Cookie banner
We Value Your Privacy
We use cookies and similar technologies to enhance your browsing experience, analyze site traffic, and personalize content. By clicking “Accept All,” you consent to the use of all cookies. You can manage your preferences or learn more by clicking “Settings.”
For detailed information, please review ourPrivacy Policy.
Buidl with Asvoria
Build with Asvoria.app — Launch Smarter, Faster!

Instantly create stunning AI-powered web apps and games for your next big project on Asvoria.app. No coding. No waiting. Just launch.


Ethereum's Biggest 'Sandwich' Bot Drained of $7.5 Million in Ironic Exploit

The Block Whisperer

June 21, 2026 at 8:25 AMby The Block Whisperer

Views

+0

Shares

+0

One of Ethereum's most notorious MEV trading bots has fallen victim to an exploit itself, losing approximately $7.5 million after being tricked into approving malicious transaction

Ethereum's Biggest 'Sandwich' Bot Drained of $7.5 Million in Ironic Exploit
Web3 insights in your social media feed

The hunter became the hunted

The Ethereum address known as jaredfromsubway.eth, widely recognized as one of the network's largest sandwich-trading operators, reportedly lost around $7.5 million worth of crypto assets in a sophisticated attack.

Blockchain security firm Blockaid said the attacker manipulated the bot into approving fraudulent trading routes, ultimately gaining permission to move funds from wallets controlled by the operation.

The incident has attracted significant attention because the victim itself has long been one of the most aggressive extractors of trading profits on Ethereum.

What is a sandwich bot?

A sandwich bot is a form of Maximum Extractable Value (MEV) strategy.

The bot monitors pending transactions and attempts to profit by placing trades:

  • before a user's transaction
  • and immediately after it

This can allow the bot to capture value from price movements created by the original trader.

The practice remains controversial because many users view it as predatory behavior that increases trading costs.

Despite criticism, sandwich trading remains a major component of Ethereum's MEV ecosystem.

How the exploit happened

According to Blockaid's analysis, the attacker did not directly hack the wallet.

Instead, they reportedly convinced the bot's infrastructure to approve fake routing contracts that appeared legitimate.

Once those approvals were granted, the attacker was able to transfer assets from addresses controlled by the bot.

The stolen assets reportedly included:

  • Wrapped Ether (WETH)
  • USDC
  • USDT

The exploit demonstrates how permission management remains one of the most important security risks in decentralized finance.

Smart contract approvals remain dangerous

Many crypto exploits occur not because wallets are compromised but because users or systems grant excessive permissions to smart contracts.

Once an approval exists, malicious contracts may be able to:

  • transfer tokens
  • drain balances
  • execute unauthorized transactions
  • interact with assets without further confirmation

Security experts frequently recommend reviewing and revoking unnecessary approvals.

The latest incident highlights how even sophisticated trading operations can fall victim to these risks.

MEV remains one of Ethereum's most controversial sectors

The attack has sparked discussion across the Ethereum community because of the victim's role in the ecosystem.

MEV operators have generated hundreds of millions of dollars through strategies that exploit transaction ordering and market inefficiencies.

Supporters argue MEV is a natural consequence of open blockchain markets.

Critics contend it creates unfair trading conditions and harms ordinary users.

The loss suffered by one of the ecosystem's largest sandwich bots has therefore been viewed with a degree of irony by many market participants.

Security threats continue evolving

The exploit also serves as a reminder that attackers are becoming increasingly sophisticated.

Rather than targeting protocol vulnerabilities directly, many attacks now focus on:

  • social engineering
  • permission abuse
  • infrastructure weaknesses
  • operational mistakes

As DeFi becomes more complex, operational security is becoming just as important as smart contract security.

Why this matters

This matters because it highlights a growing trend in crypto security: sophisticated attackers increasingly target permissions and infrastructure rather than blockchain protocols themselves.

The incident also demonstrates that even highly profitable and technically advanced trading operations remain vulnerable to operational mistakes and approval-related exploits.

The clean takeaway

Ethereum MEV giant jaredfromsubway.eth reportedly lost $7.5 million after an attacker tricked its systems into approving malicious trading routes. The exploit drained WETH, USDC and USDT, serving as a reminder that smart contract permissions remain one of the biggest security risks in decentralized finance.

#mev
#ethereum
#sandwich

Explore more articles like this

Subscribe to Asvoria News to receive all the latest news.

Stay ahead with exclusive press releases and expert insights on Web3 and the Spatial Web. Be the first to hear about Asvoria’s latest innovations, events, and updates. Join us — subscribe today!

© 2026 Asvoria. All rights reserved.

Avoria does not endorse or promote investment in any of the tokens or NFT projects featured on this platform.
We accept no responsibility for any losses incurred. Users should conduct their own research and consult with a financial advisor before investing.
For more information about Doing Your Own Research (DYOR), please visit this link.