MEV Bot Foils Attempted RsETH Heist Worth $7.73 Million
A malicious custom module attached to an Ethereum Safe wallet was used by an attacker to redirect liquidity into a setup designed to unwrap into rsETH, resulting in attempted extraction of roughly $7.73 million worth of tokens.
The attack was disrupted when an MEV bot named Yoink intercepted the transfer and obtained the rsETH before the attacker could control the funds.
Kelp, the protocol behind rsETH, placed the address that received the funds under a 24-hour pause as a precautionary measure while security experts investigated. However, Kelp emphasized that its core contracts were not impacted and that minting, withdrawals, and integrations continued normally during the investigation.