Preview surface — demo data. Where real data exists today (e.g. RealT, BlackRock BUIDL, Lift Dollar) we render it; everywhere else we render synthetic enrichment generated deterministically from public signal and clearly marked Demo or Inferred. The Phase 3 roadmap replaces every synthetic source with live ingestion — see Methodology → Exposure Graph & Similarity Engine.
← back to incident ledger

reentrancyDemo

Sep 7, 2022 · $17.1M · protocol

Narrative

On 2022-09-07, Sanctum suffered a reentrancy incident resulting in approximately $17,067,174 in losses. The exploit targeted the protocol layer. Attribution: unknown. This is a demonstration entry — not a real incident.

Victims

Classification

Root cause
reentrancy
Secondary causes
access_control_missing
Attack layer
protocol
Strategy
tech_vuln
Actor role
target
Attribution
unknown
Attacker address
0xccdfafd8fbe563d58dc11e4c351cd9d21df384b2
Flash loan
no
Audited at time
no
Bounty at time
no

AADAPT mappings

DEMO:AADAPT.TA0004DEMO:AADAPT.TA0040DEMO:AADAPT.T1190

Evidence

Disclosure date
Sep 7, 2022
Funds recovered
Audit firms at time
Post-mortem URLs (synthetic)
  • https://medium.com/sanctum/post-mortem-sanctum-2022-09-07
  • https://rekt.news/sanctum-rekt
  • https://blog.sanctum.xyz/incident-report
tx hashes (3)
  • 0x8d47f92935c150453edeaa7d5e404ef818b170b304f4f6b24e60c774b34049c0
  • 0xd06ff1c713357e476e684ab52b05946cb2f82dcf48d77e70a8c510f2d47dd2e0
  • 0xe0b60ea0b324378c65270e2592721c6cd74905f3435597fca406a5fc8bbaee25