Finance.Yahoo NEAR Intents Recovers $3.8 Million After Security Breach
Article Content
- •NEAR Intents recovered $3.8 million stolen in a security breach within 48 hours.
- •The exploit was due to a bug in the Omni deposit-and-withdrawal system.
- •The company closed its investigation after the funds were returned, but technical details remain unclear.
NEAR Intents, a cross-chain trading protocol, successfully recovered $3.8 million stolen in an exploit on October 1, 2026. The recovery occurred shortly after the team publicly identified the attacker and issued a 48-hour ultimatum for the return of the funds. The exploit was attributed to a bug in the Omni deposit-and-withdrawal infrastructure interacting with NEAR Intents' smart contract. Following the incident, NEAR Intents halted services and pledged to compensate affected users. The recovered funds were sent back through multiple transactions, including approximately 34.59 Bitcoin. The investigation into the incident was closed after the recovery, although the technical details of the vulnerability are still pending. NEAR Intents previously blocked a $50 million theft attempt just days before this incident. The company emphasized the importance of responsible disclosure and urged hackers to utilize bug bounty programs instead of exploiting vulnerabilities.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (4)
Following this threat?
Track Bitget in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
How was the $3.8 million recovered?
What caused the exploit?
What is NEAR Intents doing to prevent future incidents?
Continue Reading
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited Citrix disclosed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting NetScaler ADC and Gateway systems, which are being actively exploited. Both vulnerabilities have a CVSS score of 9.5 and allow unauthenticated attackers to execute arbitrary commands remotely. CVE-2026-88771 arises…
Critical Authentication Bypass in Cisco Catalyst SD-WAN Manager Exploited On September 30, 2026, Cisco disclosed a critical vulnerability (CVE-2026-76504) in the Catalyst SD-WAN Manager that allows unauthenticated remote attackers to bypass authentication and gain admin-level access to the system. This flaw stems from improper handling of URI encoding in HTTP requests, enabling attackers to…