April 10, 2025

at

12:00 am

EST

(Updated:

)

MIN READ

MEV Bot Steals $100K of Airdrops

A MEV bot, 0x80B, has stolen more than $100K worth of PROMPT airdrop tokens from the recent Wayfinder AI token airdrop.
No items found.
Arkham Intelligence logo white
Arkham
Arkham
Article
Guides
News
Insights
Reports
Trading

Contents

    A MEV bot, 0x80B, has stolen more than $100K worth of PROMPT airdrop tokens from the recent Wayfinder AI token airdrop. Users who attempted to claim their PROMPT token allocation via the official smart contract lost their tokens to the MEV bot, which replaced their claim transactions with its own, placing its own address as the claimer. The bot then subsequently swapped the PROMPT tokens for ETH via Uniswap. The contract has since been paused to prevent further loss, with the team promising to fully compensate all affected users with their allocated PROMPT airdrop.

    This type of exploit is a classic example of "generalized front-running." MEV (Maximal Extractable Value) bots monitor the "mempool," which is the waiting area for pending transactions. When the bot detects a profitable transaction—like a user claiming free tokens—it automatically copies the transaction's data but broadcasts it with a significantly higher gas fee. Miners, incentivized by the higher fee, prioritize the bot's transaction, processing it before the legitimate user's request. This effectively allows the bot to "cut the line" and claim the tokens first.

    MEV bot 0x80B on Arkham
    MEV bot 0x80B on Arkham

    According to the bot’s past transaction history, the bot primarily uses Coinbase as its centralized exchange of choice, which could prove to be a useful clue in deducing its owner’s identity.

    The MEV bot, 0x80B, steals 542.87 PROMPT tokens in this transaction
    The MEV bot, 0x80B, steals 542.87 PROMPT tokens in this transaction

    The link to Coinbase highlights the often-overlooked difference between anonymity and pseudonymity in crypto. While a blockchain address is just a string of characters, centralized exchanges (CEXs) are regulated entities required to enforce Know Your Customer (KYC) laws. By interacting with a CEX, the attacker creates an off-chain link between their wallet and their real-world identity. If legal pressure is applied, this digital trail can easily de-anonymize the perpetrator, turning a successful code exploit into a traceable crime.

    Arkham

    The Arkham Research Team comprises analysts and engineers who worked at Tesla, Meta, and Apple, alongside alumni from the University of Cambridge, Imperial College London, UC Berkeley, and other institutions.

    Arkham Intelligence logo white
    Arkham
    The Arkham Research Team comprises analysts and engineers who worked at Tesla, Meta, and Apple, alongside alumni from the University of Cambridge, Imperial College London, UC Berkeley, and other institutions.
    No items found.
    Information provided herein is for general educational purposes only and is not intended to constitute investment or other advice on financial products. Such information is not, and should not be read as, an offer or recommendation to buy or sell or a solicitation of an offer or recommendation to buy or sell any particular digital asset or to use any particular investment strategy. Arkham makes no representations as to the accuracy, completeness, timeliness, suitability, or validity of any information on this website and will not be liable for any errors, omissions, or delays in this information or any losses, injuries, or damages arising from its display or use. Digital assets, including stablecoins and NFTs, are subject to market volatility, involve a high degree of risk, can lose value, and can even become worthless; additionally, digital assets are not covered by insurance against potential losses and are not subject to FDIC or SIPC protections. Historical returns are not indicative of future returns.