BlockNews
FOLLOW ON X
  • BITCOIN
  • CRYPTO
    • ETHEREUM
    • RIPPLE XRP
    • SOLANA
    • CARDANO
    • BINANCE BNB
    • DOGECOIN
    • TRON
    • SUI
    • CHAINLINK
    • LITECOIN
  • FINANCE
  • POLITICS
  • MEMECOINS
  • NFT
  • OPINION
No Result
View All Result
BlockNews
  • BITCOIN
  • CRYPTO
    • ETHEREUM
    • RIPPLE XRP
    • SOLANA
    • CARDANO
    • BINANCE BNB
    • DOGECOIN
    • TRON
    • SUI
    • CHAINLINK
    • LITECOIN
  • FINANCE
  • POLITICS
  • MEMECOINS
  • NFT
  • OPINION
No Result
View All Result
BlockNews
Home CRYPTO

Attacker Hijacks Tornado Cash Governance Via Malicious Proposal

BlockNews Team by BlockNews Team
May 24, 2023
in CRYPTO, FINANCE, MEDIA, SOCIAL
Share on XShare in TelegramShare on Reddit
  • An attacker hijacks the Tornado Cash governance system through a malicious proposal.
  • This allowed the fraudster total control over Tornado Cash governance allowing them to withdraw all of the locked votes.
  • The attacker then drained all of the tokens in the governance contract and brick the router.

In a shocking cause of events, tornado cash, a decentralized protocol giving anonymity to Ethereum Transactions (ETH), has become a casualty of a bold attack. On May 20 at 3:25 ET, an unsuspected attacker cunningly and in a well-orchestrated attempt exploited the governance system’s vulnerability and successfully hijacked the protocol’s Tornado Cash governance through a malicious proposal. 

This unusual act has since jeopardized users’ privacy and exposed the flaws in Tornado Cash’s governance systems. The question remains, “How did this attacker gain accessibility to the systems?” Discover the details of this challenging process and its potential effects on the company.

The Attack and Modus Operandi

Reports indicate that the attacker reached out to the Tornado Cash Community with an impressive proposal that contained unnoticeable malicious clauses. 

As explained by @samczsun in a tweet:

“Once voters passed the proposal, the attacker simply used the emergency-stop function to update the proposal logic to grant themselves the fake votes.” 

This proposal reportedly contained carefully crafted elements that made it look beneficial and legitimate to the Governance of the Tornado Cash Community. On looking into this proposal and the underlying benefits to their community, they voted in favor of it since it contained promises of enhanced security measures, advanced functionalities, and extra incentives to the community users. 

This ignorant voting subsequently granted the authority to the attacker to manipulate the funds from the protocol since he had complete control of the cash governance, leading to financial losses and compromising user trust in the system. By the time people realized the attacker “simply withdrew 10,000 votes as TORN and sold it all,” explained  @samczsun.

Implications and Cause of Fear

With complete control over the governance cash system by May 21, the attacker was in complete control and would inflict massive losses. The attacker could drain all tokens in the contract, brick the router, withdraw all locked votes, and compromise user privacy. This is a frustrating event for the Tornado Cash Governance systems since user privacy remains one of the foundations of Tornado Cash, and access to the information by the third party jeopardizes the principles of the protocol.

In response to the events, an active community member named Mr. Tornadosaurus Hex indicated that all funds in the Governance were compromised and invited all members to withdraw all their funds locked in the governance system, as shown in the message below.

Through these calls, it was clear that members were grabbing to revert the alterations and calling them to withdraw their funds. These calls by Mr. Tornadosaurus were uncertain since the attacker had gained complete control of the mixer’s Governance. 

As things unfolded and the members grabbed the opportunity to withdraw the funds, the attacker again reached out with a new message. The attacker had a new proposal to potentially restore the state of Governance with hints that the government would be given back to their control, as posted by Mr. Tornadosaurus in the Tornado Cash Forums, as shown below.

This showed a grim optimism that the attackers would have their Governance back, but others speculate it is a move to pump the TORN token’s price before cashing out. This report closely monitors the sequence of events to unfold the state of Tornado Cash Community as members grabble to keep their assets safe.  

Disclaimer: BlockNews provides independent reporting on crypto, blockchain, and digital finance. All content is for informational purposes only and does not constitute financial advice. Readers should do their own research before making investment decisions. Some articles may use AI tools to assist in drafting, but every piece is reviewed and edited by our editorial team of experienced crypto writers and analysts before publication.
Tags: ethethereumHackertornado cash
TweetShareShare
BlockNews Team

BlockNews Team

DON'T MISS THESE! HOT OFF THE PRESS

MetaMask Card Goes Nationwide in the U.S. – Here Is Why This Crypto Launch Matters
CRYPTO

MetaMask Card Goes Nationwide in the U.S. – Here Is Why This Crypto Launch Matters

February 26, 2026
Vitalik Sells $35M in Ethereum – Here Is What It Means for ETH
CRYPTO

Vitalik Sells $35M in Ethereum – Here Is What It Means for ETH

February 26, 2026
ZachXBT Accuses Axiom Employee of Wallet Snooping – Here Is What’s Alleged
CRYPTO

ZachXBT Accuses Axiom Employee of Wallet Snooping – Here Is What’s Alleged

February 26, 2026
Crypto Volatility Is Not a Sign of Strength Right Now but of Fear Recycling Itself
BITCOIN

Crypto Volatility Is Not a Sign of Strength Right Now but of Fear Recycling Itself

February 26, 2026
Bitcoin’s Sudden Rebound Looks Impressive but Still Smells Like a Positioning Reset
BITCOIN

Bitcoin’s Sudden Rebound Looks Impressive but Still Smells Like a Positioning Reset

February 26, 2026
Why Stripe Is Right: Payments Don’t Need Faster Blockchains, They Need a Billion Transactions Per Second
CRYPTO

Why Stripe Is Right: Payments Don’t Need Faster Blockchains, They Need a Billion Transactions Per Second

February 26, 2026
Load More

Related News

MetaMask Card Goes Nationwide in the U.S. – Here Is Why This Crypto Launch Matters

MetaMask Card Goes Nationwide in the U.S. – Here Is Why This Crypto Launch Matters

February 26, 2026
Vitalik Sells $35M in Ethereum – Here Is What It Means for ETH

Vitalik Sells $35M in Ethereum – Here Is What It Means for ETH

February 26, 2026
ZachXBT Accuses Axiom Employee of Wallet Snooping – Here Is What’s Alleged

ZachXBT Accuses Axiom Employee of Wallet Snooping – Here Is What’s Alleged

February 26, 2026
Crypto Volatility Is Not a Sign of Strength Right Now but of Fear Recycling Itself

Crypto Volatility Is Not a Sign of Strength Right Now but of Fear Recycling Itself

February 26, 2026
Bitcoin’s Sudden Rebound Looks Impressive but Still Smells Like a Positioning Reset

Bitcoin’s Sudden Rebound Looks Impressive but Still Smells Like a Positioning Reset

February 26, 2026
Twitter Telegram Threads

BLOCKNEWS.COM

BlockNews is your premier source for real-time cryptocurrency, blockchain, political and financial market news.

Stay ahead of the herd with BlockNews

RESOURCES

  • About Us
  • Contact Us
  • Editorial Policies
  • Terms and Conditions
  • Privacy Policy
  • Sitemap

DISCLOSURES AND POLICIES

BlockNews provides independent reporting on crypto, blockchain, and digital finance. Content is for informational purposes only and does not constitute financial advice. Sponsored material is always disclosed. By using this site, you agree to our Terms and Conditions and Privacy Policy.

© 2025 BlockNews

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • HOME
  • BITCOIN
  • CRYPTO
    • ETHEREUM
    • RIPPLE XRP
    • SOLANA
    • CARDANO
    • BINANCE BNB
    • DOGECOIN
    • TRON
    • LITECOIN
    • CHAINLINK
    • SUI
  • MEMECOINS
  • POLITICS
  • FINANCE
  • NFT
  • DEFI
  • GUIDES

© 2025 BlockNews