Loading cryptocurrency prices...

Curve Finance Warns Users After DNS Hijack Sends Funds to Scam Site

Curve Finance warned users to avoid its curve.fi website due to a DNS hijacking attack redirecting visitors to a malicious wallet drainer.

  • The security incident affected the website, but the underlying protocol and smart contracts remain secure, according to Curve’s official statements.
  • Past front-end attacks have targeted other DeFi platforms and have caused significant user losses, highlighting ongoing risks in decentralized finance.

On May 12, 2025, Curve Finance, a prominent decentralized exchange, urged users to steer clear of its curve.fi website in response to a DNS (Domain Name System) hijacking attack. The attack redirected visitors to a malicious site designed to drain their cryptocurrency wallets.

- Advertisement -

Within two hours of the initial alert, Curve Finance confirmed the incident on its official social channels. Co-founder Michael Egorov recommended users instead access the exchange via its alternative front-end, curve.finance. The company stated on X (formerly Twitter) that the attack had compromised the domain, not the underlying protocol: “While all smart contracts are safe, the domain name points to a malicious site which can drain your wallet!”

This event follows a recent hack of Curve’s social media account used to spread a phishing website, part of a wider pattern affecting crypto platforms. According to DeFiLlama, Curve Finance ranks as the fourth-largest decentralized exchange by total value locked, with about $2 billion currently secured across nine blockchains.

Front-end attacks, like DNS hijacking, target user interactions rather than exploiting core smart contracts or liquidity pools. Attackers redirect users to deceptive websites, prompting them to sign fraudulent transactions. This technique has previously affected multiple DeFi projects. For example, the 2021 Badger DAO incident cost users $120 million after approvals were harvested, and a similar attack in 2022 led to $570,000 in losses for Curve users when the domain was spoofed.

Curve Finance publicly criticized its DNS registrar, iwantmyname, for what it called an inadequate response time. The company noted ongoing limitations due to the .fi domain, though it indicated plans to phase out the affected domain in the future.

- Advertisement -

Since its 2020 launch, Curve Finance has faced multiple security challenges. In 2023, a separate hack led to $70 million in liquidity pool losses and triggered a significant drop in its CRV token price. Despite these incidents, the protocol itself has remained operational during the recent DNS attack, with all smart contracts reported secure.

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -

Latest News

Bitcoin Volatility Fuels Stablecoin Growth and 401k Adoption

Bitcoin has experienced significant price volatility in 2025, impacting the broader crypto market.Stablecoins have...

Bittensor Nears First Halving, Mirroring Bitcoin’s Supply Cut

Bittensor, a decentralized AI network, will experience its first token halving around December 14,...

Solana Eyes $150 Rally as Holiday Season Boosts Momentum

The Solana (SOL) cryptocurrency has experienced price volatility recently, despite some gains.SOL reached an...

WisdomTree Launches Onchain Digital Fund with Put-Write Strategy

WisdomTree introduced a new tokenized fund using a put-writing options strategy on blockchain.The fund,...

XRP Soars in 2025: Eyes Set on $5 Amid 2026 Bull Run

XRP reached over $3 in early 2025 and hit an all-time high of $3.65...
- Advertisement -

Must Read

What Are Sniper Bots Used in Defi Trading?

You've heard about DeFi, but what about sniper bots? These high-speed trading tools are shaking up the crypto scene.But don't fret, you're not...