# bridge exploit — X 热门讨论 (2026-10-09 11:52 UTC)

## @dexyxbt (Dex 🪑) · 10-09 09:54 · ♥40 ↻2 💬33 crypto scams in 2026 over $1.4 billion reportedly lost to crypto hacks and exploits in 2026.

> Bitget wallet breach: $387.5M > Liquid Network exploit: $320M > Kelp DAO bridge exploit: $292M > Drift Protocol exploit: $285M > Coldcard wallet vulnerability: $70M > $25.6M whale phishing attack > AFX Trade bridge compromise: $24.15M > D'CENT wallet incident: $6–20M > Symbiosis bridge exploit: ~9.97 BTC > NEAR Intents exploit: $3.8M https://x.com/dexyxbt/status/2108496247766269975

## @zacodil (Vadim (AI, ⋈)) · 10-09 08:53 · ♥31 ↻4 💬3 New details on the NEAR Intents exploit, from @AlexAuroraDev on Unchained:

> The bug made the bridge believe a deposit had arrived on BSC when it had not. NEAR credited the attacker, the treasury got nothing. Code was of course audited multiple times, nobody saw this sequence coming.

> Caught in about 40 minutes. Monitoring system runs a simple check: what the protocol thinks it holds vs what is really in the vaults. The numbers stopped matching, six people got on a call, contracts paused.

> The team linked the attack to a person. Alex says the tool he used has "not more than 30 users". He wrote to him privately: I am not accusing you, I am asking for help, save the logs. The public "we have identified you, sir" tweet was written in code. Alex compares it to Penn & Teller: magicians on the show get told, in code, that their trick is understood, without the audience hearing how. The man would understand, with a door left open to return the money and walk away.

> The attacker answered on-chain: "willing to cooperate, send your Signal". Intents replied with a tweet encrypted to the attacker's own public key. Inside was a Signal group invite. One person on earth could open it, and he did.

> Surprise in the Signal chat: the money was no longer on ETH, BNB and Solana. He had already swapped it into Monero, and part of why he reached out was to ask where to send XMR. NEAR Intents now holds Monero and is trying to cash it out, and every counterparty asks for source of funds. Alex: "the first time I touched XMR was during this hack."

> The contracts were already refilled from the team's own pocket before the money came back.

> Alex: "I am not police. I am not their dad. I just want the users' money back." This is the third recovery in the NEAR ecosystem, after Rhea in April and one that was never made public. Same playbook each time.

> Since the hack, several bug bounty reports came in. One was valid and gets paid.

Full episode is worth an hour. The Shield numbers from the BitGet hack alone are a separate post. Stay tuned! > 引用 @AlexAuroraDev: How NEAR Intents Got Its $3.8M Back in 24 Hours https://t.co/Xdm273E9Hu https://x.com/zacodil/status/2108480859942555933