{"id":22807,"date":"2023-05-21T11:00:08","date_gmt":"2023-05-21T11:00:08","guid":{"rendered":"https:\/\/coingrafter.com\/index.php\/2023\/05\/21\/hacker-seizes-tornado-cash-governance-torn-dips-25\/"},"modified":"2023-05-21T11:00:08","modified_gmt":"2023-05-21T11:00:08","slug":"hacker-seizes-tornado-cash-governance-torn-dips-25","status":"publish","type":"post","link":"https:\/\/coingrafter.com\/index.php\/2023\/05\/21\/hacker-seizes-tornado-cash-governance-torn-dips-25\/","title":{"rendered":"Hacker Seizes Tornado Cash Governance, TORN Dips 25%"},"content":{"rendered":"<p> [ad_1]<br \/>\n<\/p>\n<div>\n<p><strong>Popular crypto mixer Tornado Cash <a href=\"https:\/\/beincrypto.com\/learn\/tornado-cash\/\" target=\"_blank\" class=\"glossary-only-link\" rel=\"noopener\">TORN<\/a> token dropped by greater than 30% after a malicious participant hijacked its governance to steal over 480,000 tokens from its vault.<\/strong><\/p>\n<p>According to on-chain information, the attacker bought 379,000 tokens for 375 ETH (roughly $680,000) and nonetheless has 97,700 TORN tokens of their <a href=\"https:\/\/beincrypto.com\/learn\/crypto-wallets\/\" target=\"_blank\" class=\"glossary-only-link\" rel=\"noopener\">wallet<\/a>. Available data additionally confirmed that the hacker deposited 6,000 tokens on Bitrue. <\/p>\n<h2>How the Attack Happened<\/h2>\n<p>Interestingly, the hacker deposited their earnings from dumping TORN into the Tornado Cash mixer, in keeping with a Peckshield report.<\/p>\n<figure class=\"wp-block-image size-large\"><img decoding=\"async\" src=\"https:\/\/s32659.pcdn.co\/wp-content\/uploads\/2023\/05\/image-496-560x850.png\" alt=\"TORN BiTrue Deposits\" class=\"lazy wp-image-324274\"\/><figcaption class=\"wp-element-caption\">TORN BiTrue Deposits (Source: <a href=\"https:\/\/twitter.com\/PeckShieldAlert\/status\/1660160639837536256\/photo\/2\" target=\"_blank\" rel=\"nofollow noopener\">PeckShield<\/a>)<\/figcaption><\/figure>\n<p>Paradigm researcher Samczsun defined that the attacker\u00a0gained management\u00a0of Tornado Cash governance by making a malicious proposal. The hacker falsely claimed that the proposal used an analogous logic to an earlier proposal. <\/p>\n<p>However, unknown to the neighborhood, the attacker had added an emergency-stop perform that allowed them to replace the proposal logic to grant themselves 1.2 million votes.<\/p>\n<figure class=\"wp-block-image size-full\"><img decoding=\"async\" src=\"https:\/\/s32659.pcdn.co\/wp-content\/uploads\/2023\/05\/image-495.png\" alt=\"Tornado Cash Malicious Proposal Code\" class=\"lazy wp-image-324273\"\/><figcaption class=\"wp-element-caption\">Tornado Cash Malicious Proposal (Source: <a href=\"https:\/\/twitter.com\/samczsun\/status\/1660012961975640064\/photo\/1\" target=\"_blank\" rel=\"nofollow noopener\">Samczsun<\/a>)<\/figcaption><\/figure>\n<p>The hacker gained full management of the <a href=\"https:\/\/beincrypto.com\/learn\/decentralized-autonomous-organization\/\" target=\"_blank\" class=\"glossary-only-link\" rel=\"noopener\">DAO<\/a> as their votes have been greater than the 700,000 official votes of the <a href=\"https:\/\/beincrypto.com\/can-coin-center-overturn-ofac-tornado-cash-ban-battle-crypto-autonomy\/\" target=\"_blank\" rel=\"noopener\">OFAC-sanctioned<\/a> crypto mixer members.<\/p>\n<h2 id=\"h-what-this-means-for-tornado-cash\"><a\/>What This Means for Tornado Cash<\/h2>\n<p>According to Samczsun, the attacker\u2019s management over the protocol\u2019s governance might permit them to withdraw locked tokens, brick the router, and drain all of the tokens within the governance contract.<\/p>\n<p>However, the governance management doesn&#8217;t permit the hacker to empty particular person swimming pools. So, anybody can <a href=\"https:\/\/beincrypto.com\/hackers-continue-to-use-tornado-cash-despite-sanctions\/\" target=\"_blank\" rel=\"noopener\">still use<\/a> Tornado Cash to maneuver funds and never fear that the hacker will steal it.<\/p>\n<p>But the attacker can entry Tornado Cash Nova deployed on the Gnosis chain. This is a proxy administered by governance which implies the attacker can replace the contract to empty all of the ETH within the pool. There are at the moment 510.8 WETH value over $928,000 within the\u00a0<a href=\"https:\/\/gnosisscan.io\/address\/0xd692fd2d0b2fbd2e52cfa5b5b9424bc981c30696\" target=\"_blank\" rel=\"nofollow noopener\">contract<\/a>.<\/p>\n<h2>TORN Value Falls<\/h2>\n<p>Following the information, the TORN token has fallen by greater than 25% to $4.69 as of press time, in keeping with BeInCrypto <a href=\"https:\/\/beincrypto.com\/price\/tornado-cash\/\" target=\"_blank\" rel=\"noopener\">data<\/a>. The assault has additionally pushed the whole market cap of the crypto token to lower than $10 million.<\/p>\n<figure class=\"wp-block-image size-full\"><img decoding=\"async\" src=\"https:\/\/s32659.pcdn.co\/wp-content\/uploads\/2023\/05\/image-493.png\" alt=\"TORN Price Performance\" class=\"lazy wp-image-324270\"\/><figcaption class=\"wp-element-caption\">TORN Price Performance (Source: <a href=\"https:\/\/beincrypto.com\/price\/tornado-cash\/\" target=\"_blank\" rel=\"noopener\">BeInCrypto<\/a>)<\/figcaption><\/figure>\n<p>Meanwhile, crypto exchanges like <a href=\"https:\/\/beincrypto.com\/learn\/binance-vs-binance-us\/\" target=\"_blank\" class=\"glossary-only-link\" rel=\"noopener\">Binance<\/a> have briefly <a href=\"https:\/\/twitter.com\/binance\/status\/1660127515459895296?s=20\" target=\"_blank\" rel=\"nofollow noopener\">suspended<\/a> deposits of the token to guard their customers. However, Justin Sun\u2019s Huobi and Poloniex keep that deposits and withdrawals for TORN stay energetic. Sun <a href=\"https:\/\/twitter.com\/justinsuntron\/status\/1660139594216779782?s=20\" target=\"_blank\" rel=\"nofollow noopener\">added<\/a>:<\/p>\n<blockquote class=\"wp-block-quote\">\n<p>\u201cWe\u2019re closely monitoring the situation and may adjust our policy as required to ensure secure. We appreciate your understanding and support.\u201d<\/p>\n<\/blockquote>\n<div class=\"notice\">\n<h3>Disclaimer<\/h3>\n<p>All the knowledge contained on our web site is printed in good religion and for basic data functions solely. Any motion the reader takes upon the knowledge discovered on our web site is strictly at their very own threat.<\/p>\n<\/div><\/div>\n<p><script async src=\"\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><br \/>\n<br \/>[ad_2]<br \/>\n<br \/><a href=\"https:\/\/beincrypto.com\/tornado-cash-governance-seized\/\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>[ad_1] Popular crypto mixer Tornado Cash TORN token dropped by greater than 30% after a malicious participant hijacked its governance to steal over 480,000 tokens from its vault. According to on-chain information, the attacker bought 379,000 tokens for 375 ETH (roughly $680,000) and nonetheless has 97,700 TORN tokens of their wallet. Available data additionally confirmed [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":22809,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"ocean_post_layout":"","ocean_both_sidebars_style":"","ocean_both_sidebars_content_width":0,"ocean_both_sidebars_sidebars_width":0,"ocean_sidebar":"","ocean_second_sidebar":"","ocean_disable_margins":"enable","ocean_add_body_class":"","ocean_shortcode_before_top_bar":"","ocean_shortcode_after_top_bar":"","ocean_shortcode_before_header":"","ocean_shortcode_after_header":"","ocean_has_shortcode":"","ocean_shortcode_after_title":"","ocean_shortcode_before_footer_widgets":"","ocean_shortcode_after_footer_widgets":"","ocean_shortcode_before_footer_bottom":"","ocean_shortcode_after_footer_bottom":"","ocean_display_top_bar":"default","ocean_display_header":"default","ocean_header_style":"","ocean_center_header_left_menu":"","ocean_custom_header_template":"","ocean_custom_logo":0,"ocean_custom_retina_logo":0,"ocean_custom_logo_max_width":0,"ocean_custom_logo_tablet_max_width":0,"ocean_custom_logo_mobile_max_width":0,"ocean_custom_logo_max_height":0,"ocean_custom_logo_tablet_max_height":0,"ocean_custom_logo_mobile_max_height":0,"ocean_header_custom_menu":"","ocean_menu_typo_font_family":"","ocean_menu_typo_font_subset":"","ocean_menu_typo_font_size":0,"ocean_menu_typo_font_size_tablet":0,"ocean_menu_typo_font_size_mobile":0,"ocean_menu_typo_font_size_unit":"px","ocean_menu_typo_font_weight":"","ocean_menu_typo_font_weight_tablet":"","ocean_menu_typo_font_weight_mobile":"","ocean_menu_typo_transform":"","ocean_menu_typo_transform_tablet":"","ocean_menu_typo_transform_mobile":"","ocean_menu_typo_line_height":0,"ocean_menu_typo_line_height_tablet":0,"ocean_menu_typo_line_height_mobile":0,"ocean_menu_typo_line_height_unit":"","ocean_menu_typo_spacing":0,"ocean_menu_typo_spacing_tablet":0,"ocean_menu_typo_spacing_mobile":0,"ocean_menu_typo_spacing_unit":"","ocean_menu_link_color":"","ocean_menu_link_color_hover":"","ocean_menu_link_color_active":"","ocean_menu_link_background":"","ocean_menu_link_hover_background":"","ocean_menu_link_active_background":"","ocean_menu_social_links_bg":"","ocean_menu_social_hover_links_bg":"","ocean_menu_social_links_color":"","ocean_menu_social_hover_links_color":"","ocean_disable_title":"default","ocean_disable_heading":"default","ocean_post_title":"","ocean_post_subheading":"","ocean_post_title_style":"","ocean_post_title_background_color":"","ocean_post_title_background":0,"ocean_post_title_bg_image_position":"","ocean_post_title_bg_image_attachment":"","ocean_post_title_bg_image_repeat":"","ocean_post_title_bg_image_size":"","ocean_post_title_height":0,"ocean_post_title_bg_overlay":0.5,"ocean_post_title_bg_overlay_color":"","ocean_disable_breadcrumbs":"default","ocean_breadcrumbs_color":"","ocean_breadcrumbs_separator_color":"","ocean_breadcrumbs_links_color":"","ocean_breadcrumbs_links_hover_color":"","ocean_display_footer_widgets":"default","ocean_display_footer_bottom":"default","ocean_custom_footer_template":"","ocean_post_oembed":"","ocean_post_self_hosted_media":"","ocean_post_video_embed":"","ocean_link_format":"","ocean_link_format_target":"self","ocean_quote_format":"","ocean_quote_format_link":"post","ocean_gallery_link_images":"on","ocean_gallery_id":[],"footnotes":""},"categories":[14],"tags":[99,1197,1816,143,7000,6611,98],"class_list":["post-22807","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-altcoin","tag-cash","tag-dips","tag-governance","tag-hacker","tag-seizes","tag-torn","tag-tornado","entry","has-media","owp-thumbs-layout-horizontal","owp-btn-normal","owp-tabs-layout-horizontal","has-no-thumbnails","has-product-nav"],"_links":{"self":[{"href":"https:\/\/coingrafter.com\/index.php\/wp-json\/wp\/v2\/posts\/22807","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/coingrafter.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/coingrafter.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/coingrafter.com\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/coingrafter.com\/index.php\/wp-json\/wp\/v2\/comments?post=22807"}],"version-history":[{"count":1,"href":"https:\/\/coingrafter.com\/index.php\/wp-json\/wp\/v2\/posts\/22807\/revisions"}],"predecessor-version":[{"id":22808,"href":"https:\/\/coingrafter.com\/index.php\/wp-json\/wp\/v2\/posts\/22807\/revisions\/22808"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/coingrafter.com\/index.php\/wp-json\/wp\/v2\/media\/22809"}],"wp:attachment":[{"href":"https:\/\/coingrafter.com\/index.php\/wp-json\/wp\/v2\/media?parent=22807"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/coingrafter.com\/index.php\/wp-json\/wp\/v2\/categories?post=22807"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/coingrafter.com\/index.php\/wp-json\/wp\/v2\/tags?post=22807"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}