The decentralized exchanges Aerodrome and Velodrome reported a large-scale DNS hack that redirected their centralized domains to phishing pages. The incident took place on November 21, 2025, and on 22 November, the project teams officially confirmed the “frontend compromise”, urging users to immediately stop any interaction with the web versions of the services. According to […] Сообщение Aerodrome and Velodrome Published Report on NameSilo Hack появились сначала на INCRYPTED.The decentralized exchanges Aerodrome and Velodrome reported a large-scale DNS hack that redirected their centralized domains to phishing pages. The incident took place on November 21, 2025, and on 22 November, the project teams officially confirmed the “frontend compromise”, urging users to immediately stop any interaction with the web versions of the services. According to […] Сообщение Aerodrome and Velodrome Published Report on NameSilo Hack появились сначала на INCRYPTED.

Aerodrome and Velodrome Published Report on NameSilo Hack

2025/11/24 20:38
  • A DNS attack on Aerodrome and Velodrome resulted in $700,000 in user losses.
  • In addition, the exchanges’ teams are migrating domains after the hack.
  • At the same time, decentralized dApps were not affected, nor was the MetaDEX platform.

The decentralized exchanges Aerodrome and Velodrome reported a large-scale DNS hack that redirected their centralized domains to phishing pages.

The incident took place on November 21, 2025, and on 22 November, the project teams officially confirmed the “frontend compromise”, urging users to immediately stop any interaction with the web versions of the services.

According to the teams, the root of the attack was an internal compromise on the side of the NameSilo registrar. According to the preliminary investigation, the attackers bypassed multisig control in the 3DNS system, removed DNSSEC, and redirected domains to malicious pages.

The full remediation, taking into account the time it took to distribute the patches, took less than four hours.

User losses are estimated at around $700,000, which is the amount of money signed on phishing pages before the attack was fully blocked.

The team said it would not restore domains on the old infrastructure. Aerodrome and Velodrome are currently working with leading corporate registrars and security consultants, and the domain migration is expected to be completed next week.

Security teams will be able to run a decentralized application (dApp) in a fully autonomous mode:

According to the statement, Aero and Velo Foundations are developing a grant program for users who have lost money due to signing malicious transactions:

Amid the attack, the Aerodrome Finance (AERO) token dropped by 5.93% overnight, lagging behind the overall market.

Data on AERO. Source: CoinMarketCap.

The hacking of the Aerodrome and Velodrome frontends has already made news in the past: in November 2023, the teams also reported the compromise of web interfaces and the loss of users, which highlights the systemic risks of a centralized DNS infrastructure for DeFi.

Earlier, in February 2024, the asset showed an explosive growth of over 97% after the announcement of Coinbase Ventures’ investment as part of the Base Ecosystem Fund.

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Coinbase Vs. State Regulators: Crypto Exchange Fights Legal Fragmentation

Coinbase Vs. State Regulators: Crypto Exchange Fights Legal Fragmentation

US-based crypto exchange Coinbase has made a significant appeal to the Department of Justice (DOJ) regarding a wave of lawsuits aimed at its operations. The company is urging federal action to address what it describes as an “increasingly fragmented and hostile” regulatory landscape for the crypto market. Coinbase Urges Federal Action  In a recent letter, Coinbase highlighted the steps taken by the current Administration to create a more equitable framework for digital asset regulation. This includes the introduction of stablecoin legislation and two pending bipartisan market-structure bills aimed at fostering uniformity in the oversight of cryptocurrencies.  Coinbase argues that these initiatives have begun to mitigate the adverse effects of the previous Administration’s enforcement-driven regulatory approach.  However, the company warns that certain states are perpetuating this problematic trend by adopting “expansive and flawed” interpretations of securities laws and implementing new licensing requirements that undermine the federal government’s pro-innovation stance. Related Reading: REX Shares Claims Its DOGE And XRP Spot ETFs Will Be Approved By US SEC Tomorrow They make an example with the Oregon Attorney General, who has filed a lawsuit against Coinbase, claiming that many digital assets traded on its platform qualify as alleged unregistered securities.  The letter affirms that the suit not only targets Coinbase but also encourages other states to address what the Attorney General perceives as a regulatory gap left by federal authorities.  Similarly, the New York Attorney General has initiated legal action to regulate transactions involving digital assets based on decentralized protocols as securities, further complicating the regulatory environment. Coinbase has faced cease-and-desist orders from four states, which demand the company halt its retail staking services. These orders are deemed by Coinbase as “legally unfounded and inconsistent.” Unified Framework For Digital Assets In light of these challenges, the letter to the DOJ calls for urgent federal intervention to establish broad preemption provisions. The crypto exchange argues that preemption has historically been an effective tool for addressing state interference in national markets, referencing past Congressional actions. Coinbase contends that the current patchwork of state regulations not only disrupts market efficiency but also leads to unequal access to cryptocurrency services based on geographic location. Related Reading: Citi’s Ethereum Forecast: No New All-Time High Expected, Year-End Target At $4,300 To remedy these issues, Coinbase advocates for Congress to adopt legislation that would exempt federally regulated digital assets from state blue-sky laws and clarify that state licensing requirements do not apply to crypto intermediaries.  Additionally, the company urges the SEC to expedite rulemaking and provide clearer guidance on why digital asset transactions and services, including staking, should not be classified as securities. Such clarity would help prevent states from imposing conflicting regulations based on their interpretations of securities laws. Featured image from Shutterstock, chart from TradingView.com
Share
NewsBTC2025/09/18 15:00