Preview surface — demo data. Where real data exists today (e.g. RealT, BlackRock BUIDL, Lift Dollar) we render it; everywhere else we render synthetic enrichment generated deterministically from public signal and clearly marked Demo or Inferred. The Phase 3 roadmap replaces every synthetic source with live ingestion — see Methodology → Exposure Graph & Similarity Engine.
← back to incident ledger

phishing drainerDemo

Jul 11, 2024 · $5.2M · human op

Narrative

On 2024-07-11, GMX suffered a phishing drainer incident resulting in approximately $5,218,469 in losses. The exploit targeted the human_op layer. Attribution: internal. This is a demonstration entry — not a real incident.

Victims

Classification

Root cause
phishing_drainer
Secondary causes
Attack layer
human_op
Strategy
human_exploit
Actor role
target
Attribution
internal
Attacker address
0xd9bd57650126f2727499df78dd310c088c95dd06
Flash loan
no
Audited at time
no
Bounty at time
yes

AADAPT mappings

DEMO:AADAPT.TA0001DEMO:AADAPT.TA0040DEMO:AADAPT.T1566.003

Evidence

Disclosure date
Jul 11, 2024
Funds recovered
Audit firms at time
Post-mortem URLs (synthetic)
  • https://medium.com/gmx/post-mortem-gmx-2024-07-11
tx hashes (4)
  • 0x8ee4d8a8c5d1909a6d4be6843bc60610f42f4d86835b2f65062807a04a30a270
  • 0xa1d49c4491805cc5e0e066c47cb7e3688de20fe51503016af4dfb1bdc359bfc4
  • 0xbb89baf186906ee5d4e1cba9a8e3598fa4d5b1fe06798527effaf51b83496bf1
  • 0xb1990ddfa2ee812490450d017e9a28bdba1d0883d0ee72e8370e0cfa9be49a25