Jaredfromsubway.eth MEV Bot Exploited for $7.5 Million in Counter-Attack
Jaredfromsubway.eth, a notorious MEV bot responsible for 70% of Ethereum's sandwich attacks, was exploited for over $7.5 million. An attacker used a 'counter-MEV honeypot' with 66 fake tokens to trick the bot's own logic into granting access to its funds. The incident highlights the complex and predatory nature of the MEV ecosystem, which extracts over $1.2 billion from users.
Jaredfromsubway.eth exploit
▪Some of the stolen funds were sent to the crypto mixing service Tornado Cash.
▪The stolen funds included Wrapped ETH (WETH), USDC, and USDT.
▪The MEV bot Jaredfromsubway.eth was exploited for more than $7.5 million.
Counter-MEV attack mechanism
▪The attacker created an ecosystem of 66 fake tokens and liquidity pools mimicking legitimate assets to bait the bot.
▪An attacker tricked the bot into granting token approvals to attacker-controlled contracts, which were then used to drain the funds.
▪The attack was not a classic phishing attempt or a traditional smart-contract vulnerability.
▪The exploit was a "counter-MEV honeypot attack" that targeted the bot's automated decision-making logic.
Sandwich bot operations history
▪Jaredfromsubway.eth is an automated program that profits by monitoring unconfirmed transactions and manipulating their order in a "sandwich attack".
▪During the attack on Vitalik Buterin, the bot routed approximately $1.14 million in WETH through SushiSwap and Uniswap V2 to manipulate the token's price.
▪In May, the bot performed a sandwich attack on a transaction by Ethereum co-founder Vitalik Buterin involving 26,544 DigitalBits.
▪Between November 2024 and October 2025, Jaredfromsubway.eth was responsible for about 70% of the 60,000 to 90,000 monthly sandwich attacks on Ethereum.
MEV ecosystem impact
▪Sandwich attacks on the Ethereum network cause an estimated $60 million in annual losses for traders.
▪As of May, total MEV extraction on Ethereum had exceeded $1.2 billion, with sandwich attacks accounting for about 51% of this volume.
▪Crypto investor David Gokhshtein suggested that traders who had previously lost money to the bot would not be upset about the exploit.
▪Ethereum co-founder Vitalik Buterin has advocated for using encrypted mempools to address harmful MEV practices.
Story comments
Loading comments…