Infamous MEV Bot JaredFromSubway Drained For $7.5 Million

bitcoinist发布于2026-06-22更新于2026-06-22

文章摘要

The notorious Ethereum MEV bot "JaredFromSubway" has been drained of approximately $7.5 million after attackers tricked its automated system. Security firm Blockaid reported that the bot was deceived into approving malicious trading routes by attacker-controlled contracts. These approvals were then used to siphon WETH, USDC, and USDT from the bot's contract. The incident is ironic as MEV bots are designed to exploit minute market advantages, but in this case, its own automation became the vulnerability. The attack specifically targeted the bot's trading logic, not the Ethereum protocol or a broader DeFi application. It underscores a critical risk in automated trading: the pursuit of speed can create fragility, making systems susceptible to carefully crafted traps. While the financial loss is significant, the broader impact is reputational for MEV infrastructure. It serves as a warning that automated systems granting token approvals require stringent safeguards, simulation, and route verification. The event is considered a targeted exploit on a trading bot, not a network-wide security issue.

One of Ethereum’s most notorious MEV bots, known as JaredFromSubway, has reportedly been drained for around $7.5 million after attacker-controlled contracts tricked its automated system into granting token approvals.

TL;DR

  • The JaredFromSubway MEV bot was reportedly drained for about $7.5 million.
  • Security firm Blockaid said the bot was tricked into approving malicious trading routes.
  • The attacker then used those approvals to pull assets from the bot contract.
  • The incident appears to target the bot’s own automation, not Ethereum itself.

CoinDesk reported that Blockaid identified the exploit, saying attacker-controlled contracts tricked the bot into approving fake trading routes. Those approvals were later used to drain WETH, USDC and USDT from the bot’s contract. The incident has drawn attention because JaredFromSubway has long been associated with aggressive sandwich trading on Ethereum.

The irony is hard to miss. MEV bots are built to exploit tiny timing and routing advantages in on-chain markets. In this case, the bot’s own automation appears to have become the weakness. Instead of extracting value from other users, it was manipulated into approving contracts that later drained its balances.

What Happened

The reported exploit was not a hack of Ethereum’s base protocol. It was also not a broad failure of a major DeFi application used by ordinary depositors. The target was a specific MEV bot and the logic it used to interact with contracts during automated trading.

That distinction matters. MEV infrastructure moves quickly and often relies on highly automated decision-making. If that automation can be tricked into approving the wrong contract, the risk can be severe because transactions execute with little human review.

According to reports, the attacker prepared the trap by using fake routes or contracts that the bot interpreted as profitable opportunities. Once approvals were granted, the attacker used them to transfer assets out. In DeFi terms, it was a reminder that approvals are powerful permissions, not harmless signatures.

Why Traders Care

The story is bigger than one bot getting drained. It highlights a risk that applies across automated trading systems: speed can become fragility. Bots competing in MEV markets need to act faster than human traders, but that also means they can be vulnerable to carefully designed traps.

For Ethereum users, the incident may feel like poetic justice because sandwich bots are widely disliked. But the technical lesson is broader. Any system that grants token approvals based on automated contract interactions needs strict safeguards, simulation and route verification.

The market impact is unlikely to come from the dollar amount alone. A $7.5 million drain is meaningful, but not systemic. The bigger impact is reputational for MEV infrastructure and possibly operational for bot operators who now need to review their approval logic more aggressively.

For now, this should be treated as a targeted exploit against a trading bot, not a network-wide security event.

This report is based on information from Blockaid.

This article was written by the News Desk and edited by Samuel Rae.

热门币种推荐

相关问答

QWhat is the name of the infamous MEV bot that was drained of $7.5 million?

AThe name of the bot is JaredFromSubway.

QWhat security firm identified the exploit against the JaredFromSubway bot?

AThe security firm that identified the exploit is Blockaid.

QHow was the JaredFromSubway bot tricked into allowing its assets to be drained?

AThe bot was tricked by attacker-controlled contracts into approving fake trading routes. These approvals were then used to drain its assets.

QWhat types of assets were drained from the MEV bot's contract?

AThe assets drained from the bot's contract were WETH, USDC, and USDT.

QWhat is the core vulnerability or weakness that this exploit highlighted for automated trading systems like MEV bots?

AThe exploit highlighted that the automation and speed required for MEV trading can become a fragility, making bots vulnerable to carefully designed traps that trick their automated approval logic.

你可能也喜欢

崔泰源离婚案落槌:揭秘SK海力士万亿帝国背后的继承暗线

2024年底,SK集团会长崔泰源在家族活动上向子女强调“饮水思源”与继承责任。此时,旗下SK海力士市值已突破1000万亿韩元,成为韩国最值钱资产,但集团第三代接班格局却与传统财阀剧本迥异。 崔泰源与前总统卢泰愚之女卢素英育有三名子女。长女崔允贞被视为最明显接班候选,她拥有生物学背景和咨询经历,现任SK生物制药高管及集团“成长支援部”主管,主导精准医疗等新业务,其婚姻也联姻AI领域创业者。 次女崔敏贞路径独特,曾自愿服役韩国海军并参与亚丁湾护航,退役后曾在SK海力士美国部门处理国际政策,后离职在硅谷创立AI医疗公司。她与曾服役美国海军陆战队的华裔企业家结婚,连接军旅与地缘政治网络。 长子崔仁根最符合传统继承人形象,毕业于布朗大学物理系,曾任职SK旗下能源公司,后转入麦肯锡首尔办公室。他公开表现极为低调,未持有集团股份,也未公开表态。 子女们的成长与父母旷日持久的离婚诉讼交织。2025年,最高法院将涉及1.38万亿韩元财产分割的判决发回重审,期间三名子女曾向法院递交未公开内容的请愿书。 随着SK海力士在AI时代成为全球核心地缘政治资产,崔家第三代继承的已非简单的企业控制权。他们被置于AI科研、华盛顿政策圈与全球投资前沿,必须证明自己有能力应对新时代的产业博弈,而非自动承接旧式家族剧本。

marsbit43分钟前

崔泰源离婚案落槌:揭秘SK海力士万亿帝国背后的继承暗线

marsbit43分钟前

交易

现货

热门文章

加密市场宏观研报:美国“加密货币周”来袭,ETH开启机构军备赛高潮

本周,加密市场迎来两股重磅催化——华盛顿“加密货币周”的立法攻势与以太坊机构布局的密集爆发,共同构成加密行业2025年下半年的“政策拐点”与“资金拐点”。这一轮加密周期的深层逻辑,正从比特币转向以太坊、稳定币及链上金融基础设施。我们认为:美国的政策明朗化+以太坊的机构化扩展,标志着加密行业正进入结构性转正阶段,市场配置的重心亦应逐步从“价格博弈”过渡至“规则+基础设施的制度红利捕捉”。

1.9k人学过发布于 2025.07.17更新于 2025.07.17

加密市场宏观研报:美国“加密货币周”来袭,ETH开启机构军备赛高潮

相关讨论

欢迎来到HTX社区。在这里,您可以了解最新的平台发展动态并获得专业的市场意见。以下是用户对ETH(ETH)币价的意见。

活动图片