News View Non-AMP

Aave-Linked Exploit Drains $305K in ETH From Safe Wallet

Published by
Rizwan Ansari

A new Aave-related exploit has drained about 114 ETH worth $305,000 from two Safe wallets on Ethereum. The hacker exploited a third party adapter linked to Aave V3, bypassed a contract check, and unlocked the wallets’ collateral, leading to the loss.

Meanwhile, Aave founder Stani Kulechov said the attack did not affect Aave V3’s core contracts.

FlashLoopAdapter Exploit Drains 114 ETH

Blockchain security firm SlowMist reported that attackers exploited a weakness in FlashLoopAdapter, a third-party contract that manages leveraged positions on Aave V3.

The attacker first bypassed the Safe authentication check in a single transaction. They then used a Morpho WETH flash loan to repay debt and unlock collateral held by the affected wallets.

The attack ultimately drained around 114.09 ETH, worth roughly $305,000 to $310,000. The transaction withdrew around 1,306 weETH from one wallet, but that figure reflects gross movement, not the attacker’s final gain.

Fake Safe Check Opened the Door

The main weakness came from the adapter’s access-control system. It checked whether the module was enabled through a Safe contract. However, the attacker used a fake Safe that returned a positive response.

This allowed the attacker to bypass the check and control the router and transaction data used by the adapter. The attacker then set the router to the victim’s Safe and used the module’s execution function to move weETH and Aave collateral out of the wallets.

Both affected Safes belonged to the same owner. After the attack, the owner disabled the module to prevent further losses.

The stolen 114.09 ETH was then moved to a central address identified by security monitors as 0x7a83…42f1. 

The attacker later began sending the funds in batches toward Tornado Cash, a non-custodial privacy mixer, making the movement of the stolen funds harder to trace.

Aave V3 Contracts Remain Unaffected

Aave founder Stani Kulechov stated that the incident did not involve the core Aave V3 contracts.

“This is not Aave v3 contract, it’s third party external adapter built on top of Aave, zero effect on Aave v3,” Kulechov said.

This means the exploit was linked to the custom automation layer rather than Aave V3’s main protocol contracts or liquidity pools.

Rizwan Ansari

Rizwan is an experienced Crypto journalist with almost half a decade of experience covering everything related to the growing crypto industry — from price analysis to blockchain disruption. During this period, he’s authored more than 3,000 news articles for Coinpedia News.

Recent Posts

Worldcoin (WLD) Price Prediction 2026, 2027 – 2030: Will WLD Price Reach $10?

Story Highlights The live price of the WLD token is Price predictions for 2026 range…

October 2, 2026

Avalanche (AVAX) Price Prediction 2026, 2027 – 2030: Will AVAX Price Hit $100?

Story Highlights The live price of the Avalanche is . Price predictions for 2026 highlight…

October 2, 2026

Shiba Inu (SHIB) Price Prediction 2026, 2027 – 2030: Will SHIB Price Reach $0.000330?

Story Highlights The live price of SHIB memecoin is SHIB enters a key demand zone…

October 2, 2026

Bitcoin Price Today: BTC Reclaims $86K as “Uptober” Rally Begins

The cryptocurrency market kicked off the highly anticipated “Uptober” cycle with strong upward momentum today,…

October 2, 2026

Polkadot (DOT) Price Prediction 2026, 2027 – 2030: Can DOT Price Reach $60?

Story Highlights The live price of the Polkadot crypto token is . Price predictions for…

October 2, 2026

Why Is the Crypto Market Up Today?

Crypto market today is turning higher as Bitcoin, Ethereum and major altcoins regain momentum, putting…

October 2, 2026