NEAR Protocol suffered a $3.8 million exploit due to a security bug in its NEAR Intents infrastructure. The vulnerability allowed an attacker to siphon funds without authorization, routing assets to exchanges like KuCoin before detection. The team has patched the flaw and pledged full reimbursement for affected users.
Deposits and withdrawals remain suspended for approximately 12 hours while security partners assist in asset recovery. The incident stemmed from a flaw in the Omni deposit and withdrawal infrastructure’s interaction with smart contracts. In response, NEAR is enhancing its mainnet version 2.13.0 with post-quantum security features, including quantum-resistant signatures and automatic shard scaling, to strengthen defenses against future exploits.
The breach of NEAR Intents highlights the persistent operational risks inherent in cross-chain infrastructure, where complex interactions between deposit mechanisms and smart contracts can create exploitable gaps. By attributing the loss to a specific flaw in the Omni infrastructure, the incident underscores that even established protocols face vulnerabilities during expansion phases. The immediate suspension of services for twelve hours reflects a standard containment strategy, prioritizing network integrity over liquidity flow to facilitate asset recovery and prevent further unauthorized access.
From a Credibility perspective, NEAR’s commitment to full reimbursement and rapid patching aims to mitigate reputational damage among institutional and retail users. However, the pivot toward post-quantum security features in mainnet version 2.13.0 suggests a broader strategic effort to differentiate the protocol through advanced defensive architecture. Stakeholders should monitor whether these enhanced security measures successfully restore trust and stabilize the ecosystem, as the effectiveness of the recovery process will likely influence future adoption rates and market confidence.


