Coinbase suffered an MEV bot attack due to its interaction with the 0x exchange, resulting in an estimated loss of $300,000.

2025/08/14 12:20

PANews reported on August 14th that Venn Network security researcher deeberiroz reported, according to The Block, that Coinbase lost approximately $300,000 due to a misconfigured interaction between Coinbase and the 0x project's "switcher" contract. In response, Coinbase Chief Security Officer Philip Martin stated that no customer funds were affected and that this was an isolated incident.

The 0x project provides an "exchanger," a contract designed specifically for performing swaps. This contract is permissionless and can be called by anyone to perform arbitrary operations, regardless of ownership restrictions. Because this contract is permissionless, the bot appears to have called the exchanger contract to perform a transfer, transferring approved tokens from the Coinbase wallet to their own addresses.

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.