Status DataClose notification

[New Bug Bounty] NEAR Intents Has Launched Bug Bounty With Up to $100,000 Reward Per Critical Vulnerability

Anna Demirska
Anna Demirska
Marketing Specialist

Meet NEAR Intents

NEAR Intents is the universal trading protocol powering one-click cross-chain swaps and unified liquidity for onchain markets and tokenized assets. Using a novel intent-based transaction infrastructure that empowers users to express outcomes instead of managing routes, bridges, and liquidity sources, NEAR Intents unlocks frictionless cross-chain swaps for DeFi users, autonomous trading for AI agents, and broad distribution for blockchains, dApps, and asset issuers.


Check Out The Rewards

NEAR Intents launched 2 new programs, so if you find a vulnerability according to the bounty rules, they will reward you according to these tiers:

In SDK:

  • Critical: $10,000 – $20,000
  • High: $5,000 – $10,000
  • Medium: $1,000 – $5,000
  • Low: $100 – $1,000

In bridges:

  • Critical: $10,000 – $100,000
  • High: $5,000 – $10,000
  • Medium: $1,000 – $5,000
  • Low: $100 – $1,000

Join The Bounty Hunt

There are SDK and bridge assets to scope!

Make sure your reports include details about these bridge incidents:

  • Stealing or loss of funds
  • Unauthorized transaction
  • Balance manipulation
  • Contract execution flows
  • Cryptographic flaws
  • Unauthorized access to MPC key shares or signing capability
  • Information disclosure of sensitive MPC state
  • Bypass of threshold signature requirements
  • Theft or permanent freezing of funds
  • Cross-chain replay attacks enabling double-spending
  • Light client verification bypass

SDK has such vulnerabilities in scope:

  • Intent signing and verification logic
  • Withdrawal processing and validation
  • Fee estimation calculations
  • Route detection and bridge selection
  • Cross-chain address validation
  • Nonce management and invalidation
  • Type definitions accuracy
  • Serialization/deserialization correctness
  • Private key exposure or leakage through SDK operations
  • Intent manipulation leading to unauthorized fund transfers
  • Cross-chain replay attacks
  • Fee calculation errors leading to significant losses

To increase your chances of finding a critical bug, read NEAR Intentse whitepaper here.

Once you’re ready, click here to join the bounty hunt!

Share article:
More topics:

Read more on HackenProof Blog