According to Odaily Planet Daily, Venn Network security researcher deeberiroz revealed that Coinbase had a misconfiguration in its swapper contract with the decentralized exchange protocol 0x, resulting in a MEV bot stealing approximately $300,000 in token fees. The contract, originally designed for executing transactions, was not designed to receive token authorizations. After Coinbase mistakenly authorized it, the bot called the contract and transferred tokens from the Coinbase fee account. Coinbase Chief Security Officer Philip Martin confirmed the incident, stating that the issue stemmed from adjustments to the company's DEX wallet and did not affect customer funds. The team has revoked the authorization and transferred the funds to a new company wallet. (The Block)
