Crypto
Home›Crypto›Market Structure›Hackers steal about 114 ETH via flaw in Aave third-par…
Hackers steal about 114 ETH via flaw in Aave third-party adapter
Security firm SlowMist said the attacker also repaid about 1,300 WETH in debt during the attack to unlock collateral.
Aave-linked infrastructure was exploited to steal about 114 ETH, worth over $300,000, while the Aave protocol itself was not affected, according to CryptoSlate.
Blockchain security firm SlowMist said the attacker compromised two Safe multisig wallets by exploiting a flaw in the FlashLoopAdapter used with Aave v3 positions, which bypassed authentication checks and enabled arbitrary calls to drain collateral.
SlowMist estimated the direct loss at about 114.09 ETH and said roughly 1,300 WETH in debt was repaid during the attack to unlock collateral tied to the compromised positions.
Aave founder Stani Kulechov said the incident did not involve Aave v3’s core smart contracts, and SlowMist traced the vulnerability to the FlashLoopAdapter open() and close() functions.
Latest closeEthereum $2,664.06 ▼1.5%