IMM-2026-0009
ACTIVE
Keccak
0x682b0fbc8329cae593dd34f0e35b437e42effbf6af4f3f15c7c01bb2f1aaeb55
Type
ADDRESS
Verdict
MALICIOUS
Confidence
92.0%
Severity
89
Value at risk
$31,050.00
Created
April 29, 2026 5:13 PM
Envelope
v1
Signed payload
Primary matcher
address
0x098b716b8aaf21512996dc57eb0615e2383e2f96
Scope
galileo-testnet
home
sepolia
Evidence
redacted public excerpt
Reasoning excerpt
Consolidation address from the June 2023 Atomic Wallet incident in which over $100M of user funds were drained from compromised installations. Elliptic's post-incident analysis attributes the operation to the DPRK-aligned Lazarus Group, citing characteristic chain-hopping and mixer-staging behavior. MALICIOUS at high confidence because both the incident and the actor attribution are publicly documented, and any approve targeting this address recovers no legitimate flow.
Full evidence (TEE-sealed) is fetchable by holders of the unsealing key. Public mirror carries hash only.
TEE attestation
Curated by human
Heuristically published from a known threat catalog, not derived from a TEE-verified verdict.
Evidence CID
0x2016501159330d8527deb8001d5372a857d39dbdcfff8086c633cd32718ba43d
Network impact
Live
Since publish
Cache hits
28
SDK check() matches
Agents synced
11
distinct callers
Attacks blocked
14
tx-level intercepts
Pool reverts
0
Uniswap v4 hook
USD protected
$31,050.00
sum of tx value at intercept
Hits over time
each bar is one of 30 equal slices since publish
publish
now
Recent intercepts
| Agent | Method | Chain | When |
|---|---|---|---|
| 0xa0cef4d2f50e6a58aca14390f058a9d9a5b84352 | SDK check() | evm:16602 (galileo-testnet) | 1 month ago |
| 0xfb2b8f80e0f99329d2ddc909cca3e82660b53e12 | SDK check() | evm:16602 (galileo-testnet) | 1 month ago |
| 0x9e92beab909a552f45c645c84a7aded03f2e9b99 | SDK check() | evm:16602 (galileo-testnet) | 1 month ago |
| 0xf32075f71452826c3ef10609b31a9513c9a8c86e | SDK check() | evm:16602 (galileo-testnet) | 1 month ago |
| 0x708adb7609d91b51efc068fef8526ca0cad5309a | SDK check() | evm:16602 (galileo-testnet) | 1 month ago |
| 0x31a7b41ac6167c8e622a60f702bd860ea92f5953 | SDK check() | evm:16602 (galileo-testnet) | 1 month ago |
| 0x31a7b41ac6167c8e622a60f702bd860ea92f5953 | SDK check() | evm:16602 (galileo-testnet) | 1 month ago |
| 0x793cc517d11fbf5fa86410aadc03668ed1b28d74 | SDK check() | evm:16602 (galileo-testnet) | 1 month ago |
| 0x793cc517d11fbf5fa86410aadc03668ed1b28d74 | SDK check() | evm:16602 (galileo-testnet) | 1 month ago |
| 0x646dc5e0dd6fed8362f93e2d98263370c884e924 | SDK check() | evm:16602 (galileo-testnet) | 1 month ago |
| Chain | Tx | State |
|---|---|---|
|
sepolia
|
0xa3d2a843..772a | active |