Ethereum-based decentralized finance exchange CoW Swap paused its protocol operations following a compromise of its website, according to a report by decrypt.co.
The breach targeted the platform's front-end interface rather than its underlying smart contracts. The developers took the decision to halt services to prevent any potential impact on user funds or the integrity of the exchange.
CoW Swap uses a unique 'coincidence of wants' mechanism to facilitate trades without the need for traditional liquidity pools. This method aims to protect users from MEV (Maximal Extractable Value) attacks by batching orders.
Security measures
While the website was compromised, the core protocol remains isolated from the attack. The team is currently working to secure the interface and restore normal service levels.
Users are advised to monitor official communication channels for updates regarding the resumption of trading. The outage prevents users from executing swaps through the CoW Swap interface until the vulnerability is fully remediated.
As of the latest reports, the exchange has not confirmed any theft of assets from the protocol's liquidity pools or user wallets. The focus remains on rebuilding the website's security perimeter to ensure the front-end can be trusted once services return.