The attacker responsible for the $3.8 million NEAR Intents exploit returned all stolen funds on Friday, less than 24 hours after the protocol's general manager publicly stated the team had identified the individual. The full recovery came swiftly following the direct warning issued to the exploiter. The rapid return of assets suggests the public identification and direct communication from NEAR Intents leadership proved effective in securing the funds. The incident highlights the growing capability of crypto protocols to track and pressure attackers into returning stolen assets through off-chain coordination.