Stani Kulechov says FlashLoopAdapter bug did not affect Aave v3

Stani Kulechov says FlashLoopAdapter bug did not affect Aave v3

N
News Editor
2026-10-02 06:31:29
Aave founder Stani Kulechov said the contract hit by the FlashLoopAdapter exploit was not part of Aave v3, but a third-party external adapter built on top of Aave. His comment came after an incident that led to losses of about 114 ETH from two Safe multisig wallets. Earlier, SlowMist disclosed that FlashLoopAdapter had an access control flaw. According to the security firm, the attacker used the weakness to bypass permission checks and transfer assets out of two Safe multisigs that had the module enabled. The incident resulted in losses of about 114.09 ETH. The statement draws a line between the affected adapter and Aave v3 itself, with Kulechov saying the core Aave v3 protocol was not impacted by the vulnerability.

Aave founder Stani Kulechov said the contract affected in the FlashLoopAdapter incident was not an Aave v3 contract, but a third-party external adapter built on top of Aave. He said the issue did not affect Aave v3 itself.

Earlier, SlowMist disclosed that FlashLoopAdapter contained an access control vulnerability. The attacker used the flaw to bypass permission checks and move assets out of two Safe multisig wallets with the module enabled, causing losses of about 114.09 ETH.

This article was originally published by Bit.Fan. For more cryptocurrency news and market insights, visit www.bit.fan.
100

Disclaimer:

The market information, project data, and third-party content displayed on this platform are for industry information sharing only and do not constitute any form of investment advice or return commitment.

Cryptocurrency trading carries high risks. Users should fully assess their risk tolerance and make independent decisions. All profits, losses, and legal responsibilities are borne by the users themselves.