{"investigation":{"slug":"defi-governance-attack-wave-2026","entity_name":"DeFi Governance Attack Wave 2026","trust_score":0,"severity_base":null,"score_modifier":-10,"confidence":0.85,"status":"published","content_type":"investigation","summary":"Between June and August 2026, at least seven DeFi protocols and DAOs across Ethereum, Solana, and Base suffered governance attacks in which attackers accumulated or borrowed voting tokens to pass malicious proposals, draining approximately $22 million to $30 million in total. The affected protocols include BonkDAO, Term Finance, Token of Power, BarnBridge SMART Yield, Panther Protocol, Unicly, and others. The attacks exploited structurally low governance participation, insufficient quorum thresholds, absent or ineffective timelocks, and legacy token approvals — rather than smart-contract code bugs.","sections":[{"content":"A wave of governance attacks targeting decentralized autonomous organizations and DeFi protocols emerged in mid-2026. Security firm Blockaid tracked at least seven such incidents between June 9 and August 6, 2026, across Ethereum, Solana, and Base. DefiLlama classified five incidents within this period as governance attacks with a combined value of approximately $25.1 million, while Blockaid's broader count places total losses near $22 million across seven protocols. These attacks did not require exploiting code vulnerabilities in the traditional sense; instead, attackers used the protocols' own governance mechanisms — token-weighted voting, proposal submission, and on-chain execution — to authorize malicious transfers and upgrades. The common enabling conditions included: governance tokens with very low circulating supply or participation, quorum thresholds set low enough that a single actor could meet them cheaply, no meaningful timelock between proposal passage and execution, and legacy token approvals still live years after initial user deposits.","heading":"Overview and Pattern","sources":[{"url":"https://blockaid.io/blog/governance-takeovers-how-22m-was-drained-and-how-to-stop-them","name":"Governance Takeovers: How $22M Was Drained and How to Stop Them — Blockaid Blog","type":"research","credibility":2},{"url":"https://mpost.io/august-2026s-exploit-wave-governance-failures-protocol-bugs-and-a-widening-attack-surface/","name":"August 2026's Exploit Wave: Governance Failures, Protocol Bugs, And A Widening Attack Surface — Metaverse Post","type":"news_article","credibility":2}],"severity":"critical"},{"content":"On July 6–7, 2026, BonkDAO — the governance DAO for the Solana-based BONK memecoin — suffered the largest single governance attack of the wave. According to CoinDesk reporting, an attacker spent approximately $4.4 million to purchase just over 1 percent of BONK's circulating supply, which was sufficient to meet the DAO's 1-percent quorum threshold. With no other meaningful voter participation, the attacker's wallets controlled roughly 99.878 percent of votes cast. The submitted proposal, reportedly disguised as a reward for yes-voters, contained a hidden instruction to transfer approximately 4.43 trillion BONK tokens — valued at around $20 million at the time — from the treasury to attacker-controlled wallets. The proposal passed and executed instantly, with no timelock in place. BonkDAO confirmed the attack and stated it was coordinating with exchanges, the Solana Foundation, and law enforcement to attempt asset recovery. The BONK token fell between 8 and 10 percent following the announcement. No criminal charges or recovery outcomes have been publicly reported as of the time of this writing.","heading":"Incident: BonkDAO ($20 Million, July 2026)","sources":[{"url":"https://www.coindesk.com/markets/2026/07/07/bonk-faces-usd20-million-treasury-drain-after-attacker-spends-usd4-million-to-pass-malicious-proposal","name":"BONK faces $20 million treasury drain after attacker spends $4 million to pass malicious proposal — CoinDesk","type":"news_article","credibility":2},{"url":"https://news.bitcoin.com/bonkdao-treasury-loses-20m-in-malicious-governance-attack-bonk-slides-8/","name":"BonkDAO Treasury Loses $20M in Malicious Governance Attack, BONK Slides 8% — Bitcoin.com News","type":"news_article","credibility":2},{"url":"https://www.cryptotimes.io/2026/07/07/bonkdao-hit-by-20m-treasury-drain-in-governance-attack-bonk-slides/","name":"BonkDAO Hit by $20M Treasury Drain in Governance Attack — CryptoTimes","type":"news_article","credibility":2},{"url":"https://crypto.news/what-is-a-governance-attack-how-bonkdao-lost-20m-in-a-single-vote/","name":"What is a governance attack? How BonkDAO lost $20M in a single vote — crypto.news","type":"news_article","credibility":2}],"severity":"critical"},{"content":"On August 23, 2026, Term Finance — an Ethereum-based fixed-rate lending protocol — suffered an estimated $8.5 million loss through a governance attack on its strategy vaults. According to The Block and CoinDesk reporting, the attacker purchased approximately 0.4852 tmvETH for roughly 0.5 ETH on August 17, which was enough to secure around 90.66 percent of all staked vault shares and therefore voting power in the Ethereum Meta Vault. At the point of execution, the attacker held 100 percent of voting power in four out of five USDC strategy vaults and approximately 91 percent in the Meta Vault. The attacker passed malicious proposals granting control over vault strategies, then withdrew approximately 2,843 ETH (valued at roughly $6.87 million) and 1.68 million USDC. The USDC was subsequently swapped for approximately 1.68 million DAI. PeckShield reported the attacker's initial funding of 2 ETH was sourced through Tornado Cash. According to reporting, Term vault governance had previously featured a seven-day timelock with LP veto rights, but those protections had been removed or had lapsed. Term Labs responded by permanently shutting down the affected Meta Vaults, revoking DAO governance roles, and preserving user withdrawal access. Core lending markets were stated to be unaffected. No recovery of funds has been publicly confirmed.","heading":"Incident: Term Finance ($8.5 Million, August 2026)","sources":[{"url":"https://www.theblock.co/news/defi/2026-08-23-defi-lending-protocol-term-finance-loses-an-estimated-8-5-million-to-governance-exploit-412543","name":"DeFi lending protocol Term Finance loses an estimated $8.5 million to governance exploit — The Block","type":"news_article","credibility":1},{"url":"https://www.coindesk.com/markets/2026/08/24/ethereum-lending-app-term-finance-loses-usd8-5-million-after-attacker-buys-voting-power","name":"Ethereum lending app Term Finance loses $8.5 million after attacker buys voting power — CoinDesk","type":"news_article","credibility":2},{"url":"https://www.cryptotimes.io/2026/08/23/term-finance-loses-8-5m-after-attacker-hijacks-dao-governance-vote/","name":"Term Finance Loses $8.5M After Attacker Hijacks DAO Governance Vote — CryptoTimes","type":"news_article","credibility":2},{"url":"https://www.spotedcrypto.com/term-finance-governance-exploit-2026/","name":"Term Finance $8.5M Governance Exploit Explained (2026) — SpotedCrypto","type":"news_article","credibility":3}],"severity":"critical"},{"content":"On June 9–10, 2026, Token of Power (TOP), an Aragon-based DAO on Ethereum, suffered the first documented governance attack of the 2026 wave. TOP had a total supply of only 16,384 tokens. According to multiple reports including Cryptopolitan and AMBCrypto, an attacker funded through Tornado Cash acquired 8,192.000001 TOP — just over 50 percent of supply — at relatively low cost, meeting the threshold required to pass governance proposals unilaterally. The attacker exploited the absence of any timelock in TOP's Aragon Voting app instance, creating a proposal, voting it through, and executing it within a single transaction. The proposal minted 10 billion new TOP tokens directly to the attacker, who then dumped them into a Balancer V1 liquidity pool, extracting approximately 944.2 WETH (approximately $1.58–1.59 million at prevailing prices). No response from a TOP team or treasury recovery has been publicly documented, consistent with the protocol appearing to be a low-activity deployment.","heading":"Incident: Token of Power / TOP ($1.58 Million, June 2026)","sources":[{"url":"https://blockaid.io/blog/governance-takeovers-how-22m-was-drained-and-how-to-stop-them","name":"Governance Takeovers: How $22M Was Drained and How to Stop Them — Blockaid Blog","type":"research","credibility":2},{"url":"https://www.cryptopolitan.com/token-of-power-top-aragon-dao-exploit/","name":"Attacker cleans out $1.6M from Token of Power (TOP) in Aragon DAO exploit — Cryptopolitan","type":"news_article","credibility":2},{"url":"https://www.cryptotimes.io/2026/06/10/one-vote-1-58m-gone-top-token-hit-by-alleged-governance-attack/","name":"One Vote, $1.58M Gone: TOP Token Hit by Alleged Governance Attack — CryptoTimes","type":"news_article","credibility":2},{"url":"https://ambcrypto.com/governance-takeover-lets-attacker-mint-10b-top-tokens-in-1-5m-exploit/","name":"Governance takeover lets attacker mint 10B TOP tokens in $1.5m exploit — AMBCrypto","type":"news_article","credibility":2}],"severity":"high"},{"content":"On July 15, 2026, the BarnBridge SMART Yield cUSDC product on Ethereum suffered a governance attack resulting in the theft of approximately $776,000 in USDC. According to BlockSec reporting, the attacker deposited 320,000 BOND governance tokens into BarnBridge's staking contract around July 6 to acquire voting power. The attacker then submitted a malicious governance proposal that updated the controller address of the CompoundProvider contract to a malicious contract address under the attacker's control. Because numerous users had granted the original BarnBridge contracts permission to move their USDC years earlier — and those approvals remained live — the attacker's upgraded malicious contract could sweep funds from approximately 50 wallets without requiring any new user signatures. The root cause was an abandoned governance contract retaining administrative authority over live user-facing protocol configuration. GoPlus Security confirmed the attack on-chain. BarnBridge had not been actively maintained, making the lingering governance authority a latent vulnerability.","heading":"Incident: BarnBridge SMART Yield (~$776,000, July 2026)","sources":[{"url":"https://blocksec.com/blog/web3-security-barnbridge-defituna-exploits","name":"~$1.35M Lost: BarnBridge, DeFiTuna | BlockSec Weekly","type":"research","credibility":2},{"url":"https://www.kucoin.com/news/flash/barnbridge-smart-yield-protocol-hit-by-governance-attack-suffers-776-000-loss","name":"BarnBridge SMART Yield Protocol Hit by Governance Attack, Suffers $776,000 Loss — KuCoin","type":"news_article","credibility":2},{"url":"https://phemex.com/news/article/barnbridge-governance-attack-results-in-776000-loss-93165","name":"BarnBridge Governance Attack Causes $776,000 Loss — Phemex","type":"news_article","credibility":2}],"severity":"high"},{"content":"On August 6, 2026, Panther Protocol's Base chain deployment was drained of 5.12 million ZKP tokens and 0.12 ETH in a governance attack routed through Reality.eth, an optimistic oracle used for on-chain governance. According to CryptoTimes reporting and Panther Foundation statements, the attacker submitted a governance proposal titled 'zkp-reexploit' that would upgrade ZKP proxy contracts on Base to a drainer implementation. The attacker then posted a 'yes' answer to the Reality.eth question backed by a 0.5 ETH bond. Because no honest party counter-bonded a 'no' response within the 12-hour challenge window, and an 8-hour cooldown also passed uncontested, the oracle finalized the malicious answer and triggered execution. A critical configuration gap enabled the attack: the protection that automatically disables the Reality.eth module when no active DAO proposal is live had never been enabled on the Base deployment. Panther Foundation contributor Joris_ZKP stated that the Base deployment was 'not yet in production' and that no user funds were compromised — the loss was confined to protocol-owned token supply on that chain. The nominal USD value of the drained ZKP was approximately $17,900 at the time of the attack. The development team restored affected proxy implementations and reviewed equivalent protections on other chain deployments.","heading":"Incident: Panther Protocol (~$17,900 in token value, August 2026)","sources":[{"url":"https://www.cryptotimes.io/2026/08/07/panther-protocol-hit-by-governance-attack-5-12m-zkp-drained-on-base/","name":"Panther Protocol Hit by Governance Attack, 5.12M ZKP Drained on Base — CryptoTimes","type":"news_article","credibility":2},{"url":"https://blockaid.io/blog/governance-takeovers-how-22m-was-drained-and-how-to-stop-them","name":"Governance Takeovers: How $22M Was Drained and How to Stop Them — Blockaid Blog","type":"research","credibility":2}],"severity":"medium"},{"content":"Unicly, an Ethereum-based protocol for fractionalized NFT liquidity, was identified by Blockaid as one of the seven governance attack incidents in the 2026 wave. According to Blockaid's summary, the attack against Unicly differed from the token-accumulation model used in other incidents: the attacker's voting power was flash-borrowed for a single block rather than purchased and held. The specific dollar amount drained from Unicly in this incident has not been independently confirmed in available public sources. The Blockaid report groups Unicly within the broader $22 million tally across all seven incidents, but does not break out Unicly's loss figure separately in available reporting.","heading":"Incident: Unicly (Flash-Loan Governance, 2026)","sources":[{"url":"https://blockaid.io/blog/governance-takeovers-how-22m-was-drained-and-how-to-stop-them","name":"Governance Takeovers: How $22M Was Drained and How to Stop Them — Blockaid Blog","type":"research","credibility":2}],"severity":"medium"},{"content":"Across documented incidents, three primary attack vectors emerged. First, cheap majority acquisition: when a governance token has very low circulating supply or very low participation, an attacker can acquire a controlling stake at a cost far below the value of assets under governance control. In the BonkDAO case, approximately $4.4 million purchased access to $20 million in treasury funds — a 4.5x return on capital. In the Term Finance case, a cost of approximately 0.5 ETH unlocked access to vaults containing $8.5 million. Second, absence of timelocks or expired timelocks: several of the attacked protocols had no delay between proposal passage and execution, or had previously removed timelock protections. Term Finance reportedly had a seven-day timelock with LP veto rights at an earlier stage, but it was not in place at the time of the attack. The Token of Power and BonkDAO attacks both executed instantly. Timelocks create a window during which monitors or emergency multisigs can intervene, but as noted by w3rooster.com, a timelock does not prevent an attack — it only creates time to respond. Third, legacy token approvals and abandoned governance authority: BarnBridge SMART Yield exploited the combination of an active governance contract controlling a deprecated product and years-old user token approvals that had never been revoked. No technical code exploit was required; the governance upgrade path itself was the attack surface. The Panther Protocol incident illustrates a fourth variant: governance through an optimistic oracle requiring no token ownership, only the absence of a challenge during a defined window.","heading":"Attack Mechanics and Structural Vulnerabilities","sources":[{"url":"https://blockaid.io/blog/governance-takeovers-how-22m-was-drained-and-how-to-stop-them","name":"Governance Takeovers: How $22M Was Drained and How to Stop Them — Blockaid Blog","type":"research","credibility":2},{"url":"https://w3rooster.com/when-governance-becomes-the-attack-surface-what-the-8-5m-term-finance-exploit-reveals-about-defi-security/","name":"When Governance Becomes the Attack Surface — W3Rooster","type":"research","credibility":3},{"url":"https://amlcrypto.io/blog/barn-bridge-exploit","name":"BarnBridge Hack: Governance Attack and $776K Theft — AMLCrypto","type":"news_article","credibility":2}],"severity":"high"},{"content":"Following the wave of attacks, several protective recommendations were widely circulated and some protocols enacted immediate mitigations. Blockaid's post-incident analysis recommended: raising quorum thresholds so that the cost of acquiring a majority exceeds or is proportional to the value of governed assets; implementing snapshot-based voting that uses balances from a fixed past block rather than allowing tokens acquired moments before a vote to count, which also prevents flash-loan governance attacks; enforcing execution timelocks with emergency pause authority held by a separate multisig; separating dangerous governance powers (token minting, treasury access, contract upgrades) into distinct proposal tiers requiring different approval levels; and deploying independent signing verification services. Term Labs revoked DAO governance roles on affected vaults and permanently shut them down, while preserving user withdrawal access to underlying lending markets. Panther Protocol restored proxy implementations on Base and reviewed its Reality.eth module configuration across other deployments. Industry commentators including security firms Blockaid and GoPlus, as well as The Block and CoinDesk, highlighted the broader pattern and called for governance audits across active DAOs. No new legislation or regulatory guidance specifically addressing governance attacks was publicly enacted in the period covered by available reporting.","heading":"Protective Measures Proposed and Enacted","sources":[{"url":"https://blockaid.io/blog/governance-takeovers-how-22m-was-drained-and-how-to-stop-them","name":"Governance Takeovers: How $22M Was Drained and How to Stop Them — Blockaid Blog","type":"research","credibility":2},{"url":"https://en.cryptonomist.ch/2026/08/23/term-labs-governance-exploit/","name":"Term Labs Governance Exploit Drains $8.5M From Vaults — Cryptonomist","type":"news_article","credibility":2},{"url":"https://shattered.io/defi-exploits-q2-record-2026/","name":"DeFi Exploits Hit Q2 Record: 99 Hacks, $746M Lost 2026 — Shattered.io","type":"research","credibility":2}],"severity":"medium"},{"content":"The governance attack wave occurred within a markedly severe year for DeFi security overall. According to DefiLlama, more than 140 exploits totaling over $1 billion in stolen funds were recorded in 2026 year-to-date as of mid-year reporting. April 2026 was identified as the single worst month in DeFi history by exploit volume, with more than 30 separate attacks netting attackers approximately $635 million, driven primarily by bridge and large-protocol attacks including the Drift Protocol incident ($285 million, involving multisig compromise via durable nonce exploitation). Governance attacks represent a distinct and growing subcategory: they require no code vulnerability, pass through fully audited smart contracts without triggering any anomalous execution path, and are difficult for automated monitoring to distinguish from legitimate governance activity until execution. DefiLlama's classification of five incidents as governance attacks with $25.1 million in combined losses places the governance subcategory as a meaningful but minority contributor to 2026's total loss figure.","heading":"Broader 2026 DeFi Exploit Context","sources":[{"url":"https://bitcoinfoundation.org/news/defi/defillama-q1-crypto-hacks/","name":"DeFi Hacks Total $169M in Q1 2026: DefiLlama — Bitcoin Foundation","type":"news_article","credibility":2},{"url":"https://shattered.io/defi-exploits-q2-record-2026/","name":"DeFi Exploits Hit Q2 Record: 99 Hacks, $746M Lost 2026 — Shattered.io","type":"research","credibility":2},{"url":"https://altfins.com/blog/defi-hacks-2026/","name":"DeFi Hacks 2026: $840M+ Lost and the Attack That Changed Everything — AltFins","type":"news_article","credibility":2}],"severity":"high"}],"timeline":[{"date":"2026-06-09","event":"Token of Power (TOP) governance attack on Ethereum: attacker acquires majority of 16,384-token supply through Tornado Cash-funded wallet, passes and executes a proposal minting 10 billion new tokens in a single transaction with no timelock, extracting approximately $1.58 million in ETH via Balancer V1.","source":"CryptoTimes / Blockaid","source_url":"https://www.cryptotimes.io/2026/06/10/one-vote-1-58m-gone-top-token-hit-by-alleged-governance-attack/"},{"date":"2026-07-06","event":"BonkDAO governance attack on Solana: attacker spends approximately $4.4 million to purchase over 1 percent of BONK supply, meeting quorum threshold and controlling ~99.878 percent of votes cast, passing a malicious proposal that transfers approximately 4.43 trillion BONK (~$20 million) from the treasury instantly.","source":"CoinDesk","source_url":"https://www.coindesk.com/markets/2026/07/07/bonk-faces-usd20-million-treasury-drain-after-attacker-spends-usd4-million-to-pass-malicious-proposal"},{"date":"2026-07-06","event":"Attacker deposits 320,000 BOND tokens into BarnBridge staking contract, acquiring voting power in preparation for the subsequent BarnBridge SMART Yield governance attack.","source":"BlockSec","source_url":"https://blocksec.com/blog/web3-security-barnbridge-defituna-exploits"},{"date":"2026-07-07","event":"BonkDAO confirms attack publicly; states coordination with exchanges, Solana Foundation, and law enforcement. BONK token falls 8–10 percent.","source":"Bitcoin.com News","source_url":"https://news.bitcoin.com/bonkdao-treasury-loses-20m-in-malicious-governance-attack-bonk-slides-8/"},{"date":"2026-07-15","event":"BarnBridge SMART Yield governance attack on Ethereum: attacker submits malicious governance proposal replacing the CompoundProvider controller with a malicious contract, sweeping approximately $776,000 from roughly 50 wallets holding legacy USDC approvals.","source":"BlockSec / KuCoin","source_url":"https://blocksec.com/blog/web3-security-barnbridge-defituna-exploits"},{"date":"2026-08-06","event":"Panther Protocol governance attack on Base: attacker exploits Reality.eth optimistic oracle with a misconfigured Base deployment, submitting malicious 'zkp-reexploit' upgrade proposal, allowing it to finalize unchallenged and draining 5.12 million ZKP (~$17,900). No user funds compromised.","source":"CryptoTimes","source_url":"https://www.cryptotimes.io/2026/08/07/panther-protocol-hit-by-governance-attack-5-12m-zkp-drained-on-base/"},{"date":"2026-08-17","event":"Term Finance attacker purchases approximately 0.4852 tmvETH for roughly 0.5 ETH, quietly accumulating approximately 90.66 percent of staked vault share voting power — six days before the attack execution.","source":"CoinDesk / SpotedCrypto","source_url":"https://www.coindesk.com/markets/2026/08/24/ethereum-lending-app-term-finance-loses-usd8-5-million-after-attacker-buys-voting-power"},{"date":"2026-08-23","event":"Term Finance governance exploit: attacker passes malicious proposals with 91–100 percent voting control across strategy vaults, withdrawing approximately 2,843 ETH and 1.68 million USDC ($8.5 million total). USDC swapped for DAI. PeckShield traces initial attacker funding to Tornado Cash.","source":"The Block / CoinDesk","source_url":"https://www.theblock.co/news/defi/2026-08-23-defi-lending-protocol-term-finance-loses-an-estimated-8-5-million-to-governance-exploit-412543"},{"date":"2026-08-24","event":"Term Labs publicly confirms the exploit, shuts down Meta Vaults permanently, revokes DAO governance roles, and states that core lending markets remain unaffected and withdrawals are preserved.","source":"Cryptonomist","source_url":"https://en.cryptonomist.ch/2026/08/23/term-labs-governance-exploit/"}],"sources_used":[{"url":"https://blockaid.io/blog/governance-takeovers-how-22m-was-drained-and-how-to-stop-them","name":"Governance Takeovers: How $22M Was Drained and How to Stop Them — Blockaid Blog","type":"research","archive_url":"https://web.archive.org/web/20260827002143/https://blockaid.io/blog/governance-takeovers-how-22m-was-drained-and-how-to-stop-them","credibility":2,"archive_timestamp":"2026-08-27T00:21:43+00:00"},{"url":"https://www.theblock.co/news/defi/2026-08-23-defi-lending-protocol-term-finance-loses-an-estimated-8-5-million-to-governance-exploit-412543","name":"DeFi lending protocol Term Finance loses an estimated $8.5 million to governance exploit — The Block","type":"news_article","archive_url":"http://web.archive.org/web/20260824065737/https://www.theblock.co/news/defi/2026-08-23-defi-lending-protocol-term-finance-loses-an-estimated-8-5-million-to-governance-exploit-412543","credibility":1,"archive_timestamp":"2026-08-24T06:57:37+00:00"},{"url":"https://www.coindesk.com/markets/2026/07/07/bonk-faces-usd20-million-treasury-drain-after-attacker-spends-usd4-million-to-pass-malicious-proposal","name":"BONK faces $20 million treasury drain after attacker spends $4 million to pass malicious proposal — CoinDesk","type":"news_article","archive_url":"http://web.archive.org/web/20260815104057/https://www.coindesk.com/markets/2026/07/07/bonk-faces-usd20-million-treasury-drain-after-attacker-spends-usd4-million-to-pass-malicious-proposal","credibility":2,"archive_timestamp":"2026-08-15T10:40:57+00:00"},{"url":"https://www.coindesk.com/markets/2026/08/24/ethereum-lending-app-term-finance-loses-usd8-5-million-after-attacker-buys-voting-power","name":"Ethereum lending app Term Finance loses $8.5 million after attacker buys voting power — CoinDesk","type":"news_article","archive_url":null,"credibility":2,"archive_timestamp":null},{"url":"https://news.bitcoin.com/bonkdao-treasury-loses-20m-in-malicious-governance-attack-bonk-slides-8/","name":"BonkDAO Treasury Loses $20M in Malicious Governance Attack, BONK Slides 8% — Bitcoin.com News","type":"news_article","archive_url":"http://web.archive.org/web/20260815104058/https://news.bitcoin.com/bonkdao-treasury-loses-20m-in-malicious-governance-attack-bonk-slides-8/","credibility":2,"archive_timestamp":"2026-08-15T10:40:58+00:00"},{"url":"https://blocksec.com/blog/web3-security-barnbridge-defituna-exploits","name":"~$1.35M Lost: BarnBridge, DeFiTuna | BlockSec Weekly","type":"research","archive_url":"http://web.archive.org/web/20260821202012/https://blocksec.com/blog/web3-security-barnbridge-defituna-exploits","credibility":2,"archive_timestamp":"2026-08-21T20:20:12+00:00"},{"url":"https://www.kucoin.com/news/flash/barnbridge-smart-yield-protocol-hit-by-governance-attack-suffers-776-000-loss","name":"BarnBridge SMART Yield Protocol Hit by Governance Attack, Suffers $776,000 Loss — KuCoin","type":"news_article","archive_url":"http://web.archive.org/web/20260727173209/https://www.kucoin.com/news/flash/barnbridge-smart-yield-protocol-hit-by-governance-attack-suffers-776-000-loss","credibility":2,"archive_timestamp":"2026-07-27T17:32:09+00:00"},{"url":"https://www.cryptotimes.io/2026/08/07/panther-protocol-hit-by-governance-attack-5-12m-zkp-drained-on-base/","name":"Panther Protocol Hit by Governance Attack, 5.12M ZKP Drained on Base — CryptoTimes","type":"news_article","archive_url":"http://web.archive.org/web/20260809055904/https://www.cryptotimes.io/2026/08/07/panther-protocol-hit-by-governance-attack-5-12m-zkp-drained-on-base/","credibility":2,"archive_timestamp":"2026-08-09T05:59:04+00:00"},{"url":"https://www.cryptotimes.io/2026/06/10/one-vote-1-58m-gone-top-token-hit-by-alleged-governance-attack/","name":"One Vote, $1.58M Gone: TOP Token Hit by Alleged Governance Attack — CryptoTimes","type":"news_article","archive_url":"http://web.archive.org/web/20260726103205/https://www.cryptotimes.io/2026/06/10/one-vote-1-58m-gone-top-token-hit-by-alleged-governance-attack/","credibility":2,"archive_timestamp":"2026-07-26T10:32:05+00:00"},{"url":"https://www.cryptopolitan.com/token-of-power-top-aragon-dao-exploit/","name":"Attacker cleans out $1.6M from Token of Power (TOP) in Aragon DAO exploit — Cryptopolitan","type":"news_article","archive_url":"http://web.archive.org/web/20260726230023/https://www.cryptopolitan.com/token-of-power-top-aragon-dao-exploit/","credibility":2,"archive_timestamp":"2026-07-26T23:00:23+00:00"},{"url":"https://www.cryptotimes.io/2026/08/23/term-finance-loses-8-5m-after-attacker-hijacks-dao-governance-vote/","name":"Term Finance Loses $8.5M After Attacker Hijacks DAO Governance Vote — CryptoTimes","type":"news_article","archive_url":"https://web.archive.org/web/20260827004153/https://www.cryptotimes.io/2026/08/23/term-finance-loses-8-5m-after-attacker-hijacks-dao-governance-vote/","credibility":2,"archive_timestamp":"2026-08-27T00:41:53+00:00"},{"url":"https://en.cryptonomist.ch/2026/08/23/term-labs-governance-exploit/","name":"Term Labs Governance Exploit Drains $8.5M From Vaults — Cryptonomist","type":"news_article","archive_url":"https://web.archive.org/web/20260827003134/https://en.cryptonomist.ch/2026/08/23/term-labs-governance-exploit/","credibility":2,"archive_timestamp":"2026-08-27T00:31:34+00:00"},{"url":"https://mpost.io/august-2026s-exploit-wave-governance-failures-protocol-bugs-and-a-widening-attack-surface/","name":"August 2026's Exploit Wave: Governance Failures, Protocol Bugs, And A Widening Attack Surface — Metaverse Post","type":"news_article","archive_url":"https://web.archive.org/web/20260827003322/https://mpost.io/august-2026s-exploit-wave-governance-failures-protocol-bugs-and-a-widening-attack-surface/","credibility":2,"archive_timestamp":"2026-08-27T00:33:22+00:00"},{"url":"https://crypto.news/what-is-a-governance-attack-how-bonkdao-lost-20m-in-a-single-vote/","name":"What is a governance attack? How BonkDAO lost $20M in a single vote — crypto.news","type":"news_article","archive_url":"http://web.archive.org/web/20260727094145/https://crypto.news/what-is-a-governance-attack-how-bonkdao-lost-20m-in-a-single-vote/","credibility":2,"archive_timestamp":"2026-07-27T09:41:45+00:00"},{"url":"https://bitcoinfoundation.org/news/defi/defillama-q1-crypto-hacks/","name":"DeFi Hacks Total $169M in Q1 2026: DefiLlama — Bitcoin Foundation","type":"news_article","archive_url":"http://web.archive.org/web/20260727085511/https://bitcoinfoundation.org/news/defi/defillama-q1-crypto-hacks/","credibility":2,"archive_timestamp":"2026-07-27T08:55:11+00:00"},{"url":"https://shattered.io/defi-exploits-q2-record-2026/","name":"DeFi Exploits Hit Q2 Record: 99 Hacks, $746M Lost 2026 — Shattered.io","type":"research","archive_url":"http://web.archive.org/web/20260825004521/https://shattered.io/defi-exploits-q2-record-2026/","credibility":2,"archive_timestamp":"2026-08-25T00:45:21+00:00"},{"url":"https://www.spotedcrypto.com/term-finance-governance-exploit-2026/","name":"Term Finance $8.5M Governance Exploit Explained (2026) — SpotedCrypto","type":"news_article","archive_url":"https://web.archive.org/web/20260827004604/https://www.spotedcrypto.com/term-finance-governance-exploit-2026/","credibility":3,"archive_timestamp":"2026-08-27T00:46:04+00:00"},{"url":"https://amlcrypto.io/blog/barn-bridge-exploit","name":"BarnBridge Hack: Governance Attack and $776K Theft — AMLCrypto","type":"news_article","archive_url":"http://web.archive.org/web/20260821201946/https://amlcrypto.io/blog/barn-bridge-exploit","credibility":2,"archive_timestamp":"2026-08-21T20:19:46+00:00"},{"url":"https://w3rooster.com/when-governance-becomes-the-attack-surface-what-the-8-5m-term-finance-exploit-reveals-about-defi-security/","name":"When Governance Becomes the Attack Surface — W3Rooster","type":"research","archive_url":"https://web.archive.org/web/20260827003623/https://w3rooster.com/when-governance-becomes-the-attack-surface-what-the-8-5m-term-finance-exploit-reveals-about-defi-security/","credibility":3,"archive_timestamp":"2026-08-27T00:36:23+00:00"},{"url":"https://altfins.com/blog/defi-hacks-2026/","name":"DeFi Hacks 2026: $840M+ Lost and the Attack That Changed Everything — AltFins","type":"news_article","archive_url":"http://web.archive.org/web/20260727045534/https://altfins.com/blog/defi-hacks-2026/","credibility":2,"archive_timestamp":"2026-07-27T04:55:34+00:00"}],"source_tags":[],"addresses":[],"reviewed":false,"reviewed_by":null,"model_used":"claude-sonnet-4-6","created_at":"2026-08-26T23:23:53.982122+00:00","updated_at":"2026-08-27T03:34:57.908+00:00"}}