Revoke.cash logo

Kame Aggregator Hack

Check if your address is affected.

12 Sep 2025
$360k stolen
Sei Logo

Kame Aggregator is a decentralized exchange aggregator on the Sei blockchain that looks for the best route for token swaps. To swap, users approved its router contract to spend their tokens, often without a limit. On 12 September 2025, attackers found that the router would carry out whatever instructions it was given during a swap without checking them. They used this to make the router pull tokens directly from the wallets of anyone who still had an active approval to it.

More than $1.3M in 42 different tokens was taken by the main attacker and eleven copycats. Kame contacted the main attacker on-chain and offered a 20% bounty, and that attacker returned about $946k. Whitehats recovered another $22k, which left about $360k with the attackers. Kame then announced a compensation plan that covered around 75% of losses up front in September 2025, using the recovered funds and Kame's own treasury. Users could take the rest in full through monthly payments over 12 months, or a smaller part of it over three months.

The router cannot be paused or upgraded, so all Kame could do was warn users to revoke their approvals. It remains vulnerable, and anyone who ever approved it on Sei should revoke those approvals now. Kame has said future versions will add stricter checks on swap instructions, more audits and a way to pause the contracts. Revoking protects what is still in your wallet, while claims for past losses go through Kame's compensation process.

Affected users remain at risk as long as they haven't revoked their approvals, so it is recommended to use the Revoke.cash Exploit Checker below to make sure that you're safe.

Next time, revoke it automatically

Revoke Ultimate monitors your approvals around the clock and revokes them automatically when an exploit like this one is identified, even while you sleep.

See how Auto-Revoking works →
Get Ultimate
Back to Exploits