A prominent decentralized trading platform, CoW Swap, has suspended its services temporarily due to a domain name system (DNS) hijacking incident. The platform's team reported that the attack occurred at 14:54 UTC and advised users to avoid using its interface until the issue is resolved.
Although the protocol's underlying infrastructure remains uncompromised, it has been paused as a precautionary measure. DNS hijacking is a common attack vector in DeFi, where users often rely on web-based interfaces to access secure smart contracts. This type of attack allows hackers to redirect users to a fake website, where they can steal crypto assets or sensitive information. CoW Swap is a decentralized exchange aggregator that sources liquidity from multiple venues and uses a 'Coincidence of Wants' mechanism to match trades directly between users or batch them for more efficient execution.
The platform is designed to minimize slippage and limit exposure to maximal extractable value (MEV), a practice where bots reorder transactions to extract profit at users' expense. CoW Swap is governed by CoW DAO, a decentralized autonomous organization that emphasizes user protection, execution quality, and fair trading outcomes. The team has urged users to refrain from using the platform's website until it is deemed safe. The incident highlights the ongoing security risks associated with DeFi platforms, particularly at the front-end layer.