A well-known DeFi platform, CoW Swap, has temporarily suspended its services due to a domain name system hijacking incident. The platform's team announced that the attack occurred at 14:54 UTC and advised users to avoid using its interface until further notice.
Although the protocol's underlying infrastructure was not directly compromised, it was paused as a precautionary measure. The attack highlights the ongoing security risks associated with the front-end layer of DeFi platforms. CoW Swap, a decentralized exchange aggregator, sources liquidity from multiple venues and utilizes a 'Coincidence of Wants' mechanism to facilitate direct trades between users or batch them for more efficient execution.
The platform is designed to minimize slippage and limit exposure to maximal extractable value (MEV), a practice where bots reorder transactions to extract profit at users' expense. CoW Swap is governed by CoW DAO, a decentralized autonomous organization, and has positioned itself as a user-protective alternative in DeFi trading, emphasizing execution quality and fairer trading outcomes.
The team is actively working to resolve the situation and has warned users to refrain from using the platform until it is deemed safe.