No Result
View All Result
Global Finances Daily
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers
No Result
View All Result
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers
  • Login
Global Finances Daily
No Result
View All Result
Home Crypto

Here’s how MEV bots on SushiSwap caused a $3.3m loss

April 9, 2023
in Crypto
0
Here’s how MEV bots on SushiSwap caused a $3.3m loss



A pseudonymous cryptocurrency pentester, known for their white hat hacking activities, found themselves in a race against time and malicious bots after identifying a vulnerability in SushiSwap’s RouterProcessor2 contract.

The hacker managed to secure 100 ethereum (ETH) of the affected funds before malicious bots copied the attack, leading to a loss of over $3.3m (approximately 1800 ETH). The hacker, whose identity remains anonymous, tweeted today that they had successfully “white-hacked” 0xSifu for 100 ETH and were willing to return the funds if contacted. He was later thanked by Sifu in a tweet for the restitution.

However, their attempt to protect the platform was thwarted by the swift actions of miner-extractable value (MEV) bots, which deployed contracts and replicated the attack before the vulnerability could be fully addressed.

Miner Extractable Value (MEV) bots are automated programs designed to exploit opportunities for profit within blockchain networks, specifically within the Ethereum ecosystem. These bots take advantage of the inherent design of decentralized networks, where miners are responsible for validating and ordering transactions within blocks. MEV bots seek to capitalize on the power miners have in choosing which transactions to include in a block and the order in which they are placed.

The primary focus of MEV bots is to identify and act on profitable opportunities, such as frontrunning, backrunning, arbitrage and sandwich attacks. These strategies allow MEV bots to profit from the knowledge of pending transactions by manipulating their placement within the block. WhenTrust was asked why he did not just warn Sifu instead, he wrote:

“I wasn’t aware of how ridiculously advanced MEV bots are (rebuilt 3 TXs), I thought every second matters, and wanted to white-hack a bunch more addresses.”

The question seemingly hinted at the cybersecurity principle of responsible disclosure. Responsible disclosure is a principle within the cybersecurity community that emphasizes the ethical reporting of discovered vulnerabilities in software or systems to the respective developers or vendors before making the information public. The primary goal of responsible disclosure is to provide the affected party an opportunity to address and fix the vulnerability, thus minimizing the risk of exploitation by malicious actors.

In the context of cryptocurrencies and blockchain technology, preemptive hacking to secure funds in a vulnerable position might not be a favorable option due to the public nature of crypto transactions. On decentralized networks, transaction data is transparent and accessible to all participants.

This openness enables bad actors to observe and imitate such transactions. Consequently preemptive hacking is only reasonable when all vulnerable funds can be secured quickly enough, preventing bad actors from replicating the attack in time.

Crypto cybersecurity firm PeckShield weighed in on the situation, revealing that the RouterProcessor2 contract on SushiSwap had an approve-related bug that led to the substantial loss from 0xSifu. The firm urged users who had approved the contract to revoke their approval as soon as possible, providing a link to the contract’s address on Etherscan.

Jared Grey, SushiSwap’s head developer, confirmed the presence of the approval bug in the RouterProcessor2 contract via a tweet. He urged users to revoke their approval immediately and assured them that the platform’s security teams were working on mitigating the issue. Grey also reported that a significant portion of the affected funds had been secured through a white hat security process.

In a follow-up tweet, Grey announced the recovery of more than 300 ETH from CoffeeBabe, a user who had managed to recover some of the stolen funds. SushiSwap is also in contact with Lido’s team to secure an additional 700 ETH.

This incident highlights the ever-evolving landscape of cryptocurrency security, where white hat hackers work to protect platforms and assets, but malicious actors remain a constant threat. It also underscores the need for heightened security measures and collaboration between platforms and white hat hackers to address vulnerabilities and minimize losses.


Follow Us on Google News



Editorial Team

Editorial Team

Related Posts

Tether’s QVAC pushes multi‑billion‑parameter AI models onto phones and consumer GPUs
Crypto

Tether’s QVAC pushes multi‑billion‑parameter AI models onto phones and consumer GPUs

March 17, 2026
SEC says most crypto assets fall outside securities laws, including staking, airdrops, and mining
Crypto

SEC says most crypto assets fall outside securities laws, including staking, airdrops, and mining

March 17, 2026
Bitmine
Crypto

Crypto Power Move: Bitmine Ramps Up Ethereum Buys To 4.6M ETH

March 17, 2026
Tether Unveils AI System to Run Large Models on Smartphones
Crypto

Tether Unveils AI System to Run Large Models on Smartphones

March 17, 2026
GSR spends $57M to build one-stop capital markets platform for crypto projects
Crypto

GSR spends $57M to build one-stop capital markets platform for crypto projects

March 17, 2026
Bitrefill reports Lazarus-style exploit drained funds and exposed some user data
Crypto

Bitrefill reports Lazarus-style exploit drained funds and exposed some user data

March 17, 2026
Load More
Next Post
Bitcoin price sets up for an explosive move as ADA, XLM, AAVE and CFX turn bullish

Bitcoin price sets up for an explosive move as ADA, XLM, AAVE and CFX turn bullish

Popular News

  • Tushar Jain: Business development is key for blockchain success, Solana’s technical roadmap is crucial for its future, and Ethereum faces scalability challenges in trading

    Tushar Jain: Business development is key for blockchain success, Solana’s technical roadmap is crucial for its future, and Ethereum faces scalability challenges in trading

    0 shares
    Share 0 Tweet 0
  • Is Berkshire Hathaway Class B Stock a Good Buy? • Benzinga

    0 shares
    Share 0 Tweet 0
  • How to Contact Hilton Customer Service

    0 shares
    Share 0 Tweet 0
  • Alex Zozos: Tokenized securities are classified as securities, the SEC’s evolving role in on-chain trading, and how blockchain enhances trading efficiency

    0 shares
    Share 0 Tweet 0
  • Thousands of flights canceled ahead of U.S. winter storm

    0 shares
    Share 0 Tweet 0

Latest News

Lululemon hopes more new gear will revive sales. Wall Street thinks it might not be enough.

Lululemon hopes more new gear will revive sales. Wall Street thinks it might not be enough.

March 17, 2026
0

Yoga-wear maker reports earnings results as founder tries to shake up the board. A Jefferies analyst says Lululemon’s forecast suggests...

Shows Like 'DTF St. Louis' You Should Watch Next

Shows Like ‘DTF St. Louis’ You Should Watch Next

March 17, 2026
0

We may earn a commission from links on this page. Credit: DTF St. Louis, HBO Max Each of writer/creator/director Steven...

Tether’s QVAC pushes multi‑billion‑parameter AI models onto phones and consumer GPUs

Tether’s QVAC pushes multi‑billion‑parameter AI models onto phones and consumer GPUs

March 17, 2026
0

Tether’s QVAC Fabric integrates BitNet LoRA to fine‑tune and run multi‑billion‑parameter AI models on consumer GPUs and flagship phones, pushing...

Condé Nast Traveler

11 Golden Rules for Surviving Your Next Long-Haul Flight

March 17, 2026
0

Hold off as long as you can from checking the flight timeTime, of course, moves slower in unfavorable situations, like...

Global Finances Daily

Welcome to Global Finances Daily, your go-to source for all things finance. Our mission is to provide our readers with valuable information and insights to help them achieve their financial goals and secure their financial future.

Subscribe

  • About Us
  • Contact
  • Privacy Policy
  • Terms of Use
  • Editorial Process

© 2025 All Rights Reserved - Global Finances Daily.

No Result
View All Result
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers

© 2025 All Rights Reserved - Global Finances Daily.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.