NEAR Intents reported a security breach resulting in $3.8 million in user fund losses caused by a bug in the Omni deposit and withdrawal infrastructure interaction with its smart contract. The protocol confirmed that the contract-side vulnerability has been patched to prevent recurrence and stated that affected users will be compensated in full. Additionally, the incident was reported to law enforcement, with the team working alongside blockchain analytics partners to trace the stolen funds.

Blockchain investigator ZachXBT identified that the diverted assets were transferred to KuCoin and subsequently bridged to Bitcoin, though the attacker's identity remains unknown. This exploit occurred shortly after NEAR Intents assisted Bitget following a separate $388 million security breach, during which NEAR Intents helped block $50 million and freeze over $500,000 in related funds. The cumulative impact of these incidents contributed to Q3 crypto security losses exceeding $1 billion.