# "smart contract" (exploit OR hacked OR drained) — X 热门讨论 (2026-10-01 16:58 UTC)

## @ilblackdragon (Illia (root.near) (🇺🇦, ⋈)) · 10-01 15:50 · ♥550 ↻71 💬69 Earlier today, NEAR Intents was exploited for $3.8m. SHIELD, the AI security layer on Intents, detected outlier behavior and Intents were temporarily paused. All of the affected users will be compensated in full.

The attacker exploited a bug in the Omni deposit/withdrawal interaction with the NEAR Intents smart contract isolated to USDT on BSC. The Intents team quickly identified the exact vulnerability and it was fixed within an hour of detection. NEAR Intents and https://t.co/uilYXjPFHF are already back online, except for a few affected chains on Intents. The core NEAR Protocol, NEAR token, and other applications on NEAR were not affected.

NEAR Intents now processes over $4B a month in trading and payments volume, serving as the industry’s connector across chains and ecosystems. At this scale, we have to hold ourselves to a higher security standard. This was the first major exploit on Intents and we will apply all learnings from this incident as part of a full retro and postmortem.

The crypto space is entering a new era of far more sophisticated cyber attacks. Recently, we have seen BitGet, Metamask, Lido all being targeted by criminals equipped with AI systems that are continuously trying to hack all infrastructure. As a space, we need to be far more vigilant and raise the bar on both onchain contract standards and offchain monitoring and proactive prevention.

This includes incorporating formal verification, a key tool for preventing a large class of vulnerabilities. The NEAR ecosystem is already working on a formal verification system for NEAR contracts and will shortly implement it as part of the release process, alongside other security measures that will come out of the postmortem.

Being more proactive against criminal activity is a critical step to ensure the growth and legitimacy of crypto. It’s time to join forces and work together to use all tools at our disposal to detect and prevent malicious activity. SHIELD is our approach to monitoring and AI-based outlier detection. We welcome new SHIELD partners to work with us to share information faster and get better at detecting and containing criminals and exploits across web3. > 引用 @near_intents: Earlier today NEAR Intents services were stopped after a security incident was detected. The incident was caused by a bug in the Omni deposit and withdrawal infrastructure interaction with NEAR Intents smart contract.

The preliminary report indicates the total loss of approximately $3.8M. These funds will be compensated in full.

The contract-side vulnerability has been patched. The operations of the NEAR Intents and near(.)com are expected to resume within 1h.

Deposits and withdrawals on the following networks will remain unavailable for an additional ~12 hours while fixes to the Omni infrastructure are completed: BSC, Polygon, TON, Optimism, Avalanche, Stellar, Monad, LayerX, Adi, Scroll and Plasma.

In case users hold any assets from these chains inside NEAR Intents (for example, in HOT wallet or on near(.)com), they will be able to swap them into other assets once NEAR Intents is back up (in ~1h).

The incident has been reported to law enforcement, and we are working with security and blockchain analytics partners to trace the funds and pursue recovery. A detailed report will be shared publicly in the following days. https://x.com/ilblackdragon/status/2105686871200366663

## @zippy257 (Zippy) · 10-01 14:48 · ♥25 ↻6 💬21 NEAR Intents has been exploited for approximately $3.8M.

The incident was linked to a bug involving its Omni deposit/withdrawal infrastructure and smart contract.

$NEAR dropped nearly 10% following the exploit, while NEAR Intents has paused services and said affected users will be fully compensated.

The NEAR blockchain itself was not reported as the direct target. https://x.com/zippy257/status/2105671177343779210

## @zordcrypt (ZORD CRYPT) · 10-01 14:52 · ♥22 ↻2 💬19 Quick clarification on the $NEAR Intents incident:

@near_intents was paused after a bug was found in the way the Omni deposit/withdrawal infrastructure interacted with the NEAR Intents smart contract.

So based on the preliminary report, this was an issue around the bridge/infrastructure layer, rather than $NEAR’s core network itself being compromised.

The reported loss is around $3.8M, and NEAR says affected funds will be fully compensated.

The contract-side vulnerability has already been patched, with NEAR Intents expected to resume within ~1 hour.

Some deposits and withdrawals will stay paused for ~12 more hours on networks including BSC, Polygon, TON, Optimism, Avalanche, Stellar, Monad, Scroll and Plasma while the Omni-side fixes are completed.

NEAR is also working with security and blockchain analytics teams to trace the funds.

So for now, I’d separate the Omni infrastructure issue from a broader “NEAR got hacked” narrative. > 引用 @near_intents: Earlier today NEAR Intents services were stopped after a security incident was detected. The incident was caused by a bug in the Omni deposit and withdrawal infrastructure interaction with NEAR Intents smart contract.

The preliminary report indicates the total loss of approximately $3.8M. These funds will be compensated in full.

The contract-side vulnerability has been patched. The operations of the NEAR Intents and near(.)com are expected to resume within 1h.

Deposits and withdrawals on the following networks will remain unavailable for an additional ~12 hours while fixes to the Omni infrastructure are completed: BSC, Polygon, TON, Optimism, Avalanche, Stellar, Monad, LayerX, Adi, Scroll and Plasma.

In case users hold any assets from these chains inside NEAR Intents (for example, in HOT wallet or on near(.)com), they will be able to swap them into other assets once NEAR Intents is back up (in ~1h).

The incident has been reported to law enforcement, and we are working with security and blockchain analytics partners to trace the funds and pursue recovery. A detailed report will be shared publicly in the following days. https://x.com/zordcrypt/status/2105672178960355795