JaredFromSubway MEV bot hacked in $15M crypto theft
The JaredFromSubway MEV bot, used for sandwich attacks on Ethereum, was exploited in a $15 million crypto theft. The attacker drained funds by taking advantage of the bot's own transaction logic, likely through a smart contract vulnerability or compromised private keys.
Background
MEV (Maximal Extractable Value) bots are automated trading programs that profit by reordering transactions within a blockchain block — essentially frontrunning or sandwiching other users' trades. "JaredFromSubway" was a well-known, highly profitable MEV bot on the Ethereum network that had extracted millions in value over time. This bot was itself hacked, meaning an attacker found a vulnerability in JaredFromSubway's own smart contract code and drained roughly $15 million in crypto assets (including various tokens and ETH). The incident highlights the irony that even sophisticated, experienced exploiters can be victims of similar tactics. It also underscores the constant arms race in DeFi (decentralized finance) — where both bots and traders must secure their code against increasingly clever attacks, and where MEV practices themselves remain controversial for their effect on regular users.