Post
X conversation update
1 related posts from @johnkonrad
The infamous Ethereum MEV bot Jaredfromsubway.eth lost approximately $7.5 million after being tricked into granting token approvals to attacker-controlled contracts. Security firms report that the exploit targeted the bot's automated MEV opportunity detection mechanism, not a phishing attack or smart contract vulnerability.
Jaredfromsubway.eth was a notorious MEV bot responsible for roughly 70% of Ethereum sandwich attacks between late 2024 and 2025, extracting millions from traders. The attacker deployed fake wrapper tokens and liquidity pools to bait the bot into approving a malicious helper contract, allowing the attacker to drain WETH, USDC, and USDT.
The attacker drained the bot's funds; the bot operator lost millions and its reputation as an unassailable extraction machine was shattered. No arrests or fund recovery have been reported.
1 related posts from @johnkonrad
A detailed explanation of how the attacker used fake wrapper tokens and liquidity pools to trick the bot into approving a helper contract, resulting in a $7.5M drain.
1 related posts from @cryptorover
Security firm Blockaid reported that Ethereum MEV bot JaredFromSubway lost about $7.5M due to an attack that tricked its automated approval system. Not a phishing or smart-contract exploit.
1 related posts from @nebusecurity