0x5ef2103e5ef2…5ef21041

ConfirmedSecurity597 vB134 sat/vB3 min decode

NEAR Intents Suffers $3.8 Million Exploit

NEAR Intents, the cross-chain protocol on the NEAR blockchain, was exploited for roughly $3.8 million, extending this year's streak of interoperability breaches.

NEAR Intents Hit by $3.8 Million Exploit as Crypto's Rough Year of Hacks Continues - Moomoo
WitnessNEAR Intents Hit by $3.8 Million Exploit as Crypto's Rough Year of Hacks Continues - MoomooAI-generated

Outputs

  1. NEAR Intents was exploited for approximately $3.8 million.

  2. The protocol operates as cross-chain infrastructure on the NEAR blockchain.

  3. The incident adds to a year-long pattern of hacks targeting bridges and intent-based systems.

  4. The exploit mechanism and attacker identity remain unconfirmed pending on-chain analysis.

NEAR Intents, the cross-chain interoperability protocol built on the NEAR blockchain, suffered an exploit draining approximately $3.8 million, according to reports of the incident.

The breach adds to a bruising stretch for the digital asset sector, which has absorbed a steady cadence of protocol-level compromises across bridges, intent-based routing systems and custody infrastructure in recent months.

What do we know so far?

The reported figure stands at roughly $3.8 million in drained funds. Details around the precise mechanism of the exploit, the specific contracts affected and the identity of the attacker remain subject to confirmation as on-chain forensics proceed.

At this stage, the verified core facts are:

  • The exploited system is NEAR Intents, the cross-chain settlement layer operating within the NEAR ecosystem.
  • Losses are reported at approximately $3.8 million.
  • The incident fits a broader pattern of exploits targeting interoperability and intent-based infrastructure throughout the year.

Why does this exploit matter operationally?

NEAR Intents sits in a category of infrastructure that has become a repeated target: systems designed to move value and transaction instructions across chains. Intent-based protocols route user objectives — swaps, transfers, settlements — through solvers and relayers rather than through fixed liquidity paths.

That architecture buys flexibility and capital efficiency. It also expands the attack surface. Each hop between chains, each signature verification and each solver interaction is a potential point of failure if contract logic, message validation or key management contains a flaw.

For a protocol of NEAR Intents' profile, a $3.8 million drain carries consequences beyond the headline number:

  • User confidence. Deposits and routed volumes typically contract after an incident while users wait for a post-mortem and remediation plan.
  • Integrator exposure. Wallets, aggregators and front-ends that route through the protocol must assess whether their flows touched affected contracts.
  • Treasury and reimbursement decisions. Teams in this position generally face a choice between covering losses from reserves, pursuing fund recovery through negotiation or blockchain analytics firms, or leaving users to absorb the shortfall.

How does this fit the year's pattern?

The incident lands amid what has been an unusually punishing period for protocol security. Bridge and cross-chain infrastructure has remained a dominant loss category, a trend that stretches back through multiple market cycles but has persisted through the current one.

Intent-based routing, a newer architectural paradigm, is now clearly part of that target set. As more value flows through solver-mediated settlement rather than pooled liquidity contracts, attackers are following the money and probing the seams of the newer designs.

Security firms and chain-analysis teams have repeatedly warned that cross-chain message verification, uninitialized implementation contracts and compromised operator keys account for a disproportionate share of losses in this category. Whether any of those vectors apply here awaits the project's own incident report.

What happens next?

Protocol teams in this situation typically move through a short sequence: pause affected contracts, publish an initial statement with the drain amount and attacker addresses, coordinate with exchanges and analytics firms to flag stolen funds, and release a technical post-mortem once the root cause is confirmed.

Watch for NEAR Intents to confirm the exploit vector, disclose any contract pauses and state whether user deposits were affected and how reimbursement will be handled. On-chain monitoring of the attacker's addresses — and any attempted laundering through mixers or cross-chain swaps — will shape whether partial recovery remains feasible.

The broader test is whether the intent-routing segment can harden its verification and solver-oversight layers before the next exploit, rather than after it.

via Google News - Crypto Hack Exploit (Source)

More from Elena Vasquez

Elena Vasquez

Show full bio

Staff writer covering marketplaces and e-commerce at Mempool Brief.

440 articles