Coinbase confirmed that erroneous authorization of a 0x swapper led to an MEV bot-facilitated $300K token fee theft, addressed promptly without impacting customer funds.
Coinbase mistakenly authorized a 0x swapper contract, allowing an MEV bot to steal around $300K in token fees. Coinbase CISO Philip Martin explained that the issue stemmed from corporate DEX wallet adjustments and assured that customer funds were not affected. The authorization was revoked and the funds transferred to a new wallet.