🚨 CoW Swap Hijacked! DNS Shenanigans Strike Again! 🚨

A Tale of Woe and Wily Hackers

  • Oh, the scoundrels! CoW Swap’s frontend was nabbed by a DNS hijacking, a trick as old as the hills but still as pesky as a mosquito at a picnic.
  • Fear not, dear readers, for the backend and APIs remain unscathed, though they’ve been given a timeout like a naughty child.
  • CoW DAO, ever the cautious soul, has paused everything and is waving its arms frantically, shouting, “Stay away from swap.cow.fi!”

Imagine, if you will, a dastardly plot unfolding at precisely 14:54 UTC, a time when most of us are likely napping or nibbling on a biscuit. CoW Swap, the plucky DeFi protocol, found itself in a pickle thanks to a DNS hijacking. The frontend, poor thing, was led astray, but the backend and APIs stood firm, like loyal guards at a castle gate. CoW DAO, ever vigilant, paused the lot and took to X (formerly known as Twitter, for those living under a rock) to sound the alarm.

🚨🚨

UPDATE: CoW Swap experienced a DNS hijacking at 14:54 UTC (approximately 90 minutes ago).

The CoW Protocol backend and APIs were not impacted, but we’ve given them a holiday as a precaution.

We’re now wrestling with the chaos. Please keep your noses out of swap.cow.fi until we say it’s safe!

– CoW DAO (@CoWSwap) April 14, 2026

The team, bless their hearts, is working tirelessly to untangle this mess, but until they give the all-clear, users are advised to steer clear of the frontend like it’s a plate of Brussels sprouts at a children’s party.

The mischief was first spotted by the eagle-eyed folks at Blockaid, a Web3 security firm with a knack for sniffing out trouble. They flagged cow.fi as malicious faster than you can say “jackanapes” and urged users to revoke approvals and flee like their wallets depended on it.

🚨 Community Alert:

Blockaid’s system has identified a front-end attack on @CoWSwap.

The site cow[.]fi has been flagged as malicious.

Avoid it like you’d avoid a tax auditor at a party!

– Blockaid (@blockaid_) April 14, 2026

So far, CoW DAO has kept mum on the details of the exploit, leaving us all to wonder if any poor souls lost their precious funds. The investigation continues, and the all-clear remains as elusive as a honest politician.

As of this writing, there’s no timeline for recovery, so treat swap.cow.fi like a poisoned apple until CoW DAO gives it a clean bill of health.

CoW Protocol’s Year of Woes

This isn’t the first time CoW Protocol has found itself in hot water. Back in March, The Crypto Times reported a wallet losing a cool $50 million in an Aave collateral swap routed through CoW Protocol. The incident raised more questions than a curious toddler, particularly about routing quality in thin-liquidity DeFi pairs.

The trade, it seems, took a detour through Aave’s collateral swap flow, while DeFi commentator YAM pointed the finger at poor routing across aggregators rather than a price display issue specific to CoW Swap. Oh, the drama of it all!

Read More

2026-04-14 20:04