AMLBot

2K posts

AMLBot banner
AMLBot

AMLBot

@AMLBotHQ

Blockchain Intelligence at your fingertips. Crypto Tracing / AML Screening / Incident Response

Katılım Ekim 2020
587 Takip Edilen7.5K Takipçiler
Sabitlenmiş Tweet
AMLBot
AMLBot@AMLBotHQ·
New Product: AI Tracer is Live 🔍 A self-serve crypto investigation tool, built for everyone. Paste a TxID and AI traces where the funds went — every wallet, bridge, and exchange along the path, across 14 chains. A visual map in minutes. No analyst skills needed. First Trace FREE → amlbot.com/ai-tracer
GIF
English
1
0
1
282
AMLBot
AMLBot@AMLBotHQ·
5/5 Current Status All 1,128.47 BTC remains unspent currently. We have not detected any interaction with mixers, bridges, exchanges, or swap services so far Those addresses are under active monitoring. Any movement toward an identifiable service will be flagged immediately
AMLBot tweet media
English
0
0
1
61
AMLBot
AMLBot@AMLBotHQ·
4/5 Concentration and Largest Losses The losses were heavily concentrated among the largest source addresses. The top 10 addresses accounted for 21% of the total loss, while the top 100 accounted for 58% The five largest individual drains ranged from approximately $1.5M to $3.26M. Each was swept in a single transaction, leaving no practical window for intervention
AMLBot tweet media
English
1
0
1
79
AMLBot
AMLBot@AMLBotHQ·
A coordinated Bitcoin draining campaign has swept ~2,321 wallets believed to be linked to compromised @COLDCARDwallet devices ~1,128 BTC (~$72.1M) drained across just 31 hours. All stolen funds remain unspent across five holding addresses. Full analysis below:
English
1
1
10
384
AMLBot
AMLBot@AMLBotHQ·
@DefimonAlerts @SwanTreasurpaj We tracked this one too. The stolen funds were bridged to Ethereum via Transit Finance and now sit as ~345 ETH in a dormant wallet. x.com/AMLBotHQ/statu…
AMLBot@AMLBotHQ

Project @SwanTreasury was drained of ~$625K on BNB Chain due to a private key compromise The attacker used the compromised signer to buy ~687K STY at a 100x discount, then dumped the tokens for ~625K USDT. Funds were consolidated to a secondary EOA and bridged to Ethereum via Transit Finance ~345 ETH (~$649K) is now lying dormant at this address 0x57503a992fe99fd69cad9ef94ed7e26a2057cfd2 on Ethereum We are currently monitoring for movement

English
0
0
0
157
Defimon Alerts
Defimon Alerts@DefimonAlerts·
🚨 @SwanTreasurpaj - Loss ~$625K (2026-07-30) Token: $STY @ $2.87 Network: BNB Chain Type: Private Key Compromise (signer key leak) The protocol's off-chain signer key (0xdEb4...8284, hardcoded as _signer in ZhaiquanBuy) was compromised. buy() sells STY at a signed discount: buyamount = getBuyamount() * 100 / discount. The attacker crafted valid signatures for their own address with discount=1, buying STY at a 100x discount (~687K STY for ~19.7K USDT via a PancakeSwap flash loan), plus forged claim()/transfer signatures on sibling contracts. Dumping the STY into the STY/USDT pool netted ~$625K USDT. Every ecrecover in the tx resolves to the exact hardcoded signer, confirming the key itself was compromised rather than a signature-logic flaw. TX: bscscan.com/tx/0xc8c3325ba… Attacker: bscscan.com/address/0x840f… Victim: bscscan.com/address/0x27af… ⏱️ Real-time alerts: defimon.xyz
English
1
6
27
3.6K
AMLBot
AMLBot@AMLBotHQ·
New Product: AI Tracer is Live 🔍 A self-serve crypto investigation tool, built for everyone. Paste a TxID and AI traces where the funds went — every wallet, bridge, and exchange along the path, across 14 chains. A visual map in minutes. No analyst skills needed. First Trace FREE → amlbot.com/ai-tracer
GIF
English
1
0
1
282
AMLBot
AMLBot@AMLBotHQ·
Project @SwanTreasury was drained of ~$625K on BNB Chain due to a private key compromise The attacker used the compromised signer to buy ~687K STY at a 100x discount, then dumped the tokens for ~625K USDT. Funds were consolidated to a secondary EOA and bridged to Ethereum via Transit Finance ~345 ETH (~$649K) is now lying dormant at this address 0x57503a992fe99fd69cad9ef94ed7e26a2057cfd2 on Ethereum We are currently monitoring for movement
AMLBot tweet media
English
0
0
1
497
AMLBot
AMLBot@AMLBotHQ·
Another attacker chose to return stolen funds instead of laundering them @AcrossProtocol exploiter sent back ~1,730 ETH (~$3.3M) to a multisig controlled by Across Protocol, keeping 225 ETH (~$430K) as a bounty This comes shortly after the @cascade_xyz attacker did the same with their exploit proceeds. Good news for the industry
AMLBot tweet media
AMLBot@AMLBotHQ

Good news! @cascade_xyz has recovered $1.22M of the $1.34M USDC drained in the July 15 exploit Tracing shows the stolen funds moved through several hops, including a bridge to Solana and back to Ethereum via Relay, before returning to Cascade's multisig. The attacker kept ~$120K as a bounty in exchange for returning the funds

English
1
0
23
2K
AMLBot
AMLBot@AMLBotHQ·
@HighTech_Inc @AFX_XYZ We were watching this case as well. So far, the funds remain untouched at the destination wallet. x.com/AMLBotHQ/statu…
AMLBot@AMLBotHQ

AFX (@AFX_XYZ) on @arbitrum was exploited for ~$24.15M in USDC Attacker bridged the stolen funds to Ethereum via CCTP, then swapped to ~12.47k ETH through DEX Funds are currently held at 0x627654b2782bfc57580ecd11d40869b350b6ebac We are actively monitoring the address

English
1
0
1
144
AMLBot
AMLBot@AMLBotHQ·
@HIT We tracked this one too. The funds haven't moved further, still sitting at 0x627654b2782bfc57580ecd11d40869b350b6ebac.
English
0
0
0
41
HIT.com
HIT.com@HIT·
JUST IN: Arbitrum protocol AFX Trade hit by a $24 million bridge exploit, with the attacker moving the stolen funds to Ethereum and swapping them for 12,467 $ETH.
English
5
17
30
772
AMLBot
AMLBot@AMLBotHQ·
@PeckShieldAlert @AFX_XYZ This one was on our radar too. Our tracing shows the swapped ETH is still held at that same address. x.com/AMLBotHQ/statu…
AMLBot@AMLBotHQ

AFX (@AFX_XYZ) on @arbitrum was exploited for ~$24.15M in USDC Attacker bridged the stolen funds to Ethereum via CCTP, then swapped to ~12.47k ETH through DEX Funds are currently held at 0x627654b2782bfc57580ecd11d40869b350b6ebac We are actively monitoring the address

English
0
1
0
125
AMLBot
AMLBot@AMLBotHQ·
Verus Bridge got exploited for the second time, and all the hack proceeds were deposited to Tornado Cash with no sign of the funds being returned
AMLBot tweet media
Verus - The Internet of Value@VerusCoin

The returned Verus bridge funds have now been converted back into the original currencies for reintegration into the Verus network. The Verus recovery address currently holds 1,194.86 ETH (73.51% recovered), 76.0321 tBTC (73.41% recovered), and 147,727.67 USDC (100% recovered as discussed in the community meetings). One issue we noticed is that some DEX interfaces have blocked the Verus return/recovery address. This address is not the attacker’s wallet. It is the community recovery address holding community funds. We ask @Uniswap (your compliance department has been notified, we are still waiting for a response) @1inch @blockaid_ to review and correct the classification of the Verus recovery address (0xF9AB28cB7b72B518e6a351FbdaBe69362cBC1A74).

 We ask the community to help by tagging relevant DEX interfaces, wallets, block explorers, and tracking services below, so the Verus recovery address is correctly recognized across the ecosystem. 0xF9AB28cB7b72B518e6a351FbdaBe69362cBC1A74

English
2
0
5
634
AMLBot
AMLBot@AMLBotHQ·
The BarnBridge attacker has started depositing stolen funds into Tornado Cash with ~418 ETH (~$804k) sent so far A further 148 ETH remains sitting at 0x6e6738c1a4b58588e4e9ec74a9072978b09e78df
AMLBot tweet media
AMLBot@AMLBotHQ

Protocol @Barn_Bridge was exploited for ~$776K in USDC ~776.6K USDC from the stolen funds was swapped for ETH, and 415 ETH was sent to 0x2c4c1848e22006d63eBb732B61EDc871AF30Ef16, where it is now lying dormant We are monitoring the related addresses and will post updates if funds move again

English
0
0
8
807
AMLBot
AMLBot@AMLBotHQ·
AFX (@AFX_XYZ) on @arbitrum was exploited for ~$24.15M in USDC Attacker bridged the stolen funds to Ethereum via CCTP, then swapped to ~12.47k ETH through DEX Funds are currently held at 0x627654b2782bfc57580ecd11d40869b350b6ebac We are actively monitoring the address
AMLBot tweet media
English
1
1
11
1.2K
BSCN
BSCN@BSCNews·
Balance Coin goes to zero after oracle exploit guts 42DAO BNB Chain stablecoin $BLC has lost its dollar peg entirely, collapsing from $1 to around $0.001 after an attacker exploited the protocol behind it. Per SlowMist, the attacker fed 42DAO's (@42dao_official) Maker-style system an abnormally low $BTCB oracle price, triggering liquidations that should never have fired and draining roughly $912K in a single transaction. The team has yet to comment.
English
13
3
21
12.8K