Near Protocol Exploited for $3.8M, Implements Post-Quantum Security Measures
Near Protocol's NEAR Intents infrastructure was exploited by an attacker, resulting in the theft of $3.8 million in assets. The vulnerability was caused by a bug in the Omni deposit and withdrawal infrastructure's interaction with its smart contract. The team acted quickly to patch the vulnerability and has implemented measures to prevent future vulnerabilities, focusing on post-quantum security.
The exploit occurred when an attacker was able to siphon funds without authorization, exploiting the bug in the NEAR Intents system. This allowed over $3.8 million in assets to be stolen and routed to exchanges like KuCoin before it was detected. NEAR's team announced that the vulnerability has been patched and core services will resume shortly, but deposits and withdrawals will remain suspended for approximately 12 hours as security partners assist in asset recovery.
The NEAR Protocol is enhancing its infrastructure with post-quantum security features to strengthen its defenses against future exploits. The latest updates include mainnet version 2.13.0, which introduces quantum-resistant signatures and automatic shard scaling. This proactive approach signals NEAR's commitment to improving security and user trust in its ecosystem.