Stole $500,000, instantly lost $372,000. Happy to help recover it - right after KYC 😆
Today on Base, a phishing victim was drained of 501,940 USDC.
Theft transaction: 0xd2324b49161b53218651eae2852f8684fa68015cfcada94e5c0ad14030fc62ba
Attacker wallet: 0x920d3b63541eAFe13E05dc4f3453904102c39708
The attacker then went to convert the stolen funds into ETH – and took a responsible approach to it. First, a test swap: sent 0.01 ETH, received 19.195077 USDC. Rate ~1,919 USDC per ETH, exactly at market. Mechanics work, everything clean. Risk management in place.
Then he pushed the entire amount into a Uniswap V4 pool at once – 501,940.006 USDC ($501,682). With no slippage protection.
He got back 67.93 WETH. That is $129,215.
The effective rate of the trade was around 7,389 USDC per ETH. That is 3.85x worse than market. Minus $372,466 in a single transaction. The difference went to a MEV bot sitting on the other side.
The $19 test swap did not help for a simple reason: it does not measure pool depth. It actually went through a different router and a different pool, but even in the same one it would only have proven that the contract executes. Liquidity is tested by order size. The attacker verified the mechanics, not the market – and paid the difference out of someone else's money.
The actual victim, meanwhile, sent the attacker an on-chain message: return the funds to 0x3a5385D8eB0d05B006edFF978BA4b95c51F70B5c within 24 hours, a police report has been filed, on-chain and device evidence collected.
A note to the attacker.
We understand, rough day. Came for half a million, walked away with a quarter, three quarters taken by a bot you never even saw.
This is exactly what we do. We attribute addresses, trace fund movement, identify the beneficiary behind that bot and build the evidence base. Recovering the $372,000 is not hopeless.
To get started, you will need to complete KYC verification. Passport, selfie, proof of source of funds 🙂



















