NEAR Intents Loses $3.8M in Exploit, Suspends Services Across 11 Networks
A security exploit drained $3.8 million from NEAR Intents, forcing the cross-chain protocol to halt deposits and withdrawals across 11 networks. NEAR token fell 8.6% on the news, though the protocol's commitment to full compensation distinguishes this incident from exploits where losses are...
NEAR Intents Loses $3.8M in Exploit, Suspends Services Across 11 Networks
A security exploit drained $3.8 million from NEAR Intents on Thursday, forcing the cross-chain protocol to halt deposits and withdrawals across 11 networks while infrastructure repairs get underway. NEAR token fell 8.6% on the news.
NEAR Intents is an intent-based protocol built on NEAR Protocol. Intent-based systems work differently from traditional on-chain swaps: instead of routing a transaction through a fixed sequence of contracts, users broadcast a desired outcome and third-party solvers compete to fulfill it. That flexibility is a feature, but it also expands the attack surface, since the solver layer and the cross-chain settlement infrastructure introduce complexity that a single-chain swap does not.
Following the incident, the protocol confirmed the scope of the disruption:
"The protocol pledged full compensation and said deposits and withdrawals on 11 networks would face a longer suspension while infrastructure repairs continue."
NEAR Intents, official statement
The commitment to full compensation is meaningful. A significant share of DeFi exploits in 2026 have left users with no recourse, particularly those targeting smaller protocols without reserve funds or active treasuries. NEAR Intents' pledge does not undo the breach, but it separates this incident from the category of exploits where losses are simply permanent.
The operational picture remains serious. Suspending services across 11 networks simultaneously is not a minor patch. Cross-chain infrastructure is inherently stateful: funds in transit, pending settlements, and open solver positions all need to be accounted for before any network can safely resume. The phrase "longer suspension" in the protocol's statement suggests the team does not expect a quick return to normal operations, which creates secondary risk for users who rely on NEAR Intents for active positions or liquidity.
The 8.6% drop in NEAR token price is consistent with how markets have historically priced protocol-level security events, even when the exploit targets an application layer rather than the base chain itself. The distinction matters technically. NEAR Protocol's core infrastructure was not compromised here; the breach was contained to NEAR Intents. But market participants rarely make that separation cleanly in the immediate aftermath of a hack, and the price action reflects that blunt reaction.
Cross-chain and intent-based protocols have become a recurring target precisely because their value proposition requires connecting multiple networks, which multiplies the number of components an attacker can probe. The more networks a protocol integrates, the more bridge contracts, solver APIs, and settlement mechanisms exist as potential entry points. Eleven networks is a wide perimeter to defend.
Security audits and a full post-mortem will determine where exactly the vulnerability sat. Until those findings are public, the full picture of how $3.8 million left the protocol remains incomplete. What is clear is that NEAR Intents now faces the same test every hacked DeFi protocol does: whether the speed and quality of its recovery, and the follow-through on its compensation pledge, can restore enough user confidence to bring liquidity back once services resume.




