Skip to content
Back to Guavy Wire
Crypto

Aave v3 Unscathed by Third-Party Adapter Exploit That Drained $305K

Instruments
ETH AAVE
Share

Aave founder Stani Kulechov has confirmed that Aave v3 was not affected by an exploit that drained around $305,000 from two Safe multisig wallets. The attack targeted a third-party adapter built on top of Aave, which allowed the attacker to control router and transaction data used for swaps.

The security firm SlowMist identified the vulnerable FlashLoopAdapter contract and reported that the attacker exploited an access-control flaw in the module used to open and close leveraged Aave v3 positions through Safe wallets. The exploit also enabled the attacker to execute transactions through the victim Safes and drain wETH and collateral.

According to SlowMist, around 1,300 wrapped Ether (wETH) in debt was repaid during the attack to unlock collateral. The attacker ultimately stole about 114.09 Ether (ETH), worth roughly $305,000, from two Safe multisigs.

More on Crypto

Disclaimer: Guavy is a data and market intelligence provider, not an investment adviser. The information, signals, and market analysis provided by the Guavy API and related services are for informational purposes only and are not intended as financial advice, investment recommendations, or an endorsement of any particular trading strategy. Trading in volatile markets, including cryptocurrency, carries significant risk and may not be suitable for all investors. Past performance is not indicative of future results. Users should consult with a qualified financial professional before making any investment decisions. Guavy makes no guarantee of trading profits or financial returns.

Market sentiment intelligence for apps, funds & agents

Location

729 55 Ave SW
Calgary AB T2V 0G4
Canada

© 2026 Guavy Inc