🥷 MEV bot “JaredFromSubway” exploited for $7.5M+


The attacker didn’t hack a smart contract or use phishing. Instead, they manipulated the bot’s automated MEV system:
• Created fake tokens & liquidity pools to appear profitable
• Tricked the bot into approving malicious spenders
• Left approvals active and drained funds via transferFrom()
Stolen assets included $WETH, $USDC, and $USDT, with some funds moved through TornadoCash.
USDC0.01%
post-image
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pinned