Malicious proposal leads to Tornado Cash governance hijack.

TL;DR Summary
An attacker gained full control of Tornado Cash governance through a malicious proposal, allowing them to withdraw all locked votes, drain all tokens in the governance contract, and brick the router. The attack highlights the importance of vetting proposal descriptions and logic. Tornado Cash's community developer confirmed the attack and requested all members to withdraw their funds locked in governance. The team is searching for Solidity developers to help save the protocol from extinction. A former Tornado Cash developer is reportedly building a new crypto mixing service from scratch to address the critical flaw existing in Tornado Cash.
Reading Insights
Total Reads
0
Unique Readers
0
Time Saved
2 min
vs 3 min read
Condensed
79%
468 → 98 words
Want the full story? Read the original article
Read on Cointelegraph