A prominent decentralized trading platform, CoW Swap, announced the temporary suspension of its services due to a domain name system hijacking incident. The attack, which occurred at 14:54 UTC, prompted the team to advise users against interacting with the interface until further notice. Although the protocol's underlying infrastructure, including its backend and APIs, was not directly compromised, it was paused as a precautionary measure while the team resolves the issue. The incident highlights the ongoing security risks associated with DeFi platforms, particularly at the front-end layer.

DNS hijacking allows attackers to redirect users to a fake website, often to drain crypto wallets or steal private data. CoW Swap, a decentralized exchange aggregator, sources liquidity from various venues and utilizes a 'Coincidence of Wants' mechanism to match trades directly between users or optimize them for efficient execution. The platform's design aims to reduce slippage and limit exposure to maximal extractable value (MEV), a practice where bots reorder transactions to extract profit at users' expense. CoW Swap is governed by CoW DAO, a decentralized autonomous organization that emphasizes user protection, execution quality, and fair trading outcomes.

The team has urged users to avoid using the platform until it is deemed safe, stating, 'We are now actively working to resolve the situation. Please continue to refrain from using swap dot cow dot fi until we confirm that it is safe to use.'