NEAR Intents recovered the entirety of the ~US$3.8M that was stolen. The investigation is closed.

Timeline (sources: The Block / post X Alex Shevchenko; CoinTelegraph Oct 3; CryptoBriefing Oct 2–4, 2026; Decrypt Oct 4):
1) 09/30–10/01: a bug between Omni infrastructure (deposits/withdrawals) and the Intents smart contract. Drained ~US$3.87M USDT (mainly treasury BNB Chain, multiple withdrawals). Pause deposits/withdrawals for ~12 hours across 11 networks (including BSC, Polygon). Patch announced in ~1 hour. User compensation promised.
2) 10/02: GM Alex Shevchenko publishes that he identified the attacker, sets a 48-hour deadline, and provides return addresses (BTC / EVM / Solana). Public message: “We have identified you, sir”.
3) 10/02 (Friday): Shevchenko announces on X the full return of the funds and the end of the investigation. On-chain message attributed to the attacker: “we were in the wrong” + call for bug bounties (Decrypt).
4) 10/04: CryptoBriefing dates the formal close of the investigation. ZachXBT had tracked part of the flow to KuCoin, then to BTC during the incident.

Dominant takeaway: this isn’t a “hack erased.” It’s a cross-chain rail that patched quickly, faced possible disclosure risk, and got the cash back. The Omni / multi-chain attack-surface risk remains a structural issue.

Two close paths:
• Base: resumption of Intents volumes, partial confidence thanks to the full return + compensation.
• Risk: a second Omni / treasury incident within 1–2 weeks would invalidate the “one-off” narrative.

~19:00 UTC spot (Oct 4): $NEAR ~$5.02 (+~6.3% 24h, Kraken/CoinGecko). $BTC ~85.3k. Fear & Greed 65 (Greed).

Does a full return after an ultimatum change how you read the Intents risk, or only the short-term narrative around $NEAR ?

$NEAR $BNB
#NEAR #DeFi #Security