The Aave v3 Loop Safe module was exploited through an access control vulnerability, resulting in the theft of approximately 114.09 ETH from two Safe multisig addresses. The attacker targeted the FlashLoopAdapter's open() and close() functions to forge Safe authentication and execute arbitrary modules. Following the unauthorized access, the attacker repaid approximately 1,300 WETH in debt to unlock collateral before extracting the stolen funds. Security firm SlowMist identified the exploit and confirmed the attack vector involved manipulated authentication within the protocol's safety module.