Skip to content
NEAR Intents Recovers $3.8 Million After Security Breach

NEAR Intents Recovers $3.8 Million After Security Breach

First seen 5 Oct 2026, 12:26 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •October 5, 2026 at 13:27 UTC
  • •NEAR Intents recovered $3.8 million stolen in a security breach within 48 hours.
  • •The exploit was due to a bug in the Omni deposit-and-withdrawal system.
  • •The company closed its investigation after the funds were returned, but technical details remain unclear.

NEAR Intents, a cross-chain trading protocol, successfully recovered $3.8 million stolen in an exploit on October 1, 2026. The recovery occurred shortly after the team publicly identified the attacker and issued a 48-hour ultimatum for the return of the funds. The exploit was attributed to a bug in the Omni deposit-and-withdrawal infrastructure interacting with NEAR Intents' smart contract. Following the incident, NEAR Intents halted services and pledged to compensate affected users. The recovered funds were sent back through multiple transactions, including approximately 34.59 Bitcoin. The investigation into the incident was closed after the recovery, although the technical details of the vulnerability are still pending. NEAR Intents previously blocked a $50 million theft attempt just days before this incident. The company emphasized the importance of responsible disclosure and urged hackers to utilize bug bounty programs instead of exploiting vulnerabilities.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-10-01
NEAR Intents exploit occurred
A bug in the Omni deposit-and-withdrawal infrastructure allowed an attacker to siphon $3.8 million.
Financefeeds
2026-10-02
Recovery addresses published
NEAR Intents published addresses for Bitcoin, BNB Chain, and Solana for fund recovery.
Financefeeds
2026-10-04
Funds returned and investigation closed
The attacker returned the stolen funds after NEAR Intents issued a public ultimatum.
Finance.Yahoo

More articles in this cluster (4)

Following this threat?

Track Bitget in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed

Common questions

How was the $3.8 million recovered?
The funds were returned after NEAR Intents publicly identified the attacker and issued a 48-hour ultimatum.
What caused the exploit?
The exploit was due to a bug in the interaction between the Omni deposit-and-withdrawal infrastructure and NEAR Intents' smart contract.
What is NEAR Intents doing to prevent future incidents?
NEAR Intents has patched the vulnerability and is emphasizing the use of bug bounty programs for responsible disclosure.