Preview surface — demo data. Where real data exists today (e.g. RealT, BlackRock BUIDL, Lift Dollar) we render it; everywhere else we render synthetic enrichment generated deterministically from public signal and clearly marked Demo or Inferred. The Phase 3 roadmap replaces every synthetic source with live ingestion — see Methodology → Exposure Graph & Similarity Engine.
← back to incident ledger

phishing drainerDemo

Apr 18, 2023 · $807.7K · human op

Narrative

On 2023-04-18, CyberConnect suffered a phishing drainer incident resulting in approximately $807,732 in losses. The exploit targeted the human_op layer. Attribution: unattributed_criminal. This is a demonstration entry — not a real incident.

Classification

Root cause
phishing_drainer
Secondary causes
ice_phishing_approval
Attack layer
human_op
Strategy
human_exploit
Actor role
target
Attribution
unattributed_criminal
Attacker address
0xb2b506cdafe57a2dbf88554cb6649aa2e47db47e
Flash loan
no
Audited at time
no
Bounty at time
no

AADAPT mappings

DEMO:AADAPT.TA0001DEMO:AADAPT.TA0040DEMO:AADAPT.T1566.003

Evidence

Disclosure date
Apr 19, 2023
Funds recovered
Audit firms at time
Post-mortem URLs (synthetic)
  • https://medium.com/cyberconnect/post-mortem-cyberconnect-2023-04-18
  • https://rekt.news/cyberconnect-rekt
tx hashes (3)
  • 0x7a08cd97acb77c02754b83c160815260b907eaeb38a1223737b807172b92864c
  • 0x3670f6e0edeef5f1e2bdba9282a8da4950e0806c6389466884a2ff9b4c38fb5c
  • 0x6120745e9641fe2d43dc03477ce1f6019e7ede252dbbea2941b1994b2cca37bc