Core Summary Ethereum’s most prominent sandwich attack bot, Jaredfromsubway.eth, fell victim to an ironic reverse exploit. Security firm Blockaid disclosed that an attacker tricked the bot into approving fake trading routes, then used those approvals to drain approximately $7.5 million in WETH, USDC, and USDT tokens.
Event Details According to CoinDesk, Blockaid’s security research team discovered that an attacker designed deceptive trading route contracts that induced the Jaredfromsubway.eth bot to interact with them and grant token transfer approvals. Once authorized, the attacker swiftly transferred all WETH, USDC, and USDT tokens from the bot’s wallet. The incident is seen as a classic case of “the hunter becomes the hunted” in decentralized finance.
...