Term Labs governance exploit (23 Aug 2026) — ETH address 0xD5183d…8FFc13

0xD5183d8BfC65a50863C62aF2538198A8288FFc13

PublicAML knows this Ethereum address as Term Labs governance exploit (23 Aug 2026), a hack. Our AML risk score for it is 100 of 100, which we read as high risk. This address is itself listed by documented incident (0xd5183d…8ffc13).

What we know about this address

ChainEthereum (ETH)
EntityTerm Labs governance exploit (23 Aug 2026)
Categoryhack
AML score100 / 100 (high)

Risk findings

Each row is a path our propagation engine traced from a flagged address to this one, with the number of hops and the source that flagged it. A finding is an observation about the flow of funds, not a statement about the owner of this address.

FindingSourceHopsDirection
This address is itself listed by documented incident (0xd5183d…8ffc13).0xd5183d8bfc65a50863c62af2538198a8288ffc13documented incident0inbound
Funds reaching this address are 4 hops from OFAC SDN list (0x098b71…3e2f96).0x098b716b8aaf21512996dc57eb0615e2383e2f96OFAC SDN list4inbound
Funds reaching this address are 5 hops from OFAC SDN list (0x9be599…a15573).0x9be599d7867f5e1a2d7ec6db9710df2b98a15573OFAC SDN list5inbound
Funds reaching this address are 5 hops from OFAC SDN list (0xdcbeff…643193).0xdcbeffbecce100cce9e4b153c4e15cb885643193OFAC SDN list5inbound
Funds reaching this address are 5 hops from OFAC SDN list (0xf2235d…2e27cb).0xf2235d55b2950a0b1317469d72d07ae65b2e27cbOFAC SDN list5inbound
Funds reaching this address are 6 hops from OFAC SDN list (0x95584c…84eae3).0x95584c303fcd48af5c6b9873015f2ad0ca84eae3OFAC SDN list6inbound
Funds reaching this address are 6 hops from OFAC SDN list (0x32da24…f81e3e).0x32da24ca413f3e7b53145d4737e172c3bdf81e3eOFAC SDN list6inbound
Funds reaching this address are 7 hops from sanctioned entity (entity attribution) (0x475664…a704f2).0x475664cdedb4ffaf34a81c2a83e2c09417a704f2sanctioned entity (entity attribution)7inbound
Funds reaching this address are 7 hops from OFAC SDN list (0x532b77…8b0e8a).0x532b77b33a040587e9fd1800088225f99b8b0e8aOFAC SDN list7inbound
Funds reaching this address are 5 hops from attributed to a hacking entity (entity attribution) (0x1342a0…78bd5f).0x1342a001544b8b7ae4a5d374e33114c66d78bd5fattributed to a hacking entity (entity attribution)5inbound

More addresses in this index

These are other addresses in the PublicAML directory, not counterparties of this one. Nothing here implies a connection between them.

If this page is wrong

Attribution and risk propagation both make mistakes, and a page like this one is visible for a long time. If you own this address or can show that a finding here is incorrect, tell us and we will re-check it. Corrections are applied to the underlying data, so they carry over to the API and to every other view of this address.

Contact us about this address

See something wrong on this page? Tell us and we will check it.

PublicAML reports what it can observe on-chain and what public and vendor sources say about an address. Nothing on this page is a legal finding, an allegation against a person, or advice. Risk scores describe exposure through transaction paths, and an address can carry exposure without its owner having done anything wrong.

Data is read live from the PublicAML API at the time this page was served.

Reports naming this address

Filed with PublicAML by readers. A report is an account of what happened to the person who filed it. It is not our finding, and it does not on its own put a risk label on this address.

  • Contract exploit

    Addresses laundering the proceeds of the Term Labs exploit (23 August 2026, ~$8.5M lost), reported by PeckShieldAlert on 4 September 2026. PeckShield's alert referenced the exploiter address only inside a screenshot. PublicAML recovered the full addresses from the block numbers visible in that screenshot and verified ...

    Filed by a vetted PublicAML investigator rather than by an anonymous reader. The account itself has not been independently re-checked.

    Read the full report VR-99A3B8E7