APIG Hack

TOTAL LOST $169K
Low Rugpull

What happened

APIG token exit scam occurred on Sep 06, 2023, with the scammer draining 169,164 USD from custom pools using privileged functions.

APIG, a BEP20 token, experienced a rugpull exit scam when the deployer implemented a privileged function in the token contract. This allowed the scammer to receive over 100 billion APEG tokens out of thin air. The scammer then used these tokens to drain two custom pools (APEG/USDT and APEG/ETH) in a single transaction.

Following the incident, the attacker transferred the stolen assets (59.5 ETH and 72,127 USDT) to another EOA address, which still holds the funds as of September 8, 2023.

Deployer Address:

https://bscscan.com/address/0x38BFF01b…Ee8BB7

Scammer Address:

https://bscscan.com/address/0x73d80500…588089

Funds Holder Address (as of September 8, 2023):

https://bscscan.com/address/0x7c366ac9…668f80

Malicious Transaction:

https://bscscan.com/tx/0x66dee845…952947

Case & protocol details

Classification Token
Protocol Type Exit Scam/Rugpull
Affected asset / contract APIG
Official Website api3.org/
Protocol Twitter/X @API3DAO

Evidence & learning

Sources and on-chain records

Practice this exploit pattern safely

Work through hands-on labs covering real exploit mechanics, review techniques, and defensive patterns.