MEV bug exploited across three BSC contracts; attacker claims to return funds citing gas price competition vulnerability and prevention of larger losses.
Security & Exploits ·
An on-chain message posted from a Binance Smart Chain address claims responsibility for exploiting a vulnerability across three BSC contracts and announces plans to return the extracted funds. According to the message, amounts totaling approximately $50,000, $2,000, $50,000, and $60,000 were taken from distinct contracts, with an additional $30,000 mentioned as frozen and returned. The attacker attributed the exploit to what it described as a MEV bug "100% exploitable via gas price competition."
The actor justified the action by arguing that returning funds early would prevent a more damaging extraction by another party. The message identifies three separate contract addresses and their deployers, indicating the breach affected multiple smart contracts on the network. The funds are stated to be transferred back to contract creators, though verification of actual return transactions remains unclear from the posted details alone.
The claim introduces questions about the nature of the disclosed vulnerability, whether other MEV-related exploits on BSC remain unpatched, and the authenticity of the return process. No independent confirmation of the transfers or broader impact assessment has been established based on the available on-chain evidence.