We need to talk about the dangers of custody on exchanges

When it comes to long-term custody, exchanges just aren’t worth it — and frankly, it’s absurd to ignore the risks they pose as custodians

OPINION
article-image

Artwork by Crystal Le

share

A decade has passed since the infamous hack of major exchange Mt. Gox. The exchange’s subsequent collapse lost 7% of all bitcoin at the time — the equivalent of approximately 45 billion dollars today. It was one of the first events to threaten the very existence of the crypto ecosystem, but certainly not the last.

The industry hasn’t learnt from this catastrophe — rather quite the opposite. 

We’ve seen plenty more similar incidents in recent years. In 2023 alone, the industry suffered losses exceeding $1.8 billion due to hacks. Large platforms like Binance have given in to pressure from institutional players when it comes to holding assets with independent custodians, but not retail customers. In February, FixedFloat, a decentralized and non-KYC crypto exchange, lost over $26 million in an alleged hack

A devastating loss for individuals, but a mere footnote in the industry’s ongoing saga. In fact, the global crypto community has lost at least $200 million — and counting — in 2024 alone.

There seems to be a real industry-wide reluctance to address the dangers of using exchanges for custody. But why? It’s not like there isn’t an abundance of cautionary tales.

Are we doomed to repeat history?

Are we learning any lessons from the many exchange-related issues that we have seen over the last 10 years? 

Users are hopping from one exchange to another, using them as custodians of their assets rather than their primary purpose as a trading platform — but with even the largest players in the industry failing to provide a consistent and secure offering, they are running out of options. 

Read more from our opinion section: Stablecoins bots are a feature, not a bug

Beyond hacks, there is a major crisis of trust in exchanges, exacerbated by fraudulent actors and malpractice (let’s not forget Binances’ recent $4.3 billion AML charges). And no one needs reminding of the FTX debacle, with victims citing “irreparable harm,” substantial financial loss and emotional toll ahead of Sam Bankman-Fried’s sentencing of 25 years in prison for his crimes.

While exchanges are, of course, important for managing, trading and off-and-on-ramping assets, they simply aren’t a suitable option for custody. 

Global regulatory bodies like the Financial Stability Board (FSB) are sounding alarm bells, yet the broader industry appears to be turning a blind eye — despite the seemingly obvious message that separating exchange from custody is the biggest issue in crypto.

Separating exchange from custody is the biggest issue in crypto

What are the alternatives?

While self-custody offers a level of autonomy, it also leads to major security vulnerabilities. Factors like human error, cyber attacks and limited regulation all contribute to the mismanagement of assets with disastrous consequences. 

Cold wallets, often hailed as a safer alternative, lack the sophistication needed to ward off security threats. Despite not being connected to the internet, they still have rampant security issues, with AI and phishing becoming more sophisticated. It’s an old-fashioned, archaic way to store funds, serving as the modern-day equivalent of stashing money under a mattress — not exactly high-tech security.

Why the bull run equates to a hacker’s field day

With bitcoin hitting all-time highs in March, the inflow of users into the space is arguably the highest seen in years. The trading frenzy, price speculation and surge of new users presents a ripe opportunity for hackers. 

Many newcomers look for the simplest and easiest websites or largely unregulated exchanges as the “entry point” to crypto and completely overlook due diligence when opening exchange accounts. People remain largely unaware of the inherent risks associated with entrusting their assets to a trustless, unregulated system. They also, understandably so, lack comprehension of the rules, or lack thereof, that “regulated” VASPs posturing as banks are subject to.

How can users feel safe using and holding crypto? How can they use the value of their crypto to interact with the traditional financial services and payments industry when there are growing restrictions in transfers or transactions between exchanges and banks?

Should you hold your crypto on exchanges? 

Unlike exchanges, which often attract consumers who neglect due diligence, regulated institutions that operate to the regulated standard of a “crypto bank” with secure rails offer a more trustworthy alternative for storing assets. 

These institutions combine the stability and security of traditional banking with the innovation and potential of cryptocurrencies, eliminating the various risks associated with exchanges.

It’s clear that when it comes to long-term custody, exchanges just aren’t worth it, and frankly, it’s absurd to ignore the risks they pose as custodians. 

We have to start taking security seriously in this industry by funneling users through truly regulated and above-board solutions. It’s either that, or risk repeating history…again.



Get the news in your inbox. Explore Blockworks newsletters:

Tags

Decoding crypto and the markets. Daily, with Byron Gilliam.

Upcoming Events

Old Billingsgate

Mon - Wed, October 13 - 15, 2025

Blockworks’ Digital Asset Summit (DAS) will feature conversations between the builders, allocators, and legislators who will shape the trajectory of the digital asset ecosystem in the US and abroad.

Industry City | Brooklyn, NY

TUES - THURS, JUNE 24 - 26, 2025

Permissionless IV serves as the definitive gathering for crypto’s technical founders, developers, and builders to come together and create the future.If you’re ready to shape the future of crypto, Permissionless IV is where it happens.

Brooklyn, NY

SUN - MON, JUN. 22 - 23, 2025

Blockworks and Cracked Labs are teaming up for the third installment of the Permissionless Hackathon, happening June 22–23, 2025 in Brooklyn, NY. This is a 36-hour IRL builder sprint where developers, designers, and creatives ship real projects solving real problems across […]

recent research

Research Report Templates.png

Research

Maple Finance has successfully navigated significant market challenges through its strategic pivot to secured lending (Maple v2) and the launch of its Syrup product. Syrup has become a primary growth driver, delivering sustainable, outperforming stablecoin yields and rapidly increasing TVL. The upcoming custody-first Bitcoin staking product (istBTC) presents another significant avenue for expansion. Crucially, Maple has achieved operational profitability, a key inflection point that, combined with a fully vested token and active buyback mechanism, strengthens its investment case. While valuation metrics suggest potential undervaluation relative to peers and growth, the primary forward-looking risk identified is the long-term sustainability of its current high-take-rate collateral staking revenue model.

article-image

Mersinger’s final day at the CFTC will be May 30

article-image

Squads CEO Stepan Simkin explained why the firm launched Altitude and how he’s thinking about stablecoins

article-image

Sponsored

Instead of endless wallet popups, users could connect once, set clear rules, and delegate permission to an app or to an AI agent.

article-image

Prediction markets show that people bet in anticipation of things happening far too often

article-image

The agency’s final deadline is in October

article-image

Higher inflation historically lags behind tariff implementation, so don’t celebrate just yet