Ethereum’s Most Feared MEV Bot Loses $15M After Approving Its Own Exploit in Trap
Key Takeaways: The Jaredfromsubway.eth MEV bot lost about $15 million in an advanced exploit. Attackers manipulated the bot’s automated trading logic using fake tokens and liquidity routes. The incident exposed a critica...
Archive context
Older archive item. Useful for background and entity history, but not a fresh market-moving signal.
Key Takeaways:
- The Jaredfromsubway.eth MEV bot lost about $15 million in an advanced exploit.
- Attackers manipulated the bot’s automated trading logic using fake tokens and liquidity routes.
- The incident exposed a critical risk in MEV automation rather than a flaw in Ethereum itself.
User Score
8.7
Follow us on Google NewsOne of Ethereum’s most notorious MEV operators has become the victim of a highly unusual attack. The Jaredfromsubway.eth MEV bot was emptied of approximately $15 million after a special attack against the bot to bypass the automated execution system and gain approvals on tokens.
You guys seriously think $15 million is a big deal for me? 😂
I will keep front running you all 👊 https://t.co/gkAbJaf8wz
— Jaredfromsubway.eth (@jaredsmev) June 21, 2026
It quickly gained traction in the cryptocurrency community, and this weakness was not in the private keys or phishing techniques, or even a standard smart contract vulnerability.
Attackers Turned the Bot’s Logic Against ItBlockaid described the incident as an exploit of an automated MEV execution system. Instead of directly compromising the bot, the attacker spent time constructing fake trading environments designed to appear profitable. These are all fake wrapper tokens along with liquidity pools that appear to be real trading routes with WETH, USDC and USDT.
The bot’s algorithms recognized the interactions on the routes as potential arbitrage or MEV opportunities and automatically interacted with these routes. In the context of that decision, the system granted helpful contracts that the attacker controlled permission to purchase tokens for the system.
Fake Routes Created a Hidden Attack SurfaceThe exploit wasn’t a one-and-done operation. In the beginning, both fake routes responded as they should, and approvals would be used when executing. This gave the appearance of authenticity, and built trust into the bots automation process.
Read More: $2.1M Aztec Exploit Sparks Alarm as Funds Drain From Long-Abandoned Privacy Protocol
Critical Token Approvals Remained ActiveLater the attacker added routes that were approved for the operation, but not used. Those permissions were still active and the attacker enabled supply permissions to assets owned by the MEV bot.
The attacker then utilised the ERC-20 transferFrom function to transfer WETH, USDC and USDT from the bot’s wallet to an attacker address they controlled.
Not a Smart Contract Hack or Phishing ScamSecurity researchers stressed that this exploit was not the same as a lot of the prevalent, high-profile crypto exploits. There has not been any vulnerability found in Ethereum, nor has there been any private keys stolen. Similarly, the attack did not use any retail-users common phishing attack method.
The second way was not with the automatic earning of the bot, but by taking advantage of its weakness. The attacker now offers up the seemingly lucrative opportunities and makes the system grant permission for its own ante.
This situation illustrates the level to which trading bots can present individual security concerns if the very benefit of automation is to rush through the initiation of trade processes without adequate validation of counterparties and approvals.
Read More: $50M Exploit Finally Forces Radiant Capital Shutdown After 18 Months of Recovery Efforts
The post Ethereum’s Most Feared MEV Bot Loses $15M After Approving Its Own Exploit in Trap appeared first on CryptoNinjas.
Why this matters
Ethereum is showing up inside the Stablecoins theme, so this story is worth tracking for follow-through rather than treating it as a one-off headline.
Original source
Read on CryptoNinjasRelated market context
Block traces COLDCARD attacker to blockchain services provider after $38M Bitcoin theft
The incident underscores the critical need for rigorous firmware testing and swift vulnerability disclosures to protect digital as...
USDT Issuer Tether Hits $1.5B Q2 Profit, Hoards 98,932 Bitcoin
The largest stablecoin company reported a $446 million market capitalization increase despite a general market slowdown in Q2. Whi...
Ethereum Turns 11 With $148B Stablecoin Base But Cooler Mainnet Fees
Ethereum has turned 11, and the network’s birthday arrives with a very Ethereum-style contradiction: it is still one of the most i...
Coldcard Security Notice Puts Bitcoin Wallet Entropy Risk Back In Focus
A Coldcard security issue has put Bitcoin hardware-wallet safety back under the microscope after reports that a firmware flaw affe...
Bitcoin And Ethereum Edge Higher As Traders Watch Altcoin Rotation
Bitcoin and Ethereum edged higher into July 31, while a small shift in market dominance suggested traders were again watching whet...
Coinbase spent 5 years building a life raft away from Bitcoin and still managed to lose $359M
Coinbase told investors on Thursday that 88% of its second-quarter net revenue came from something other than Bitcoin spot trading...