Aave Adapter Exploit Drains $305,000, Protocol Remains Secure
Aave's lending protocol remains unaffected by an exploit in a third-party adapter used for leveraged positions, according to founder Stani Kulechov.
An attacker exploited an access-control flaw in the FlashLoopAdapter contract, draining approximately $305,000 worth of Ether-linked assets from two Safe multisig wallets.
Kulechov confirmed on X that the incident does not affect Aave v3 itself because the vulnerable component is an external adapter built on top of the protocol.