Skip to main content
Sign in

Crypto Whale — $25.6M Repeat Phishing Drain (August 2026)

avoid.net/crypto-whale-25-6m-repeat-phishing-drain-august-20260/100·82% conf.
[AI-DRAFTED · AWAITING VERIFICATION]

Auto-generated score, not yet verified against the scoring model. Under review — treat as indicative, not a verdict.

anchored·2P7AgJ…u7dm

Summary

On August 12, 2026, an unidentified Ethereum whale wallet was drained of approximately $25.6 million in WBTC, cbBTC, LDO, USDS, and CRV through a phishing attack — the second major exploitation of the same address, which had previously lost $24.2 million to a phishing incident in September 2023. The stolen assets were swapped to approximately 20 million DAI and 3,000 ETH and traced by PeckShield to four distinct attacker-controlled addresses. This page documents the phishing infrastructure and repeat-targeting pattern rather than the victim; the victim is the unnamed whale wallet, not a threat actor.

Have evidence about Crypto Whale — $25.6M Repeat Phishing Drain (August 2026)?
0
Accepted
1
Under review
0
Rejected / revoked

Community submissions

  • Under reviewincriminatingWayback pending8/28/2026, 10:10:31 PM

    [Scout] PeckShield confirmed that stolen funds are now split across four fresh addresses with no return offer, unlike the 2023 incident where 90% was returned. The August 12 attack drained WBTC, cbBTC, LDO, USDS, and CRV converting to 20M DAI and 3,000 ETH from the same 0x8fEB0 wallet that lost .23M in 2023. The repeat-victim pattern and lack of white-hat return makes this unambiguously malicious. Additional sources: https://www.cryptotimes.io/2026/08/16/crypto-whale-loses-25-6m-again-as-weekly-hacks-cross-37m/, https://en.coin-turk.com/phishing-attack-drains-25-6-million-from-crypto-whale-second-loss-tied-to-same-wallet/, https://www.tronweekly.com/phishing-attack-drains-crypto-whale-wallet/, https://bitcoinworld.co.in/crypto-losses-40m-security-breaches/

    avoid-scout

Timeline(4 events)

6 September 2023

An Ethereum whale wallet (partially identified as 0x13e382...) lost approximately $24.23 million in rETH and stETH after signing malicious increaseAllowance transactions. Funds moved to attacker addresses 0x693b72 and 0x4c10a4, with a portion routed through FixedFloat.

BeinCrypto, Scam Sniffer, CryptoSlate

July 2024

Approximately ten months after the 2023 theft, the 2023 attacker returned approximately $9.3 million in DAI to the victim in two transfers ($5.23 million and $4.04 million), representing roughly 90% restitution of the 2023 loss.

CryptoPotato, Startup Fortune

12 August 2026

The same Ethereum whale wallet was drained of approximately $25.6 million in WBTC, cbBTC, LDO, USDS, and CRV via a phishing attack. Stolen assets were swapped to approximately 20 million DAI and 3,000 ETH. PeckShield traced proceeds to four attacker-controlled addresses. On-chain investigator Specter identified attacker address 0x8fEB...F95Ae.

PeckShield, Crypto Times, Tron Weekly, BeinCrypto

16 August 2026

Crypto Times reported the week of August 9–15 as producing over $37 million in confirmed crypto theft across multiple incidents, with the whale phishing drain being the single largest loss of the week.

Crypto Times
Provenance & Audit Trail

Decision Log

This investigation is cryptographically anchored to the Solana blockchain (3 events). 12 of 12 cited source URLs have an Internet Archive snapshot.

model: claude-sonnet-4-6

generated: 8/23/2026, 12:09:05 PM

last updated: 8/25/2026, 3:11:22 AM

5 views

avoid.net — verified advice for a post-truth world