts

BTC Faces Resistance at $85K as Trade War Pressure Mounts

Bitcoin remains pinned under $85,000, as global markets digest rising tensions between the U.S. and China over fresh tariffs.

Anton Kryshtal
BTC’s Wild Ride Isn’t Over: Fed’s Move Up Next

BTC’s Wild Ride Isn’t Over: Fed’s Move Up Next

Recent tariff implementations by President Trump, met with China’s retaliatory measures, have introduced significant volatility into the cryptocurrency market. Investors are now keenly awaiting employment statistics and the Federal Reserve’s forthcoming decisions on interest rates.

Dmytro Psevdonimenko
Hot Crypto Discussions on X Today: Market Volatility, Crypto ETFs, & More

Hot Crypto Discussions on X Today: Market Volatility, Crypto ETFs, & More

Today, the crypto community is discussing market volatility, regulations, and the future of crypto ETFs, among other topics on X/Twitter.

Anahit Avetisyan
The Man Who Forgot $240M: A Bitcoin Tragedy for the Ages

The Man Who Forgot $240M: A Bitcoin Tragedy for the Ages

This is perhaps the most iconic crypto loss story of all time. In 2011, Stefan Thomas received 7,002 BTC for making a video. Today, that stash is worth $240 million. But he forgot the password. An entire fortune locked away forever.

Elina Moskovchuk
Sam Altman, ChatGPT, and the AI Spark That Lit Up Crypto

Sam Altman, ChatGPT, and the AI Spark That Lit Up Crypto

At the end of 2022, a public beta of an AI-powered product quietly launched. It looked like nothing more than a simple chat window. However, it turned out to be a global sensation.

Elina Moskovchuk
Fiat Money vs Commodity Money: What’s the Difference?

Fiat Money vs Commodity Money: What’s the Difference?

Explore the key differences between fiat money and commodity money. Learn about their intrinsic value, historical context, advantages, disadvantages, and real-world examples.

The Coinomist
Blockchain Trilemma: Explained with Real-World Examples

Blockchain Trilemma: Explained with Real-World Examples

In recent years, blockchain technology has gained immense popularity, being the backbone of cryptocurrencies, decentralized finance (DeFi), and various other applications. However, as the technology continues to evolve, a crucial problem has surfaced: the blockchain trilemma.

The Coinomist
How Is a Cryptocurrency Exchange Different from a Cryptocurrency Wallet?

How Is a Cryptocurrency Exchange Different from a Cryptocurrency Wallet?

A guide detailing the differences between cryptocurrency exchanges and wallets. Learn about their distinct roles, security features, liquidity, and user control in the digital asset ecosystem.

The Coinomist
What Are Assets? Differences Between Coins and Tokens

What Are Assets? Differences Between Coins and Tokens

Discover the meaning of assets in finance and crypto, and learn the key differences between coins and tokens to make informed investment decisions.

The Coinomist
What Is a Margin Call? An Essential Guide

What Is a Margin Call? An Essential Guide

A comprehensive guide to understanding margin calls in trading. Learn what triggers them, how they work, their risks, and strategies to manage or avoid them

The Coinomist
What Happens When Bitcoin Runs Out? Predictions and Strategies

What Happens When Bitcoin Runs Out? Predictions and Strategies

Explore what happens when Bitcoin reaches its 21 million supply cap. Learn how the shift from block rewards to transaction fees could impact miners, investors, and the entire ecosystem.

The Coinomist
Arthur Hayes Challenges Fed Independence in His New Essay “The BBC”

Arthur Hayes Challenges Fed Independence in His New Essay “The BBC”

In his latest essay “The BBC,” Arthur Hayes examines the emotional pressures on the Federal Reserve and the monetary policy challenges that could lead to increased liquidity in the crypto market.

Dmytro Psevdonimenko
Trump’s “US Crypto Reserve” Plan: A Game Changer or Just Talk?

Trump’s “US Crypto Reserve” Plan: A Game Changer or Just Talk?

It takes just one post from Trump to stir the crypto market. Recently, he announced on Truth Social that the evaluation of a strategic crypto reserve is in progress as part of his broader Trump crypto policy.

Anahit Avetisyan
MORE
Living Crypto in Vienna: Where to Spend, Stake, and Socialize

Living Crypto in Vienna: Where to Spend, Stake, and Socialize

Vienna has always been classy—but now it’s crypto-savvy too. Whether you’re spending Bitcoin on your morning coffee or mingling with Web3 insiders, crypto Vienna has you covered.

Yara Zornell
Where to Spend Your Crypto Daily in Dubai: From Food to Fashion

Where to Spend Your Crypto Daily in Dubai: From Food to Fashion

Living for cryptocurrency in Dubai has become a real experience by 2025. Discover how to use your digital assets for food, shopping, and daily essentials in this futuristic crypto city.

Yara Zornell
MORE