Preview surface — demo data. Where real data exists today (e.g. RealT, BlackRock BUIDL, Lift Dollar) we render it; everywhere else we render synthetic enrichment generated deterministically from public signal and clearly marked Demo or Inferred. The Phase 3 roadmap replaces every synthetic source with live ingestion — see Methodology → Exposure Graph & Similarity Engine.
← back to incident ledger

phishing drainerDemo

Nov 8, 2024 · $334.2K · human op

Narrative

On 2024-11-08, Alchemy Pay suffered a phishing drainer incident resulting in approximately $334,212 in losses. The exploit targeted the human_op layer. Attribution: dprk_lazarus. This is a demonstration entry — not a real incident.

Classification

Root cause
phishing_drainer
Secondary causes
Attack layer
human_op
Strategy
human_exploit
Actor role
target
Attribution
dprk_lazarus
Attacker address
0x7550efa60a710918652ed4e85417ae243ca3859f
Flash loan
no
Audited at time
no
Bounty at time
no

AADAPT mappings

DEMO:AADAPT.TA0001DEMO:AADAPT.TA0040DEMO:AADAPT.T1566.003

Evidence

Disclosure date
Nov 10, 2024
Funds recovered
Audit firms at time
Post-mortem URLs (synthetic)
  • https://medium.com/alchemy-pay/post-mortem-alchemy-pay-2024-11-08
  • https://rekt.news/alchemy-pay-rekt
  • https://blog.alchemy-pay.xyz/incident-report
tx hashes (2)
  • 0x74dc7f86cf60604c6afe0d2114b916301039a174be37d5ab72882ec79b166042
  • 0x931a62316455056a58108d182d1b56237ccade32d8a5ff59977bc27e16290603