NEAR Intents hit by $3.8M hack: Bug exploited in BSC hot wallet
NEAR Intents lost $3.8M from its BSC hot wallet due to a smart contract bug. The flaw was patched, services suspended, and full compensation promised. Stolen funds were routed to KuCoin and Bitcoin.
NEAR Intents, a cross-chain swap service, suffered a security breach on October 1, 2026, resulting in the theft of over $3.8 million from its BNB Smart Chain (BSC) hot wallet. The breach was traced to a bug in the interaction between the Omni deposit and withdrawal infrastructure and NEAR Intents' smart contracts. This vulnerability allowed attackers to drain funds, which were then sent to KuCoin and bridged into Bitcoin. In response, NEAR Intents patched the vulnerability, suspended deposits and withdrawals across multiple chains, and pledged full compensation to affected users. However, specific repayment details have yet to be announced. The compromised wallet, known as the HOT Bridge Treasury, operates across several EVM networks but is separate from the main EVM treasury. The breach led to broader chain pauses, impacting market liquidity. NEAR Intents has reported the incident to law enforcement and continues on-chain tracking. Importantly, there is no evidence that the platform's core intent-settlement contracts were compromised.