CoW Swap releases full post-incident report on domain hijacking event, user losses estimated at approximately $1.2 million
Foresight News reports that CoW Swap has released the full post-event report on the domain name hijacking incident. The nature of this event was a supply chain attack: the attacker used social engineering techniques targeting the .fi domain registry Traficom and the registrar Gandi SAS, successfully redirecting the domain's DNS to a Cloudflare server controlled by the attacker, and for several hours provided a phishing website to users.
CoW Protocol's smart contracts, backend API, solver network, and signing infrastructure were unaffected; the attack occurred entirely at the domain registration supply chain layer. The team detected the issue within 19 minutes and completed service migration to cow.finance in about 3.5 hours. The domain was fully restored on April 15th, with RegistryLock enabled. Preliminary analysis shows user losses of approximately 1.2 million US dollars.
Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
You may also like
Freeport Indonesia extends $1.75 billion revolving credit facility maturity to September 2031
Old Second Bancorp director Hugh H. McLean sells 25,000 common shares worth $640,768
Richtech Robotics announces annual shareholder meeting
iPower announces special shareholder meeting
