Preview surface — demo data. Where real data exists today (e.g. RealT, BlackRock BUIDL, Lift Dollar) we render it; everywhere else we render synthetic enrichment generated deterministically from public signal and clearly marked Demo or Inferred. The Phase 3 roadmap replaces every synthetic source with live ingestion — see Methodology → Exposure Graph & Similarity Engine.
← back to incident ledger

phishing drainerDemo

Sep 14, 2021 · $176.2K · human op

Narrative

On 2021-09-14, Thirdweb suffered a phishing drainer incident resulting in approximately $176,243 in losses. The exploit targeted the human_op layer. Attribution: mev_searcher. This is a demonstration entry — not a real incident.

Victims

Classification

Root cause
phishing_drainer
Secondary causes
Attack layer
human_op
Strategy
human_exploit
Actor role
target
Attribution
mev_searcher
Attacker address
0x758e796da0d1caef70b5208eb882d803726084a8
Flash loan
no
Audited at time
no
Bounty at time
no

AADAPT mappings

DEMO:AADAPT.TA0001DEMO:AADAPT.TA0040DEMO:AADAPT.T1566.003

Evidence

Disclosure date
Sep 14, 2021
Funds recovered
Audit firms at time
Post-mortem URLs (synthetic)
  • https://medium.com/thirdweb/post-mortem-thirdweb-2021-09-14
  • https://rekt.news/thirdweb-rekt
  • https://blog.thirdweb.xyz/incident-report
tx hashes (4)
  • 0x4758be8e754b04e34da842a77c779c41e809a7e658894c3b641e74015234e63f
  • 0x98ca2a77a1860261d468c8e46c0a1ed186c5081cef672e1963027c4ccbcce551
  • 0x4abe89e0431aeb57d84f97be7d3c90f5015dd440fa0369d8a8af7c900c53a1b6
  • 0x90b837ec6fd571d015191baee5e86fcef9ffc4952aebbff03af93edb8e01b9d7