Aave-Linked Wallet Module Hacked, About $310,000 in ETH Stolen
Summary
- A multisig wallet module linked to Aave was hacked, resulting in the theft of about $310,000 and 114.09 ETH.
- The attacker accessed the stolen assets by exploiting an access-control vulnerability in a wallet module used for Aave's v3 loop strategy and a forged Safe wallet.
- The stolen assets included weETH, Aave collateral assets, and assets taken from two multisig wallets after roughly 1,300 WETH in debt was repaid.
Forecast Trend Report by Period



An Aave-linked multisig wallet module was hacked, resulting in the theft of about $310,000 worth of Ether.
On October 2, crypto security firm SlowMist said the attacker exploited an access-control vulnerability in a wallet module used for Aave's v3 loop strategy, stealing about 114.09 ETH.
SlowMist said the attacker bypassed authentication through a forged Safe wallet, then used arbitrary transaction routes and call data to gain access to assets held in the affected wallets.
According to The Block, the attacker first repaid about 1,300 WETH in debt to unlock collateral before stealing assets from two multisig wallets.
SlowMist said the attack combined forged authentication with arbitrary module execution. The stolen assets included weETH and Aave collateral assets.
YM Lee
20min@bloomingbit.ioCrypto Chatterbox_ tlg@Bloomingbit_YMLEE