BlockNews
FOLLOW ON X
  • BITCOIN
  • CRYPTO
    • ETHEREUM
    • RIPPLE XRP
    • SOLANA
    • CARDANO
    • BINANCE BNB
    • DOGECOIN
    • TRON
    • SUI
    • CHAINLINK
    • LITECOIN
  • FINANCE
  • POLITICS
  • MEMECOINS
  • NFT
  • OPINION
No Result
View All Result
BlockNews
  • BITCOIN
  • CRYPTO
    • ETHEREUM
    • RIPPLE XRP
    • SOLANA
    • CARDANO
    • BINANCE BNB
    • DOGECOIN
    • TRON
    • SUI
    • CHAINLINK
    • LITECOIN
  • FINANCE
  • POLITICS
  • MEMECOINS
  • NFT
  • OPINION
No Result
View All Result
BlockNews
Home CRYPTO

Attacker Hijacks Tornado Cash Governance Via Malicious Proposal

BlockNews Team by BlockNews Team
May 24, 2023
in CRYPTO, FINANCE, MEDIA, SOCIAL
Share on XShare in TelegramShare on Reddit
  • An attacker hijacks the Tornado Cash governance system through a malicious proposal.
  • This allowed the fraudster total control over Tornado Cash governance allowing them to withdraw all of the locked votes.
  • The attacker then drained all of the tokens in the governance contract and brick the router.

In a shocking cause of events, tornado cash, a decentralized protocol giving anonymity to Ethereum Transactions (ETH), has become a casualty of a bold attack. On May 20 at 3:25 ET, an unsuspected attacker cunningly and in a well-orchestrated attempt exploited the governance system’s vulnerability and successfully hijacked the protocol’s Tornado Cash governance through a malicious proposal. 

This unusual act has since jeopardized users’ privacy and exposed the flaws in Tornado Cash’s governance systems. The question remains, “How did this attacker gain accessibility to the systems?” Discover the details of this challenging process and its potential effects on the company.

The Attack and Modus Operandi

Reports indicate that the attacker reached out to the Tornado Cash Community with an impressive proposal that contained unnoticeable malicious clauses. 

As explained by @samczsun in a tweet:

“Once voters passed the proposal, the attacker simply used the emergency-stop function to update the proposal logic to grant themselves the fake votes.” 

This proposal reportedly contained carefully crafted elements that made it look beneficial and legitimate to the Governance of the Tornado Cash Community. On looking into this proposal and the underlying benefits to their community, they voted in favor of it since it contained promises of enhanced security measures, advanced functionalities, and extra incentives to the community users. 

This ignorant voting subsequently granted the authority to the attacker to manipulate the funds from the protocol since he had complete control of the cash governance, leading to financial losses and compromising user trust in the system. By the time people realized the attacker “simply withdrew 10,000 votes as TORN and sold it all,” explained  @samczsun.

Implications and Cause of Fear

With complete control over the governance cash system by May 21, the attacker was in complete control and would inflict massive losses. The attacker could drain all tokens in the contract, brick the router, withdraw all locked votes, and compromise user privacy. This is a frustrating event for the Tornado Cash Governance systems since user privacy remains one of the foundations of Tornado Cash, and access to the information by the third party jeopardizes the principles of the protocol.

In response to the events, an active community member named Mr. Tornadosaurus Hex indicated that all funds in the Governance were compromised and invited all members to withdraw all their funds locked in the governance system, as shown in the message below.

Through these calls, it was clear that members were grabbing to revert the alterations and calling them to withdraw their funds. These calls by Mr. Tornadosaurus were uncertain since the attacker had gained complete control of the mixer’s Governance. 

As things unfolded and the members grabbed the opportunity to withdraw the funds, the attacker again reached out with a new message. The attacker had a new proposal to potentially restore the state of Governance with hints that the government would be given back to their control, as posted by Mr. Tornadosaurus in the Tornado Cash Forums, as shown below.

This showed a grim optimism that the attackers would have their Governance back, but others speculate it is a move to pump the TORN token’s price before cashing out. This report closely monitors the sequence of events to unfold the state of Tornado Cash Community as members grabble to keep their assets safe.  

Disclaimer: BlockNews provides independent reporting on crypto, blockchain, and digital finance. All content is for informational purposes only and does not constitute financial advice. Readers should do their own research before making investment decisions. Some articles may use AI tools to assist in drafting, but every piece is reviewed and edited by our editorial team of experienced crypto writers and analysts before publication.
Tags: ethethereumHackertornado cash
TweetShareShare
BlockNews Team

BlockNews Team

DON'T MISS THESE! HOT OFF THE PRESS

Jupiter Rebound Accelerates as Network Activity Jumps – Here Is Why Spot Selling May Cap the Rally
CRYPTO

Jupiter Rebound Accelerates as Network Activity Jumps – Here Is Why Spot Selling May Cap the Rally

March 1, 2026
Hyperliquid Crypto Jumps 20% From $25 Support – Here Is Why $38 Could Be Next
CRYPTO

Hyperliquid Crypto Jumps 20% From $25 Support – Here Is Why $38 Could Be Next

March 1, 2026
Bittensor TAO Rides AI Wave After NVIDIA Earnings – Here Is Why Supply Shock Talk Is Growing
CRYPTO

Bittensor TAO Rides AI Wave After NVIDIA Earnings – Here Is Why Supply Shock Talk Is Growing

March 1, 2026
Institutional Wallet Moves Shake Up DeFi – Here Is What’s Next for Uniswap and AAVE
CRYPTO

Institutional Wallet Moves Shake Up DeFi – Here Is What’s Next for Uniswap and AAVE

March 1, 2026
Cardano Sees $80M Inflows Amid Price Weakness – Here Is What It Means for ADA
CARDANO

Cardano Sees $80M Inflows Amid Price Weakness – Here Is What It Means for ADA

March 1, 2026
Solana Crypto Faces Heavy Resistance at $89 – Here Is Why the Next Move Could Target $110 or Slide to $60
CRYPTO

Solana Crypto Faces Heavy Resistance at $89 – Here Is Why the Next Move Could Target $110 or Slide to $60

March 1, 2026
Load More

Related News

Jupiter Rebound Accelerates as Network Activity Jumps – Here Is Why Spot Selling May Cap the Rally

Jupiter Rebound Accelerates as Network Activity Jumps – Here Is Why Spot Selling May Cap the Rally

March 1, 2026
Hyperliquid Crypto Jumps 20% From $25 Support – Here Is Why $38 Could Be Next

Hyperliquid Crypto Jumps 20% From $25 Support – Here Is Why $38 Could Be Next

March 1, 2026
Bittensor TAO Rides AI Wave After NVIDIA Earnings – Here Is Why Supply Shock Talk Is Growing

Bittensor TAO Rides AI Wave After NVIDIA Earnings – Here Is Why Supply Shock Talk Is Growing

March 1, 2026
Institutional Wallet Moves Shake Up DeFi – Here Is What’s Next for Uniswap and AAVE

Institutional Wallet Moves Shake Up DeFi – Here Is What’s Next for Uniswap and AAVE

March 1, 2026
Hedera Patent Boost vs Price Pressure – Here Is Why $0.10 Is the Line in the Sand

Hedera Patent Boost vs Price Pressure – Here Is Why $0.10 Is the Line in the Sand

March 1, 2026
Twitter Telegram Threads

BLOCKNEWS.COM

BlockNews is your premier source for real-time cryptocurrency, blockchain, political and financial market news.

Stay ahead of the herd with BlockNews

RESOURCES

  • About Us
  • Contact Us
  • Editorial Policies
  • Terms and Conditions
  • Privacy Policy
  • Sitemap

DISCLOSURES AND POLICIES

BlockNews provides independent reporting on crypto, blockchain, and digital finance. Content is for informational purposes only and does not constitute financial advice. Sponsored material is always disclosed. By using this site, you agree to our Terms and Conditions and Privacy Policy.

© 2025 BlockNews

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • HOME
  • BITCOIN
  • CRYPTO
    • ETHEREUM
    • RIPPLE XRP
    • SOLANA
    • CARDANO
    • BINANCE BNB
    • DOGECOIN
    • TRON
    • LITECOIN
    • CHAINLINK
    • SUI
  • MEMECOINS
  • POLITICS
  • FINANCE
  • NFT
  • DEFI
  • GUIDES

© 2025 BlockNews