Please wait we are preparing awesome things to preview...

"HypurrFi Investigates App Hijack: Users Advised to Stay Away"

04.04.2026 09:33

**Security Alert: HypurrFi Detects Domain Compromise, Urges Users to Stay Away**

HypurrFi, a decentralized lending protocol operating on the HyperEVM network, has issued an urgent warning to its user base after discovering a potential domain hijacking incident. The team immediately advised all users to refrain from interacting with both its website and lending application until further notice.

In a statement shared on social media platform X, founder androolloyd bluntly warned: "Do NOT USE THE HYPURR .FI domain, it is compromised." The project team随后 reinforced this message, emphasizing that no one should attempt to access the platform through its current web address.

Despite the alarming nature of the incident, the HypurrFi team moved quickly to reassure users that their funds appear to be safe. The warning specifically targets the frontend interface and user access points, rather than the underlying smart contracts that govern the protocol's core functionality. This distinction proves critical in many crypto exploit scenarios, where attackers frequently target websites and domain systems rather than tampering directly with onchain code.

The protocol also confirmed that its official social media accounts remain under team control throughout the ongoing investigation. According to data from DefiLlama, HypurrFi currently manages approximately $30 million in total value locked, making the domain warning particularly pressing for any users who might attempt to access their funds through the compromised interface.

HyperEVM serves as the EVM-compatible blockchain layer connected to Hyperliquid's trading ecosystem, where HypurrFi has established its lending and borrowing operations. The team has not disclosed details regarding how the suspected hijacking occurred or provided a timeline for when normal site operations might resume. Users are advised to monitor official channels for updates while avoiding any interaction with the affected domain.