Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnSquareMore
Ethereum Updates: Centralized DNS Compromise Highlights DeFi Weaknesses as Aerodrome Suffers $1 Million Loss

Ethereum Updates: Centralized DNS Compromise Highlights DeFi Weaknesses as Aerodrome Suffers $1 Million Loss

Bitget-RWA2025/11/23 07:08
By:Bitget-RWA

- Aerodrome Finance suffered a DNS hijacking attack on Nov 22, 2025, redirecting users to phishing sites that siphoned over $1M in assets through deceptive transaction approvals. - Attackers exploited vulnerabilities in centralized domain registrar Box Domains, forcing users to approve unlimited access to NFTs and stablecoins via two-stage signature requests. - The protocol shut down compromised domains, urged ENS-based access, and revoked recent token approvals, marking its second major front-end breach i

Aerodrome Finance, the top decentralized exchange (DEX) on Coinbase's Base network, is currently probing a possible DNS hijacking incident that affected its centralized web domains, leading to urgent advisories for users to steer clear of its main sites. The event, which took place on November 22, 2025, saw attackers redirecting visitors to fraudulent websites intended to deceive them into authorizing harmful transactions,

and . The team stressed that all smart contracts are still safe, but users were instructed to access the platform through decentralized (ENS) mirrors .

The exploit targeted weaknesses in Aerodrome's centralized domain registrar, Box Domains, enabling cybercriminals to seize control of the .finance and .box domains. Some users reported facing misleading interfaces that

asking for unrestricted access to assets like NFTs, ETH, and . One affected individual described a two-step attack where an apparently harmless signature request was quickly succeeded by multiple approval prompts, the permissions. Initial assessments indicate that over $1 million was stolen from compromised wallets within an hour, although .

In response, Aerodrome disabled access to the compromised domains and

and aero.drome.eth.link. The team also via tools like Revoke.cash to reduce exposure. This is the second significant front-end compromise for Aerodrome in 2025, that led to more than $300,000 in user losses. The attack happened shortly after Aerodrome revealed its merger with Velodrome, a rival DEX on , to create a cross-chain ecosystem named "Aero". Despite the incident, the value of the AERO token held steady, over the past day.

This event underscores persistent security issues in DeFi, where vulnerabilities in front-end systems—unlike on-chain smart contract attacks—can be exploited without compromising the protocol’s core infrastructure.

the project's actions, highlighting that ENS-based domains and DNS infrastructure managed by multisig wallets were unaffected, and that leading security experts are involved in the investigation. Meanwhile, of depending on centralized DNS services, a widespread practice in DeFi despite the industry’s focus on decentralization.

Ethereum Updates: Centralized DNS Compromise Highlights DeFi Weaknesses as Aerodrome Suffers $1 Million Loss image 0

The Aerodrome team is

to fix the problem and has appealed for immediate assistance to address the security gap. crypto theft losses, with October 2025 seeing the lowest monthly total of the year at $18.18 million—a sharp decrease from September’s $127 million. Nonetheless, experts caution that attackers are becoming more advanced, that complicate defense efforts.

As the inquiry proceeds,

that liquidity pools and protocol reserves are unaffected, and they urge users to remain cautious and avoid suspicious domains until further notice.

0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

Ethereum Updates Today: The Ongoing Competition Between Ethereum and Solana to Transform Blockchain Value Acquisition

- Ethereum's Fusaka upgrade (Dec 3) aims to boost scalability and economic incentives, positioning ETH as a cash-flowing asset per Fidelity and Bitwise analyses. - The upgrade harmonizes consensus and execution layers, prioritizing monetization while balancing adoption risks as noted by Max Wadington and Fidelity reports. - Solana's Sunrise initiative streamlines token imports, competing with Ethereum to redefine decentralized value capture through seamless integration strategies. - Analysts warn of trade-

Bitget-RWA2025/11/24 02:08

Fed Faces Conflicting Data and Political Tensions as December Verdict Approaches

- The Fed faces internal divisions over rate cuts amid conflicting signals on inflation and a weakening labor market. - A 10–2 vote to lower rates to 3.75%–4% masked broader disagreements, with markets now pricing <35% chance of further cuts in December. - Political pressures intensify as Trump criticizes Powell and pushes for Bessent to lead the Fed, despite Bessent's refusals. - Upcoming November 20 data on payrolls and manufacturing will be critical in resolving the Fed's policy uncertainty.

Bitget-RWA2025/11/24 02:08
Fed Faces Conflicting Data and Political Tensions as December Verdict Approaches

Bitcoin News Today: Bitcoin Surges to $87k—Is This a Panic-Fueled Bounce or a Sign of Lasting Market Change?

- Bitcoin surged past $87,000 in late November 2025, driven by technical support, shifting institutional sentiment, and historical rebound parallels. - Retail fear and ETF inflows signal potential recovery, while macro factors like Nvidia's earnings and Fed rate cut expectations add uncertainty. - Institutional divergence and macroeconomic headwinds pose risks, with Bitcoin's $87k and Ethereum's $2,800 support levels critical for a sustained rebound.

Bitget-RWA2025/11/24 02:08
Bitcoin News Today: Bitcoin Surges to $87k—Is This a Panic-Fueled Bounce or a Sign of Lasting Market Change?

DASH Aster DEX Integration: Paving the Way for Advanced DeFi Infrastructure and Institutional Embrace in 2026

- DASH Aster DEX listing accelerates DeFi's 2026 growth, targeting $3T+ transaction volume via real-world asset tokenization and cross-chain liquidity. - Aster's on-chain order book architecture bridges CEX speed with DEX transparency, achieving $27.7B daily volume through strategic BNB Chain-Ethereum integration. - Institutional adoption gains momentum as Aster introduces gold/stock trading, privacy-focused ZKP features, and 5-7% annual token burns to enhance $ASTER utility. - Investors gain exposure to n

Bitget-RWA2025/11/24 02:08