Florence Finance Hack
What happened
FlorenceFinance exit scammed via phishing attack and address poisoning, resulting in a loss of 1,456,162 USD.
Florence Finance, a lending protocol on the Ethereum chain, suffered a phishing attack through address poisoning on Nov 28, 2023. The attacker created a wallet address that closely mimicked a legitimate address, exploiting human error to steal approximately 1,450,000 USDC. After the incident, the hackers converted the funds to Ethereum (ETH) and transferred them to THORChain.
Florence Finance has not made an official statement regarding the incident on their Twitter account.
Victim Address:
https://etherscan.io/address/0xb087cfa7…7f5870
Scammer Addresses:
https://etherscan.io/address/0xb087269d…675870
https://etherscan.io/address/0x88E22f0F…DbC1E8
Malicious Transaction:
https://etherscan.io/tx/0x67a7a5f2…37fed8
Fake Token Transfers:
https://etherscan.io/tx/0x02bc1f12…6c6d60
THORChain Deposit Transaction:
https://etherscan.io/tx/0x2cb15e14…5ebd82
Case & protocol details
Security review history
- Pashov Audit Group Report
Evidence & learning
Attack pattern
Compare incidents →Sources and on-chain records
- report Report twitter.com
- analysis Website reference twitter.com
Practice this exploit pattern safely
Work through hands-on labs covering real exploit mechanics, review techniques, and defensive patterns.