Lookonchain APP

App Store

Security Warning: Abnormal on-chain fund flows detected for the CodexField project on BNB Chain.

2026.07.09 23:36:18

On-chain investigator Specter has issued a community security alert, warning of potential fund misappropriation risks associated with the CodexField project on BNB Chain. On-chain tracking shows the project has amassed over $85 million in funds. Specter detected abnormal on-chain fund flows yesterday: a wallet bridged 17.3 million USDT from TRON to Ethereum, then swapped the tokens for DAI via Bitget Swap on Polygon. So far, $6.5 million has been transferred out, while the remaining $10.8 million is still in transit. The funds were originally bridged from Ethereum to TRON roughly six months ago, and the source wallet is linked to CodexField’s deposit contract. Below are key addresses for users to verify on their own: EVM: 0xBc606358910b3720d136F0d4Ce12b759C270747a TRON: TQNTEYadFVVQeobBtctSjurJ5RpfBsTmqh, TAzpg8L1WkkzCxxZk8TYnvaRYahehh52MK Related deposit contract: 0x9E6A75b546B65E7B9D34E2c9aB8Fe224B9aA52AA Additional red flags: The project requires a minimum $100 deposit for participation. Blockchain security tool Blocksec MetaSuites initially labeled the deposit contract as "Fake CodexField", but Specter’s follow-up investigation found the contract is actually operated by the CodexField team itself. The project uses multiple domains and subdomains to collect user deposits, and the team previously shared these domains via official channels. Its fund flow pattern is unusual, deviating from standard fund management practices: the project bridges funds across multiple blockchains, routes them through intermediate wallets, and ultimately sends assets to centralized exchanges. Specter noted that based on on-chain activity, the project warrants high vigilance. It advises all users interacting with CodexField to exercise extreme caution until the team provides a transparent explanation of its fund movements.

Relevant content

BlackRock holds 51 million Class A common shares of SpaceX.

According to U.S. Securities and Exchange Commission (SEC) filings, BlackRock (BLK.N) disclosed that as of June 30, it held 51 million Class A common shares of SpaceX (SPCX.O).

3 hours ago

Trump is still pushing forward with his attempt to fire Federal Reserve Governor Cook.

According to ABC News, after suffering a setback at the Supreme Court, Donald Trump is still pushing forward with his attempt to fire Federal Reserve Governor Lisa Cook.

3 hours ago

Bybit sues North Korea and Lazarus Group over the $1.5 billion hack incident, secures an asset freeze order

Bybit has filed a civil lawsuit against the Democratic People's Republic of Korea (North Korea), its General Reconnaissance Bureau (RGB) intelligence agency, and the Lazarus Group, a hacking group linked to North Korea that stole $1.5 billion from Bybit last year. In addition to the lawsuit filed in the U.S. District Court for the District of Columbia, Bybit said it has obtained a preliminary injunction freezing certain stolen assets held by a group of unidentified individuals and entities, who are listed as "John Doe" defendants in the case. The crypto exchange stated in a Friday press release that the preliminary injunction means a federal judge has ordered the defendants not to transfer or sell their assets while the case is pending. The platform will seek further relief from the court. "This civil lawsuit is separate from the ongoing criminal investigation by U.S. law enforcement," it said. (CoinDesk)

3 hours ago

OpenAI: Astra may have reached a "critical" network capability threshold, and did not participate in the recent Hugging Face security incident.

OpenAI published a new blog post noting that internal tests have shown its upcoming Astra model has made significant advances in agent coding and cybersecurity. Evaluated against its Preparedness Framework, OpenAI stated it cannot rule out that the model has reached the "critical" cybersecurity capability threshold. Additionally, the company clarified in the post that the Astra model was not involved in the recent Hugging Face security incident, and is continuing benchmark tests under the Preparedness Framework to manage frontier cybersecurity capabilities. As a result, OpenAI has suspended internal activities related to Astra that do not yet meet these enhanced security control requirements. The "critical" capability is defined as: a model can, without human intervention, discover and exploit all severe functional zero-day vulnerabilities across a large number of real, hardened critical systems; or independently design and execute end-to-end novel cyberattack strategies against hardened targets based solely on high-level objectives. Prior models, such as GPT-5.6-Sol, were only rated at the "high" level.

3 hours ago

Gains in US-listed optical module stocks widen, with COHR surging over 16% intraday.

According to market data from BIT (bit.com), U.S.-listed optical module stocks extended their strong rally, with intraday gains widening. COHR jumped more than 16%, AAOI climbed 12.12%, and LITE advanced 6.47%. The optical module stock ETF (LYTE) operated by prominent investment management firm Roundhill rose 4.66%.

3 hours ago

OpenAI delays the launch of its new flagship Astra over cybersecurity concerns.

OpenAI has delayed the launch of its new flagship model Astra due to cybersecurity concerns. Astra, OpenAI’s next-generation primary model, features robust capabilities including long-duration autonomous operation, multi-agent collaboration, and solving long-unresolved mathematical problems, and has recently been validated in internal builds. (Axios)

3 hours ago