BitcoinWorld Suspicious governance proposal puts $23M in Tornado Cash tokens at risk A governance proposal submitted to the Tornado Cash (TORN) protocol is suspectedBitcoinWorld Suspicious governance proposal puts $23M in Tornado Cash tokens at risk A governance proposal submitted to the Tornado Cash (TORN) protocol is suspected

Suspicious governance proposal puts $23M in Tornado Cash tokens at risk

For feedback or concerns regarding this content, please contact us at [email protected]

BitcoinWorld

Suspicious governance proposal puts $23M in Tornado Cash tokens at risk

A governance proposal submitted to the Tornado Cash (TORN) protocol is suspected of containing malicious code, potentially putting $23 million worth of the token at risk of theft. Blockchain security researcher Sergey Shemyakov reported the finding via X, urging the community to exercise caution before voting.

Unverified code and privacy tool funding raise red flags

Shemyakov noted that the proposal’s contract code remains unverified, a significant departure from standard practice in decentralized autonomous organization (DAO) governance. Typically, proposal code is publicly auditable to ensure transparency. Additionally, the proposer received initial funding through Railgun, a privacy-focused tool that obscures transaction histories, making it difficult to trace the source of funds.

The researcher explained that the proposal is structured in a way that could allow the proposer to seize control of the DAO’s governance mechanisms. While the Tornado Cash mixing pool itself remains safe, the attack appears to be aimed directly at the protocol’s governance layer, potentially enabling the theft of TORN tokens held in the DAO treasury.

Implications for DAO security and user funds

This incident highlights a growing vulnerability in decentralized governance systems. Malicious actors can exploit the often-complex proposal process to insert hidden code that, if approved, grants them administrative control. For Tornado Cash, which has already faced significant regulatory and technical challenges, this represents another threat to its operational integrity.

What users should know

The immediate risk is limited to the DAO treasury, not the mixing pools or user funds. However, if the proposal were to pass, the attacker could drain the treasury of its TORN tokens. The community is advised to reject the proposal and for the DAO to implement more rigorous code verification processes before any vote.

Conclusion

The discovery of a potentially malicious governance proposal underscores the importance of security diligence in decentralized finance. As DAOs become more common, so do targeted attacks on their governance structures. The Tornado Cash community must act swiftly to neutralize this threat and reinforce its security protocols to prevent future incidents.

FAQs

Q1: Is my Tornado Cash mixing pool safe?
Yes, the mixing pool itself is not affected. The risk is limited to the DAO treasury and governance tokens.

Q2: How can the community stop this attack?
By voting against the malicious proposal and implementing stricter code verification before any future votes.

Q3: What makes this proposal suspicious?
The contract code is unverified, and the proposer funded their address through a privacy tool, making it difficult to identify them.

This post Suspicious governance proposal puts $23M in Tornado Cash tokens at risk first appeared on BitcoinWorld.

Market Opportunity
TornadoCash Logo
TornadoCash Price(TORN)
$4.952
$4.952$4.952
+0.22%
USD
TornadoCash (TORN) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

UK crypto holders brace for FCA’s expanded regulatory reach

UK crypto holders brace for FCA’s expanded regulatory reach

The post UK crypto holders brace for FCA’s expanded regulatory reach appeared on BitcoinEthereumNews.com. British crypto holders may soon face a very different landscape as the Financial Conduct Authority (FCA) moves to expand its regulatory reach in the industry. A new consultation paper outlines how the watchdog intends to apply its rulebook to crypto firms, shaping everything from asset safeguarding to trading platform operation. According to the financial regulator, these proposals would translate into clearer protections for retail investors and stricter oversight of crypto firms. UK FCA plans Until now, UK crypto users mostly encountered the FCA through rules on promotions and anti-money laundering checks. The consultation paper goes much further. It proposes direct oversight of stablecoin issuers, custodians, and crypto-asset trading platforms (CATPs). For investors, that means the wallets, exchanges, and coins they rely on could soon be subject to the same governance and resilience standards as traditional financial institutions. The regulator has also clarified that firms need official authorization before serving customers. This condition should, in theory, reduce the risk of sudden platform failures or unclear accountability. David Geale, the FCA’s executive director of payments and digital finance, said the proposals are designed to strike a balance between innovation and protection. He explained: “We want to develop a sustainable and competitive crypto sector – balancing innovation, market integrity and trust.” Geale noted that while the rules will not eliminate investment risks, they will create consistent standards, helping consumers understand what to expect from registered firms. Why does this matter for crypto holders? The UK regulatory framework shift would provide safer custody of assets, better disclosure of risks, and clearer recourse if something goes wrong. However, the regulator was also frank in its submission, arguing that no rulebook can eliminate the volatility or inherent risks of holding digital assets. Instead, the focus is on ensuring that when consumers choose to invest, they do…
Share
BitcoinEthereumNews2025/09/17 23:52
Thinking of Buying Bittensor? Watch These TAO Price Correction Levels First

Thinking of Buying Bittensor? Watch These TAO Price Correction Levels First

Bittensor (TAO) is navigating a rough patch as broader market conditions turn shaky. TAO just took a hit along with the rest of the AI token crowd, but if you look
Share
Captainaltcoin2026/04/03 00:30
China Nabs Another Huione Group Core Member in Cambodia Extradition

China Nabs Another Huione Group Core Member in Cambodia Extradition

The post China Nabs Another Huione Group Core Member in Cambodia Extradition appeared on BitcoinEthereumNews.com. Li Xiong, a senior figure at Huione Group, an
Share
BitcoinEthereumNews2026/04/02 17:54

Newbies:Deposit $100, Get $1,000

Newbies:Deposit $100, Get $1,000Newbies:Deposit $100, Get $1,000

Plus Up to a $50 Referral Bonus