CoW Swap, the Ethereum-based decentralized exchange aggregator, paused its protocol on April 14, 2026, after attackers seized control of its website domain and redirected users to a malicious site engineered to harvest wallet approvals, with cybersecurity researcher Vladimir S. estimating approximately $500,000 in digital assets drained, and at least one user reporting individual losses exceeding $50,000.
The protocol’s underlying smart contracts and backend APIs were confirmed unaffected; the attack surface was the front-end interface alone. We suspect this is less a story about CoW Swap’s specific security posture and more a structural signal about the DeFi industry’s persistent, underweighted exposure to UI-layer infrastructure attacks – a threat vector that smart contract audits do not reach.
DISCOVER: Best crypto to buy right now – CoinSpeaker’s updated guide
CoW Swap Front-End Compromise: DNS Hijacking, Malicious Approvals, and What the Protocol Has Conf
We współpracy z: https://www.coinspeaker.com/cow-swap-halts-protocol-website-compromise/