YFarmX

Tools Crypto Exploit Tracker exploit-0075

Exploit record

Social Engineering Theft

Loss
$282M
Attack vector
Phishing
Chain
Multichain
Sector
Wallet

What happened

On January 10, 2026, a victim lost more than $282M in BTC and LTC through a hardware-wallet social-engineering scam, after which the attacker moved rapidly across THORChain, CEXs and privacy rails.

This was not a protocol failure at all; it was human compromise followed by industrial-grade laundering. The attacker started bridging and swapping almost immediately, moving large slices through THORChain into ETH, XRP and other assets, then dispersing funds across exchanges and mixers. It was a reminder that in raw dollar terms, social engineering still competes comfortably with every smart-contract exploit you care to name.

On-chain references

  • BTC Theft Address 1bc1qluxw46r55wf3dnk9c652vrt4duadm3hpuktf86
  • BTC Theft Address 2bc1qpsmh26ja0fzzf286zulmt9eywujc2pggj40wzm
  • LTC Theft Addressltc1qly43c2prj4c2e85dcspzpjd36jnapnenldnr70

One record from the Crypto Exploit Tracker, maintained by the Security Desk. Data: CSV · JSON ·RSS · CC BY 4.0 with attribution to YFarmX.Tracker updated · 15 September 2026