Ethereum MEV bot Jaredfromsubway.eth loses $7.5 million in exploit
By
Shaurya Malwa
Summary
Jaredfromsubway.eth, a notorious Ethereum MEV bot known for conducting "sandwich attacks" on users, was itself exploited for over $7.5 million. The attacker tricked the bot into approving fake trading routes, then used those approvals to drain WETH, USDC, and USDT. The exploit is ironic because the bot's own automated trading logic was turned against it. Security firm Blockaid identified the attack method.
Source
Key quotes
· 3 pulledJaredfromsubway.eth, one of Ethereum's most infamous MEV bots, has been drained for more than $7.5 million after an attacker turned the bot's own automated trading logic against it.
The bot is known for sandwich attacks, a form of maximal extractable value, or MEV, in which an automated trader spots a pending transaction, buys ahead of it, lets the victim trade at a worse price, then sells immediately after.
Blockaid said an attacker tricked Jaredfromsubway.eth into approving fake trading routes, then used those approvals to drain WETH, USDC and USDT.
You might also wanna read

AI agents Grok and Bankrbot tricked into sending $200K in tokens via Morse code prompt injection
A user on X tricked two AI agents (Grok and Bankrbot) into sending approximately $200K worth of DRB tokens by using a Morse code prompt inje
Cryptopolitan·1mo agoTrust Wallet Chrome Extension Compromised in Supply Chain Attack, $7 Million Stolen
The Trust Wallet Chrome extension was compromised in a supply chain attack where malicious code in version 2.68 exfiltrated wallet seed phra
Analysis of equivocation attacks in Ethereum's mev-boost and ePBS systems
This article analyzes "equivocation attacks" in the context of mev-boost and ePBS (execution payload building separation) within Ethereum's
ethresear.ch·10h agoResolv DeFi Protocol Hack: How a Compromised Key Led to $23 Million Exploit
The article analyzes the March 2026 Resolv DeFi protocol hack where an attacker exploited a compromised private key to mint $23 million in u
Hacker Exploits Resolv Labs Smart Contract, Mints $80 Million in Fake Stablecoins
A hacker exploited a bug in Resolv Labs' smart contract to mint approximately $80 million worth of unbacked USR stablecoins. The protocol's
bfmtimes.com·2mo agoSupply Chain Attacks on Open-Source Software: Case Study of Malicious Pull Request Attempts
The article discusses recent supply chain attacks on open-source software projects like LiteLLM and axios, with a specific case study of att
