Aave-Linked Safe Adapter Exploit Drains $305K After Access Control Flaw on Ethereum
Aave wasn’t the target here — a third-party Safe adapter was. An access-control flaw in FlashLoopAdapter let an attacker fake authorization on Ethereum and drain about $305K, proving once again that DeFi’s weakest link is often the “helpful” plumbing bolted on top.
Read Full Article