Web3 Share Share this article Copy linkX (Twitter)LinkedInFacebookEmail Aerodrome Finance Hit by 'Front-End' Web3 Share Share this article Copy linkX (Twitter)LinkedInFacebookEmail Aerodrome Finance Hit by 'Front-End'

Aerodrome Finance Hit by 'Front-End' Attack, Users Urged to Avoid Main Domain

Share
Share this article
Copy linkX (Twitter)LinkedInFacebookEmail

Aerodrome Finance Hit by 'Front-End' Attack, Users Urged to Avoid Main Domain

The attack did not compromise the underlying smart contracts, but users are advised to avoid the compromised domains and instead use decentralized ENS domains.

By Francisco Rodrigues|Edited by Aoyon Ashraf
Nov 22, 2025, 3:28 p.m.
Aerodome faces 'front-end' attack. (Unsplash/Modified by CoinDesk)

What to know:

  • Aerodrome Finance, a decentralized exchange on Coinbase's Base network, was targeted in a front-end attack, with attackers using DNS hijacking to reroute users to phishing sites.
  • The attack did not compromise the underlying smart contracts, but users are advised to avoid the compromised domains and instead use decentralized ENS mirrors to access the protocol.
  • The incident is under investigation, and it is unclear if any losses have occurred, but Aerodrome's team is urging users to revoke recent token approvals and avoid signing transactions from unverified domains.

Aerodrome Finance, a leading decentralized exchange on Coinbase’s Base network with $400 million in total value locked, was targeted in a front-end attack late Friday, prompting urgent warnings for users to avoid its primary domains.

The incident appears to be a DNS hijacking of Aerodrome’s centralized domains, which allowed attackers to reroute users to lookalike phishing sites designed to trick them into signing malicious wallet transactions to separate them from their funds. Users are advised to instead rely on Aerodrome’s decentralized domains. Aerodrome has asked My.box, the domain provider, to contact them over a potential exploit of their systems.

STORY CONTINUES BELOW
Don't miss another story.Subscribe to the The Protocol Newsletter today. See all newsletters
Sign me up

These attacks do not compromise the underlying smart contracts, which manage user funds and protocol logic on-chain. At the time of writing, it’s unconfirmed whether the attack has led to any losses or how many users have been affected. Liquidity pools and protocol treasuries remain intact, according to Aerodrome.

Aerodrome's team has been posting real-time updates on X, urging users not to access the compromised domains, aerodrome.finance and aerodrome.box, and instead use decentralized ENS mirrors like aero.drome.eth.limo. To reduce risk, the team recommends revoking recent token approvals using tools like Revoke.cash and avoiding signing any transactions from unverified domains.

New attack

Aerodrome has experienced similar front-end attacks before, including two in late 2023 that resulted in approximately $300,000 in user losses.

This latest attack comes just days after Aerodrome announced a merger with Velodrome, consolidating liquidity across Base and Optimism under the new “Aero” ecosystem. Despite the disruption, the AERO token price remained stable at around $0.67, up 2% over the last 24 hours.

The investigation is ongoing.

Decentralized exchangeAttackExploitTop Stories

More For You

Protocol Research: GoPlus Security

Commissioned byGoPlus

What to know:

  • As of October 2025, GoPlus has generated $4.7M in total revenue across its product lines. The GoPlus App is the primary revenue driver, contributing $2.5M (approx. 53%), followed by the SafeToken Protocol at $1.7M.
  • GoPlus Intelligence's Token Security API averaged 717 million monthly calls year-to-date in 2025 , with a peak of nearly 1 billion calls in February 2025. Total blockchain-level requests, including transaction simulations, averaged an additional 350 million per month.
  • Since its January 2025 launch , the $GPS token has registered over $5B in total spot volume and $10B in derivatives volume in 2025. Monthly spot volume peaked in March 2025 at over $1.1B , while derivatives volume peaked the same month at over $4B.
View Full Report

More For You

DeFi Giant Spark Shelves Crypto App Plans to Focus on Institutional Infrastructure

The protocol will instead focus on "liquidity infrastructure and deals" such as its recent $1 billion investment into PayPal's PYUSD.

What to know:

  • DeFi protocol Spark has paused plans to launch a mobile app, citing a focus on its core competency in DeFi-native crypto and a competitive market.
  • The protocol will instead focus on "liquidity infrastructure and deals" such as its recent $1B investment into PayPal's PYUSD, targeting institutional use cases.
  • The decision comes as another DeFi giant, Aave, has announced the launch of a retail yield app, with Spark's CEO expressing well-wishes but also highlighting the competitive nature of the market.
Read full story
Latest Crypto News

UK Crime Network, Worth Billions, Used Crypto to Funnel Drug Cash to Russia, NCA Says

Turning ‘$11K to Half a Billion Dollars From Trading Memecoins’: Tales From a Crypto Wealth Manager

Bitcoin Treasuries to Move Beyond HODL to Yield, Hedging and Share Buybacks as NAV Discount Bites

Bitcoin Greed & Fear Index Shows Extreme Pessimism, Tactical Bottom May Be Near: Analyst

Grayscale's DOGE, XRP ETFs to Go Live on NYSE Monday

ICP Breaks Major Support as Volume Spike Confirms Accelerated Downtrend

Top Stories

Grayscale's DOGE, XRP ETFs to Go Live on NYSE Monday

Michael Saylor Speaks Out Again as MSCI Concerns Mount

BitMine Immersion Sitting on $4B Loss on Ether Bet as Analyst Warns of Structural issues

Bitcoin Bounces Above $84K as Fed's Williams Puts December Rate Cut Back on Table

Coinbase to Snap Up Solana-Based DEX Vector as Acquisition Spree Continues

U.S. House Bill Would Allow Federal Taxes in BTC While Aiding U.S. Reserve

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.