
The funds were returned less than two days after a public threat from CEO Alex Shevchenko.
Near Intents has recovered all of the $3.8 million stolen in an attack on its cross-chain swap service, following a 48-hour ultimatum from its chief executive.
AI-generated summary
Near Intents suffered a $3.8 million exploit following a breach between its Omni layer and its main contract.
Return to sender. Near Intents has recovered all of the $3.8 million stolen while operating its cross-chain swap service. The funds were returned less than two days after Alex Shevchenko, the project's general director, publicly claimed that the team knew the identity of the attacker. Near Intents is now ending its internal investigation. However, a possible procedure carried out by the authorities remains separate from this decision.
Key Points
All $3.8 million stolen was returned less than two days after the attack
Alex Shevchenko had given the author of the exploit 48 hours to return the funds
A flaw in the interaction between the Omni layer and the main contract allowed the hijacking
Two days before, Near Intents blocked $50 million linked to the Bitget hack
Near Intents recovers stolen $3.8 million
“Funds from the NEAR Intents hack, amounting to $3.8 million, have been returned in full. We are stopping the investigation,” Alex Shevchenko announced on X.
The day before, the leader had published restitution addresses compatible with Bitcoin, the EVM Ethereum and BNB Chain networks, as well as Solana. His message was addressed directly to the attacker: “We have identified you, sir”. The team then gave him 48 hours to return the assets before continuing their efforts.
Alex Shevchenko presented this possibility as a last opportunity to follow a responsible disclosure procedure, which involves reporting a flaw to developers and going through a reward program rather than exploiting it.
A message attached to a transaction and presented as coming from the author of the hack then confirmed the restitution.
“We returned all the funds, we were in the wrong. »
Onchain message attributed to the author of the exploit and relayed by Alex Shevchenko – Source: Decrypt
The release also thanks the team for their cordiality and invites security researchers to use bug bounty programs. For his part, onchain investigator ZachXBT had followed part of the funds to KuCoin, before their conversion and transfer to Bitcoin. This passage through a centralized platform could facilitate the identification work, without alone proving the identity of the account user.
A gap between the Omni layer and the main contract
Near Intents had discontinued its service after detecting a defect in the way its deposit and withdrawal Omni layer communicated with its main contract. This weakness allowed the attacker to withdraw around $3.8 million.
The team reported the incident to the authorities and promised to fully reimburse affected users. The return of all funds now reduces the direct financial exposure of the protocol.
Near Intents allows assets to be exchanged between 35 blockchains. The user indicates the desired outcome, then different market makers compete to execute the trade. According to the service's data, more than $30 billion in swaps have been processed since its launch.
The incident comes after a busy week. Two days before the exploitation, Near Intents blocked a conversion attempt involving more than $50 million linked to the Bitget hack, estimated at $387.5 million. Bitget and analytics firm Elliptic linked this attack to North Korean actors.

The Danish government announced on Monday the leak of the data of nearly 8.8 million people registered in the central population register, consulted illegally via access from a private company.

In the third quarter of 2026, cryptocurrency hacks resulted in the theft of $1.26 billion according to CertiK, despite a 40% increase in bitcoin over the same period. September was the worst month with $768.5 million lost, mainly due to code and infrastructure flaws. Net losses after recoveries amounted to 869.6 million for the quarter, while the sector's insurance capacity fell by 20% year-on-year. Major attacks have targeted Bitget, Liquid Network and Tectonic, exploiting vulnerabilities in third-party providers, cryptographic proofs and lending protocols. AI now accelerates the detection of flaws in smart contracts.

In its 2026 index published on September 23, Chainalysis ranks Brazil first in the world for crypto adoption, ahead of the United States. Latin American activity grew by 9.8%, driven by the massive use of stablecoins.

OpenAI fired three employees for sharing confidential information with a third-party organization. This case comes shortly after the cancellation of GPT-6.1 Astra.

The Ethereum Foundation launched zkAPI, a protocol for paying for AI services via Ethereum without tying requests to an identity or account, ensuring anonymity of transactions through zero-knowledge proofs.

The Base network (Layer 2 of Coinbase) has activated the Cobalt update. It introduces 'Validity Transactions' for private conditional orders and extends the B20 standard, enabling complex compliance management and on-chain administrative entries.