LIVE NEWS
  • ‘Slug sleuth’ farmers in England help develop prediction tool to cut back on pesticide use | Business
  • Ten years on, Brexit still divides Britain and casts a pall over its economy
  • Ethereum’s Jaredfromsubway MEV bot drained after approving its own $7.5M theft
  • ‘Popa’ Botnet Linked to Publicly-Traded Israeli Firm – Krebs on Security
  • Here is how SpaceX could turn up in your current investments : NPR
  • US-Iran delegations arrive as talks begin in Switzerland | Conflict News
  • The business secretary knows about jobs, and seems pretty sure Keir is out of one | John Crace
  • Australia and Europe at the centre of coalition against hybrid threats
Prime Reports
  • Home
  • Popular Now
  • Crypto
  • Cybersecurity
  • Economy
  • Geopolitics
  • Global Markets
  • Politics
  • See More
    • Artificial Intelligence
    • Climate Risks
    • Defense
    • Healthcare Innovation
    • Science
    • Technology
    • World
Prime Reports
  • Home
  • Popular Now
  • Crypto
  • Cybersecurity
  • Economy
  • Geopolitics
  • Global Markets
  • Politics
  • Artificial Intelligence
  • Climate Risks
  • Defense
  • Healthcare Innovation
  • Science
  • Technology
  • World
Home»Crypto»Ethereum’s Jaredfromsubway MEV bot drained after approving its own $7.5M theft
Crypto

Ethereum’s Jaredfromsubway MEV bot drained after approving its own $7.5M theft

primereportsBy primereportsJune 21, 2026No Comments4 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Ethereum’s Jaredfromsubway MEV bot drained after approving its own .5M theft
Share
Facebook Twitter LinkedIn Pinterest Email


The Jaredfromsubway MEV bot, linked to roughly 70% of Ethereum sandwich attacks, lost more than $7.5 million in an allowance drain after its automated system authorized attacker-controlled contracts to spend its tokens.

The bot, known as Jaredfromsubway.eth, approved a series of transactions that appeared to be part of profitable trading routes. Those permissions remained active, allowing the attacker to remove wrapped ether and two major stablecoins from contracts associated with the operation.

The incident effectively caused one of Ethereum’s largest extractive trading systems to approve its own theft. It also highlights a vulnerability facing automated traders that must evaluate markets, authorize contracts, and execute transactions within seconds.

Onchain security company Blockaid said the attacker did not compromise the bot’s private keys or exploit a flaw in a widely used decentralized finance protocol. Instead, the operation targeted the rules the bot used to identify and pursue potential profits.

MEV bot responsible for 7% of total gas on Ethereum network in 24 hoursMEV bot responsible for 7% of total gas on Ethereum network in 24 hours
Related Reading

MEV bot responsible for 7% of total gas on Ethereum network in 24 hours

The bot transactions pushed Ethereum’s network gas fees higher during the period, according to ultrasound.money data.

Apr 19, 2023 · Oluwapelumi Adejumo

How Jaredfromsubway.eth was drained

According to Blockaid, the attacker had spent several weeks deploying imitation tokens, liquidity pools, and supporting contracts that resembled markets the bot might normally trade against.

The fake assets included versions of wrapped Ethereum, USDC, and USDT, paired via trading routes designed to generate profitable-looking signals. Jaredfromsubway.eth detected those routes and followed its usual process of permitting helper contracts to move tokens as part of the expected trades.

Some early transactions used the permissions as anticipated, helping establish a pattern that the bot’s system continued to accept. Later transactions left the approvals unused.

Jaredfromsubway.eth MEV Bot drainedJaredfromsubway.eth MEV Bot drained
How Jaredfromsubway.eth MEV Bot Was Drained (Source: Doug Colkitt)

That distinction gave the attacker an opening through ERC-20 approvals, which allow another address or smart contract to spend a specified amount of tokens belonging to the approving account.

The permission can remain available after the original transaction unless it is exhausted, reduced, or revoked.

Once the attacker had accumulated enough unspent allowances, the contracts used the ERC-20 transferFrom function to move real WETH, USDC, and USDT from the bot’s accounts.

On-chain records show repeated transfers totaling about 92 WETH, $143,000 USDC, and $149,000 USDT from a contract linked to the bot. The funds were directed to an address controlled by the attacker.

CryptoSlate Daily Brief

Daily signals, zero noise.

Market-moving headlines and context delivered every morning in one tight read.

5-minute digest 100k+ readers

Free. No spam. Unsubscribe any time.

Whoops, looks like there was a problem. Please try again.

You’re subscribed. Welcome aboard.

Yearn Finance developer Banteg described the final operation as an allowance drain rather than a conventional token swap. A coordinating contract called a withdrawal function across dozens of subsidiary contracts, which checked the bot’s balances and their remaining permissions before transferring the available tokens.

Some of the proceeds were subsequently sent through Tornado Cash, a crypto-mixing service that can make funds more difficult to trace.

A dominant sandwich operator becomes the target

Jaredfromsubway.eth has operated since 2023 and became one of the most prominent participants in Ethereum’s market for maximal extractable value (MEV).

MEV refers to revenue generated by changing the order in which blockchain transactions are processed. In a sandwich attack, a bot identifies a pending trade and buys the asset first, pushing up its price. The user’s transaction then executes at the less favorable price before the bot sells, capturing the difference.

That made Jaredfromsubway.eth one of Ethereum’s most visible sandwich attack bots before the same automation became the route into its own funds.

The loss to any individual trader may be small. Across tens of thousands of transactions, however, the strategy can generate substantial revenue while increasing trading costs and network fees.

According to reports, these attacks imposed an estimated $60 million in annual costs on traders, while about 70% were associated with a single operator identified as Jaredfromsubway.eth.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous Article‘Popa’ Botnet Linked to Publicly-Traded Israeli Firm – Krebs on Security
Next Article Ten years on, Brexit still divides Britain and casts a pall over its economy
primereports
  • Website

Related Posts

Crypto

Can Charles Hoskinson Really Rescue Cardano?

June 20, 2026
Crypto

Ian Cohen battles $238B Bitcoin grab targeting Satoshi wallets

June 20, 2026
Crypto

Pudgy Penguins Pushes Beyond NFTs With Target Card Launch

June 20, 2026
Add A Comment
Leave A Reply Cancel Reply

Top Posts

Paxton’s win over Cornyn sets up high-stakes Texas clash with Talarico

May 28, 202616 Views

Global Resources Outlook 2024 | UNEP

December 6, 202510 Views

Texas Democrat Talarico claims voting laws are rigged ahead of Paxton race

May 28, 20269 Views
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Latest Reviews

Subscribe to Updates

Get the latest tech news from FooBar about tech, design and biz.

PrimeReports.org
Independent global news, analysis & insights.

PrimeReports.org brings you in-depth coverage of geopolitics, markets, technology and risk – with context that helps you understand what really matters.

Editorially independent · Opinions are those of the authors and not investment advice.
Facebook X (Twitter) LinkedIn YouTube
Key Sections
  • World
  • Geopolitics
  • Popular Now
  • Artificial Intelligence
  • Cybersecurity
  • Crypto
All Categories
  • Artificial Intelligence
  • Climate Risks
  • Crypto
  • Cybersecurity
  • Defense
  • Economy
  • Geopolitics
  • Global Markets
  • Healthcare Innovation
  • Politics
  • Popular Now
  • Science
  • Technology
  • World
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms & Conditions
  • Disclaimer
  • Cookie Policy
  • DMCA / Copyright Notice
  • Editorial Policy

Sign up for Prime Reports Briefing – essential stories and analysis in your inbox.

By subscribing you agree to our Privacy Policy. You can opt out anytime.
Latest Stories
  • ‘Slug sleuth’ farmers in England help develop prediction tool to cut back on pesticide use | Business
  • Ten years on, Brexit still divides Britain and casts a pall over its economy
  • Ethereum’s Jaredfromsubway MEV bot drained after approving its own $7.5M theft
© 2026 PrimeReports.org. All rights reserved.
Privacy Terms Contact

Type above and press Enter to search. Press Esc to cancel.