MEV Bot "yoink" Front-Runs Attack, Intercepts 2,882 rsETH

AI مارکیٹ کا خلاصہ
An attacker exploited a permission-validation flaw in a Multicall contract authorized by a Safe multisig, targeting ~2,900 rsETH, but a MEV bot frontran the transaction and intercepted 2,882 rsETH after paying ~$47k in gas. Security firms indicate the issue came from user-authorized components rather than Safe's core contracts. Kelp DAO paused the receiving address for 24 hours, highlighting ongoing smart-contract and mempool risks.
اثر کی سطح
● درمیانہ
متاثرہ اثاثے
ETH/USDT-3.28%
AI تجزیاتی سمجھ · ETH/USDTAI تجزیاتی سمجھ
● Neutral
ابھی ٹریڈ کریں
⚠️ AI سے تیار کردہ تجزیاتی سمجھ خبروں کے مواد پر مبنی ہے اور صرف معلوماتی مقاصد کے لیے فراہم کی گئی ہے۔ یہ سرمایہ کاری کا مشورہ نہیں ہے اور نہ ہی BingX کے خیالات کی نمائندگی کرتی ہے۔ سرمایہ کاری میں رسک شامل ہے۔ براہ کرم ذمہ داری سے ٹریڈ کریں۔
Huo Xing Cai Jing, citing CoinDesk, said an attacker abused a permission-checking flaw in a Multicall contract that had been authorized through a Safe multisignature wallet, attempting to move roughly 2,900 rsETH (about $7.8 million). MEV bot yoink reportedly spotted the transaction in the public mempool and paid about $47,000 in gas to front-run it, capturing 2,882 rsETH before sending the funds to another address. BlockSec, Blockaid, SlowMist, and AstraSec said their analyses point to user-authorized components as the root cause, rather than Safe's core contracts. Kelp DAO, the issuer of rsETH, has placed a 24-hour pause on the receiving address.