@lewi
On the Blast hack:
You don't need to roll back the chain, you just have to make sure any transaction from the hacker's address doesn't get to the sequencer.
IMO they paid a bounty on the side & he returned the private key, then they fed the TXs they wanted into the sequencer.