NEAR Intents Recovers $3.8 Million in Protocol Exploit
NEAR Intents has recovered the full $3.8 million taken in a protocol exploit, closing out a security incident that began on Thursday. The protocol's General Manager, Alex Shevchenko, confirmed the recovery on Friday, just hours after he publicly identified the perpetrator and issued a 48-hour deadline for the funds to be returned. The attacker, who had initially drained the funds from the protocol's cross-chain, attached a message to the final transaction stating 'We've returned all the funds, we were in the wrong.'
The exploit occurred when a bug in the protocol's Omni deposit and withdrawal infrastructure interacted with its smart contract, allowing the attacker to drain funds. The protocol's SHIELD anomaly detection system flagged suspicious activity, prompting NEAR Intents to freeze operations on October 1. The damage was confined to USDT on the BNB Smart Chain, with the NEAR token and other applications on the network unaffected.
Shevchenko had initially given the attacker three wallet addresses and a 48-hour deadline to return the funds. He also opened a private communication channel with the perpetrator, thanking them 'for your willingness to cooperate.' The rapid recovery is a rare outcome in the crypto industry, with NEAR Intents citing its security infrastructure as a key factor in the resolution.