DeFi lending protocol HypurrFi issued a security warning stating that its website domain has been compromised and that it is investigating a potential domain hijacking incident. The project explicitly stated, "Do not use the hypurr.fi domain," and advised users to avoid interacting with the platform until further notice. The team also emphasized that user funds are currently safe and official social media accounts remain under control. HypurrFi runs on HyperEVM and has a total locked value of approximately $30 million. Analysis indicates that domain hijacking is a common attack method in the crypto industry. Attackers typically inject malicious code or wallet-stealing programs by controlling the front-end page. Even if the underlying smart contracts themselves are secure, users may still face asset risks.