Token Of Power Governance Exploit Drains $1.58 Million In WETH, TRM Says

bitcoinistPublicado em 2026-06-14Última atualização em 2026-06-14

Resumo

Blockchain intelligence firm TRM Labs reports a governance exploit against the Token of Power protocol, resulting in a loss of approximately $1.58 million in WETH. The attacker exploited a missing timelock in the protocol's Aragon DAO setup, allowing them to propose, vote on, and execute a malicious action within a single block. The attacker funded the operation with 662 ETH from Tornado Cash, purchased enough TOP tokens to gain majority voting power, minted 10 billion new TOP tokens, and swapped them for WETH via a Balancer pool before moving funds back through Tornado Cash. The incident underscores that governance design is a critical security risk in DeFi, where parameters like timelocks provide essential reaction time. It also highlights how mixers and liquidity pools can be utilized in exploits without being directly compromised. Observers are now watching for any movement of the stolen funds and further remediation details from involved parties. This event is part of a broader shift in crypto, emphasizing the importance of underlying infrastructure, security, and governance alongside market movements.

Blockchain intelligence firm TRM Labs has detailed a governance takeover exploit against the Token of Power protocol that drained approximately $1.58 million in WETH.

According to TRM’s analysis, the attacker exploited a weakness in the protocol’s Aragon DAO setup: the absence of a timelock. That allowed the attacker to propose, vote on, and execute a malicious governance action in a single block.

The attacker reportedly funded the operation with 662 ETH withdrawn from Tornado Cash, purchased enough TOP tokens to gain majority voting power, minted 10 billion new TOP, and swapped those tokens for WETH through a Balancer pool before routing funds back through Tornado Cash.

Why Timelocks Matter

The exploit is a clear example of how governance design can become a direct security risk. Token voting can look decentralized on paper, but if a malicious actor can quickly buy voting power and execute changes without delay, the governance system can become an attack surface.

Timelocks are meant to give users, developers, and security teams time to react before a proposal becomes executable. Without that delay, a hostile vote can become a drain before anyone can stop it.

Why This Matters

For DeFi users, the story is a reminder that smart-contract risk is not limited to code bugs. Governance parameters, treasury controls, and voting thresholds can be just as important.

It also highlights how mixers and liquidity pools can be used around an exploit without being the exploited protocol themselves.

What To Watch Next

The next thing to watch is whether stolen funds move again and whether the protocol, Aragon, or affected liquidity providers publish further remediation details.

The article must not say Tornado Cash itself was hacked.

Market Context

For Bitcoinist, the story sits inside a wider shift in crypto where infrastructure, security, governance, and token utility are becoming just as important as short-term price action. Traders still care about momentum, but they also need to understand the systems, risks, and product changes behind the headlines.

The useful angle is not to overstate the development, but to explain why it belongs in the daily market conversation. Strong crypto stories increasingly come from protocol updates, official notices, security reports, court records, and on-chain data rather than recycled commentary alone.

The editorial takeaway should stay grounded: the source confirms a meaningful crypto development, but the implications depend on adoption, follow-up disclosures, or further on-chain evidence. That balance keeps the piece useful without leaning on hype or unsupported claims.

From an editorial standpoint, this makes the story worth covering as part of the day’s broader crypto operating environment rather than as a standalone hype cycle. The strongest version of the piece should stay close to the verified source, explain the practical risk or opportunity, and leave room for follow-up once more official data, filings, or project statements are available.

This report is based on information from TRM Labs’ on-chain security report.

Perguntas relacionadas

QWhat vulnerability did the attacker exploit in the Token of Power protocol to drain $1.58 million?

AThe attacker exploited a weakness in the protocol's Aragon DAO setup: the absence of a timelock mechanism. This allowed them to propose, vote on, and execute a malicious governance action in a single block.

QAccording to the article, why are timelocks important in governance design?

ATimelocks are important because they give users, developers, and security teams time to review and react to a governance proposal before it becomes executable. Without this delay, a hostile actor can execute a damaging action before anyone can intervene.

QHow did the attacker fund the operation and cash out the stolen assets according to TRM's analysis?

AThe attacker funded the operation with 662 ETH withdrawn from Tornado Cash. They then purchased enough TOP tokens to gain majority voting power, minted 10 billion new TOP tokens, and swapped those tokens for WETH through a Balancer pool before routing the funds back through Tornado Cash.

QWhat key risk for DeFi users does this exploit highlight beyond smart-contract bugs?

AIt highlights that governance parameters, treasury controls, and voting thresholds can be just as critical a security risk as smart-contract code bugs. Poorly designed governance systems can themselves become an attack surface.

QWhat does the article suggest as the 'useful angle' for covering such developments in the crypto market?

AThe useful angle is to explain why the event belongs in the daily market conversation by focusing on protocol infrastructure, security, and governance, rather than overstating it or relying on hype. Coverage should stay close to verified sources, explain the practical risk or opportunity, and leave room for follow-up information.

Leituras Relacionadas

What's the Connection Between Pinduoduo's Huang Zheng and Blockchain?

This text explores the unexpected connection between Pinduoduo founder Colin Huang and blockchain, as suggested in his article *Turning Capitalism Upside Down*. Huang argues Pinduoduo's core business is about managing "uncertainty." He posits that wealth flows to the rich because they absorb life's uncertainties (e.g., illness, job loss) that devastate the poor, who pay a premium for certainty through insurance or stable prices. Pinduoduo's model attempts a "reverse insurance": by aggregating consumer demand via group-buying and flash sales, it creates a large, predictable order for manufacturers. This certainty allows factories to remove risk premiums, passing savings back as lower prices, thus partially reversing the wealth flow. The key obstacle, Huang notes, is that an individual's buying intent is an unreliable promise. He then asks if blockchain is the natural solution for this "reverse insurance." The text elaborates that blockchain, through smart contracts with binding deposits, could transform casual intent into a costly-to-break, enforceable commitment. This replaces interpersonal trust with coded rules, making promises credible, pricable, and resistant to fraud. Finally, the author draws a parallel to Bitcoin, framing two paths to creating certainty: the "Pinduoduo path" of aggregating decentralized will into scale, and the "Bitcoin path" of locking rules into immutable code. Both sacrifice something—personal freedom or system flexibility—to manufacture trust and predictability.

链捕手Há 9m

What's the Connection Between Pinduoduo's Huang Zheng and Blockchain?

链捕手Há 9m

The Storage Magnate Who Conquered a Trillion-Dollar Kingdom, Yet Ultimately Could Not Become the Richest

**Summary:** "The Memory Magnate Who Built a Trillion-Dollar Empire, Yet Never Became the Richest" explores the journey of Zhu Yiming, founder of GigaDevice (603986) and co-founder of the soon-to-IPO ChangXin Memory Technologies (CXMT). The article positions GigaDevice, a fabless chip designer now valued at ~¥340 billion, as a prequel to the massive IDM (Integrated Device Manufacturer) venture, CXMT. Starting in 2005 with minimal capital, Zhu strategically "picked up the pieces" by focusing on niche markets like NOR Flash and microcontrollers (MCUs), areas major players were exiting. This allowed GigaDevice to grow into a diversified semiconductor company, maintaining robust profitability even during industry downturns by controlling costs. However, the piece argues that in the highly cyclical and capital-intensive memory chip industry, the fabless model has limits. True resilience and scale require the ability for "counter-cyclical expansion" – investing heavily during downturns – a tactic only possible for IDMs like Samsung or SK Hynix. This insight led Zhu to partner with the Hefei city government in 2016 to establish CXMT, an IDM focused on DRAM. Zhu's symbolic moves, like forfeiting salary and diluting his equity, were crucial in securing the massive state and bank funding needed. CXMT's equipment base is now valued even higher than that of BYD's vast auto manufacturing empire. Despite the potential for CXMT to reach a market cap of ¥1-2 trillion upon its IPO, Zhu's indirect stake in both companies is estimated below 3%, placing his personal wealth far below that of China's top billionaires. The article concludes that his strategic vision built a trillion-yuan memory landscape, but the capital structure necessary to achieve it precluded a personal fortune of similar scale.

marsbitHá 16m

The Storage Magnate Who Conquered a Trillion-Dollar Kingdom, Yet Ultimately Could Not Become the Richest

marsbitHá 16m

XRP Ledger Daily Fees Drop Below $400 As Network Activity Question Returns

The XRP Ledger is drawing attention as daily network fees have fallen below $400. While low fees align with XRPL's design for affordable transactions and are often seen as a strength, the metric can also serve as an indicator of network demand and paid transaction volume. This data point of around $3,100 in weekly fee burn highlights the stark contrast with higher-fee chains like Ethereum and Bitcoin. The development fuels an ongoing debate. Proponents view low fees as a sign of efficiency and accessibility, while critics may question if the network is generating sufficient high-value activity relative to its market cap and payments-focused narrative. The article cautions against overstating the finding, noting a single low-fee day does not signify network failure. It instead adds context to discussions about XRPL's usage, especially alongside Ripple's broader initiatives in stablecoins (RLUSD), AI payments, and enterprise infrastructure. The report recommends monitoring for a fee rebound, checking transaction counts for a fuller picture, and confirming the trend via native explorers like Bithomp. It frames the story within a larger market shift where on-chain data, protocol updates, and infrastructure developments are becoming crucial alongside price action. The editorial stance is to present the verified data, explain its significance for assessing network activity, and avoid hype, positioning it as part of the daily crypto conversation.

bitcoinistHá 4h

XRP Ledger Daily Fees Drop Below $400 As Network Activity Question Returns

bitcoinistHá 4h

Trading

Spot
Futuros
活动图片