Current outcome
Investigation into the NEAR Intents exploit continues; the attacker's address has been linked to a wallet flagged as North Korea's Lazarus Group, suggesting the attacker may be Lazarus Group. Previously confirmed: over $3.8M loss, deposits/withdrawals suspended across 11 networks, and full compensation pledged.
Progress timeline
4 material updates- #01
Community Alert: Near Intents was exploited for $3.8M+ after its BSC hot wallet
Near Intents suffered a hot-wallet exploit on BSC with over $3.8M in irregular outflows, prompting it to halt transactions amid a multi-EVM-chain incident, with the stolen funds routed to KuCoin and bridged to Bitcoin.
Source evidence: investigations · theblockbeats · The Defiant
- #02
NEAR Intents确认遭攻击,涉案金额超380万美元
NEAR Intents formally confirmed the exploit, attributing it to flaws in its Omni deposit/withdrawal infrastructure and contract interactions; it has patched the contract, expects core services back within ~1 hour, pledged full reimbursement of affected assets, paused BSC/Polygon/TON deposits and withdrawals for an additional ~12 hours, and filed a report while pursuing on-chain tracing.
State after update: Near Intents has confirmed an exploit exceeding $3.8M caused by flaws in its Omni deposit/withdrawal infrastructure and contract interactions; the contract flaw is patched, core services are expected to resume within ~1 hour, BSC/Polygon/TON deposits and withdrawals remain paused for an additional ~12 hours, full reimbursement is pledged, a report has been filed, and stolen funds were routed to KuCoin and bridged to Bitcoin.
Source evidence: theblockbeats · foresightnews · wublockchainenglish · The Block
- #03
NEAR Intents hit by $3.8 million exploit as crypto's rough year of hacks continues
New report discloses expanded affected network scope: in addition to BSC, Polygon, and TON, deposit/withdrawal disruptions also affect Optimism, Avalanche, Stellar, Monad, X Layer, ADI, Scroll, and Plasma; details that the platform has processed over $30B across 35 chains are also mentioned.
State after update: Near Intents has confirmed an exploit exceeding $3.8M caused by flaws in its Omni deposit/withdrawal infrastructure and contract interactions; the contract flaw is patched, core services are expected to resume within ~1 hour, but deposit/withdrawal disruptions now affect multiple networks including BSC, Polygon, TON, Optimism, Avalanche, Stellar, Monad, X Layer, ADI, Scroll, and Plasma, with pauses potentially prolonged; full reimbursement is pledged, a report has been filed, stolen funds were routed to KuCoin and bridged to Bitcoin, and law enforcement and security firms are tracing.
Source evidence: CoinDesk
- #04
⚡️NEAR Intents攻击者或为Lazarus Group
The attacker's address interacted with a wallet flagged as North Korea's Lazarus Group (0x098B7...E2f96), suggesting the attacker may be Lazarus Group.
State after update: Investigation into the NEAR Intents exploit continues; the attacker's address has been linked to a wallet flagged as North Korea's Lazarus Group, suggesting the attacker may be Lazarus Group. Previously confirmed: over $3.8M loss, deposits/withdrawals suspended across 11 networks, and full compensation pledged.
Source evidence: theblockbeats