What to Do If Your Binance Account Is Hacked
Emergency Response When Your Account Is Hacked
If you suspect or confirm your Binance account has been hacked, time is money — you must act immediately. Here are the emergency steps you should follow in order of priority.
Step 1: Freeze Your Account Immediately (Most Important)
Binance provides an emergency account freeze feature to stop attackers from further operations as quickly as possible:
- Through the Binance APP: If you can still log into the APP, go to "Security Center" > "Account Activity" > "Disable Account"
- Through email: Find any recent email from Binance (such as login alerts) — there's usually a "Disable Account" link at the bottom
- Through the website: Visit the Binance website, and on the login page select "Security Self-Service" > "Disable Account"
Once the account is frozen, all trading, withdrawals, and login operations will be suspended, and the attacker will be unable to continue.
Step 2: Contact Binance Customer Support
Contact Binance support immediately after freezing your account:
- Live chat: Visit the Binance website, click the support icon in the bottom right
- Submit a ticket: Submit an "Account Security" related ticket in the Help Center
- Provide information:
- Your Binance UID
- Registered email and phone number
- Time of discovery and description of abnormal activities
- ID document photos
- Recent trading history screenshots
Step 3: Assess the Damage
After freezing the account, try to confirm the following:
- Are there any abnormal withdrawal records? To which addresses?
- Are there any abnormal trading records?
- Have security settings been changed? (Password, email, phone number, Google Authenticator)
- Have API keys been created or modified?
Take screenshots of all abnormal activity as evidence for subsequent appeals.
Step 4: Change Passwords of Linked Accounts
Change passwords for the following accounts immediately:
- Your Binance registration email password
- Phone email app password
- Other platforms using the same password (strongly recommended to use different passwords for each platform)
Common Ways Accounts Get Hacked
Understanding attack methods helps identify the leak source and prevent future attacks:
1. Phishing Attacks
Attackers use fake Binance websites or emails to trick you into entering your login credentials. This is the most common attack method.
Signs: Received suspicious emails and clicked links, or entered account information on unofficial websites.
2. Malware/Trojans
Malware on your computer or phone allows attackers to steal your login information and verification codes through keyloggers, screenshots, etc.
Signs: Downloaded software from unknown sources, or browser has unknown extensions installed.
3. SIM Swap Attacks
Attackers use social engineering to have your carrier transfer your phone number to a new SIM card, allowing them to receive your SMS verification codes.
Signs: Phone suddenly loses signal, and SMS verification codes are received by someone else.
4. Password Leaks
You used the same password on another platform, and after that platform suffered a data breach, attackers try the leaked password on your Binance account.
5. API Key Leaks
If you created API keys that were leaked, attackers could use the API for trading operations (but usually cannot withdraw through API unless withdrawal permissions were enabled).
Account Recovery Process
1. Identity Verification
Binance support will require you to complete strict identity verification:
- Provide original ID document photos
- Selfie holding your ID and a note with the date and UID
- Answer account-related security questions
- Provide historical transaction information
2. Security Review
The Binance security team will review:
- The attacker's operation records
- Abnormal login IP and device information
- Whether funds were transferred out
3. Account Restoration
After the review is approved, Binance will:
- Reset your password
- Reset Google Authenticator
- Lift the account freeze
- There may be a 24-48 hour withdrawal freeze after account restoration
4. Fund Recovery
If funds have been transferred out:
- If sent to another exchange, Binance may contact the other platform to attempt a freeze
- If sent to a personal wallet, recovery is very difficult
- Binance may cooperate with law enforcement for investigation
- It's also recommended to file a police report
Measures to Prevent Account Hacking
Basic Security Settings
- Enable Google Authenticator: This is the most important security measure. See Google Authenticator setup guide
- Set up anti-phishing code: Helps you identify real vs. fake Binance emails. See Anti-phishing code setup guide
- Enable withdrawal whitelist: Only allow withdrawals to preset addresses. See Whitelist address setup
- Use a strong password: At least 12 characters including uppercase, lowercase, numbers, and special symbols
Advanced Security Measures
- Use a hardware security key (such as YubiKey)
- Regularly check login records: See How to view login history
- Change password regularly: Every 3-6 months
- Don't share your account: Learn about the risks of sharing a Binance account
Device Security
- Don't use public WiFi to log in: Avoid operating your Binance account in public places like cafes
- Keep systems updated: Update your phone and computer systems promptly
- Install antivirus software: Protect against malware
- Don't download software from unknown sources: Download the Binance APP from official channels
FAQs
Q: Can funds be recovered after an account is hacked? A: It depends. If funds are still within the exchange (not yet withdrawn), recovery is more likely. If already sent to an external wallet, recovery is very difficult. The sooner you discover and freeze the account, the better the chances of recovery.
Q: Will Binance compensate for losses? A: If the loss was caused by a security vulnerability in the Binance platform itself, Binance typically compensates. However, if it was due to personal reasons (such as password leaks or clicking phishing links), Binance is not responsible for compensation.
Q: Should I file a police report after being hacked? A: It's recommended. Although cryptocurrency cases are difficult to investigate, a police report can serve as important evidence for future rights protection.
Register on Binance now and get 20% fee discount forever
Sign up through BinanceHelper's exclusive link to automatically enjoy fee discounts