TLDR
South Koreas financial watchdog is moving to sanction Upbits operator Dunamu over a 2025 hack involving Solana-based assets, signaling tougher oversight of local crypto venues.
- The Financial Supervisory Service sent an inspection opinion letter to Dunamu, formally opening a sanctions process over the November 2025 Upbit wallet breach.
- The exploit hit Solana-linked holdings with losses reported around 3236 million dollars, though Upbit froze some funds, pledged full reimbursement, and overhauled its wallet systems.
- Because current law lacks clear hacking penalties, the case may shape stronger rules for cyber incidents and influence how Korean users access SOL and other assets.
Deep Dive
1. How The Sanctions Process Works
South Koreas Financial Supervisory Service (FSS) has sent Dunamu an inspection opinion letter, which is the formal first step in a sanctions procedure over the Upbit hack.
According to Korean and international reports, including a detailed community summary on CoinsKid and coverage from Cointelegraph, this letter lets Dunamu respond to the regulators findings before penalties are proposed.
The case will go through several review bodies, such as a sanctions committee and higher financial regulators, so final sanctions may take time and can range from fines to compliance orders.
2. What Happened In The Solana-Related Hack
The incident was a hot wallet breach at Upbit on 27 November 2025, affecting Solana based assets held on the exchange rather than the Solana (SOL) network itself.
Loss estimates vary slightly by source, with figures around 44.5 billion won, roughly 32 million dollars, and earlier reports closer to 36 million dollars, showing the scale of the exploit.
Reports say Upbit moved assets to cold storage, halted deposits and withdrawals, froze part of the stolen funds, and committed to fully reimbursing affected customers while redesigning its wallet architecture and deploying an on chain tracing system.
For SOL holders, the core risk was at the exchange custody layer, not the Solana protocol, but it highlights how venue security and disclosure practices can still impact sentiment.
3. Regulatory Gaps And Impact On SOL Users
The FSS is testing South Koreas new Virtual Asset User Protection Act, which currently has no explicit sanctions for hacking or system failures, making the eventual penalties difficult to predict.
Authorities are already considering adding specific hacking and compensation provisions in the next phase of the Digital Asset Basic Act, so this case could become a reference point for future rules.
For Korean users of SOL and other assets, tighter exchange requirements could improve protection over time, but in the short run may mean more scrutiny of withdrawals, listings, and compliance on major platforms like Upbit.
Confidence: high because several independent outlets and regulatory focused reports describe the same letter, process, and incident details.
Conclusion
A Korean regulator moving toward sanctions over the Solana related Upbit hack shows that exchange security failures are now treated as systemic issues, not isolated mishaps.
For SOL itself, the protocol was not breached, but the episode underscores that chain level strength does not remove venue risk, and upcoming Korean rules on hacking and user protection could reshape how local investors interact with major crypto assets.
