cd /news/ai-safety/near-intents-recovers-3-8-million-fr… · home › topics › ai-safety › article
[ARTICLE · art-144034] src=cryptobriefing.com ↗ pub= topic=ai-safety verified=true sentiment=· neutral

NEAR Intents recovers $3.8 million from exploit and closes its investigation

NEAR Intents recovered approximately $3.8 million in USDT after a smart-contract bug drained about $3.87 million from a treasury contract on BNB Chain between September 30 and October 1, 2026, and closed its investigation on October 4. General Manager Alex Shevchenko issued a 48-hour ultimatum on October 2 and published return addresses across BTC, EVM and Solana; the suspected exploiter reportedly returned the full amount. The protocol's SHIELD AI security layer flagged the withdrawals, and NEAR Intents paused deposits and withdrawals on 11 networks for roughly 12 hours while patching the vulnerability within an hour.

by read2 min views2 publishedOct 2, 2026
NEAR Intents recovers $3.8 million from exploit and closes its investigation
Image: Cryptobriefing (auto-discovered)

The suspected exploiter reportedly returned the full amount after a 48-hour ultimatum from the cross-chain protocol

NEAR Intents got its money back. The suspected entity behind an exploit that drained approximately $3.8 million in USDT from the cross-chain trading and settlement protocol has reportedly returned the full amount.

The protocol wrapped up its investigation on October 4.

How the exploit unfolded #

Between September 30 and October 1, 2026, a critical bug in the protocol’s smart contracts gave an attacker an opening. The attacker used it to pull USDT out of a treasury contract on BNB Chain.

The drain did not happen in one shot. It came through multiple withdrawals spread over the two days, adding up to approximately $3.87 million USDT.

The protocol’s SHIELD AI security layer flagged the activity. NEAR Intents then d its services and patched the vulnerability within an hour.

The 48-hour ultimatum #

General Manager Alex Shevchenko said the team had identified the suspected exploiter. On October 2, Shevchenko issued a 48-hour deadline for the funds to be returned. He also published specific return addresses across BTC, EVM and Solana.

The news moving money, markets, and the world—before your day starts.

Daily. Free. Join 34,000+ readers across crypto, finance, and policy.

The suspected entity reportedly returned the full $3.8 million, and NEAR Intents closed its investigation on October 4.

Separately, NEAR Intents committed to compensating users affected by the incident.

The cleanup took longer than the patch #

Deposits and withdrawals on 11 networks, including BSC and Polygon, stayed d for around 12 hours. The protocol used that time to repair infrastructure after the exploit. After the fixes, NEAR Intents resumed operations on the affected networks.

A tough week for a protocol that was just being praised #

Just days before its own exploit, NEAR Intents had blocked fund transfers linked to a separate hack of the Bitget exchange. It reportedly stopped nearly $50 million from that incident, freezing $503,000 in attempted transactions.

What this means for cross-chain protocols #

The weak spot was a treasury contract on BNB Chain. The breadth of the follow-up , covering 11 networks, shows how one bug can ripple through a system built to connect many chains.

A critical contract bug made it into production and cost the treasury approximately $3.87 million USDT before anyone stepped in. The flaw was caught by NEAR Intents’ own tooling, patched within an hour, and the funds came back within days after the protocol publicly stated it had identified the suspected exploiter and set a firm deadline.

Disclosure: This article was edited by Estefano Gomez. For more information on how we create and review content, see our

Editorial Policy.

── more in #ai-safety 4 stories · sorted by recency
── more on @near intents 3 stories trending now
sponsored brought to you by zahid.host 4,200+ EU-deployed projects
reading about agents? ship yours in a single git push.

Run your AI side-project on zahid.host

EU-based hosting, git-push deploys, automatic HTTPS, no cold starts. Free tier with a custom domain — perfect for shipping the agent you just read about.

$git push zahid main
→ Live at https://your-agent.zahid.host ✓
Get free account → Pricing
from €0/mo · no card required
LIVE [news/near-intents-recover…] indexed:0 read:2min 2026-10-02 · —