BlockBeats news, October 2: SlowMist posted on social media that the Aave v3 Loop Safe module suffered an attack. The attacker exploited an access control vulnerability in FlashLoopAdapter's open()/close() functions, using forged Safe authentication and arbitrary module execution to steal approximately 114.09 ETH from two Safe multisig addresses, and repaid approximately 1300 WETH in debt to unlock collateral.

