CoW Swap releases a full post-incident report on domain hijacking, with user losses totaling approximately $1.2 million

robot
Abstract generation in progress
ME News Report, April 17 (UTC+8), CoW Swap releases a full post-incident report on the domain hijacking event.
The incident was a supply chain attack: attackers used social engineering tactics targeting the .fi domain registry Traficom and registrar Gandi SAS, successfully redirecting the domain DNS to attacker-controlled Cloudflare servers, providing phishing sites to users for several hours.
CoW Protocol smart contracts, backend API, solver network, and signature infrastructure were unaffected; the attack occurred entirely at the domain registration supply chain level;
the team detected the issue within 19 minutes and migrated services to cow.finance in about 3.5 hours;
the domain was fully restored on April 15 and RegistryLock was enabled.
Initial analysis estimates user losses of approximately $1.2 million. (Source: Foresight News)
COW3.78%
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pinned