← Back

Wire · regulatory

South Korea Weighs Sanctions After Upbit's $36 Million Exploit

Published

19 July 2026

Topic

regulatory

Sectors

Fintech

Geography

South Korea

Source

Read at financefeeds.com

Verified

Fusion42 · 19 July 2026 · Fusion42 review

South Korea's Financial Supervisory Service has launched a formal sanctions process against Dunamu (Upbit) following a $36 million November 2025 hack, citing gaps in the Virtual Asset User Protection Act that lack direct penalties for cyberattacks. The regulator is expected to close that enforcement gap in phase two of the Digital Asset Basic Act by adding sanctions and compensation provisions for security breaches.

This Wire brief sits within Fusion42's coverage of Fintech, and 3 sources have reported it between 19 Jul 2026 and 20 Jul 2026.

◆ The Wire takeaway

If you're running a crypto exchange or custody platform outside South Korea, this is your early warning: regulators are moving from licensing checks to operational resilience audits, and the law will soon penalise hacks directly instead of just slow disclosure. You need to prove strong wallet controls, rapid incident response, and asset segregation before the regulator catches up.

Coverage

3 sources · first reported 19 Jul 2026 · latest 20 Jul 2026

Related on Wire

Topics

Fintechcrypto-exchange-regulationsecurity-breach-liabilityregulatory-gap-closureuser-protection-frameworkcompliance-timing