Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Donald Trump serves fries at McDonald’s five days after flop crypto launch

    May 14, 2026

    Aave CEO says Clarity Act could reshape DeFi regulation — but BTC at ~$80K keeps macro pressure in focus?

    May 14, 2026

    Uniswap Labs launches Unichain without UNI unanimity

    May 14, 2026
    Facebook X (Twitter) Instagram
    Ai Crypto TimesAi Crypto Times
    • Altcoins
      • Bitcoin
      • Coinbase
      • Litecoin
    • Blockchain
    • Crypto
    • Ethereum
    • Lithosphere News Releases
    X (Twitter) Instagram YouTube LinkedIn
    Ai Crypto TimesAi Crypto Times
    Home » Moonwell hit by governance attack — $1.08M at risk for $1,800 spend

    Moonwell hit by governance attack — $1.08M at risk for $1,800 spend

    Isabella TaylorBy Isabella TaylorMarch 26, 2026No Comments3 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Share
    Facebook Twitter LinkedIn Pinterest Email



    An attacker spent about $1,800 on MFAM to push a malicious Moonwell proposal that could seize control of seven markets and $1.08m in assets, testing its veto and governance defenses.

    Summary

    • An unknown attacker spent just $1,800 to acquire 40 million MFAM tokens and push a malicious governance proposal through quorum in roughly 11 minutes on Moonwell’s Moonriver deployment.
    • The proposal, if executed, would transfer admin control of seven lending markets, the comptroller, and the oracle to an attacker-controlled contract, exposing approximately $1.08 million in user funds.
    • Moonwell retains an emergency veto mechanism — the “Break Glass Guardian” multisig — and a majority of subsequent votes have opposed the proposal ahead of the March 27 deadline.

    An unknown attacker on March 26 spent approximately $1,800 to acquire around 40 million MFAM tokens and ram through a malicious governance proposal on Moonwell’s Moonriver deployment — completing the entire sequence in roughly 11 minutes and placing approximately $1.08 million in user funds at risk.

    As reported by The Block, the attacker’s proposal, listed as MIP-R39, seeks to transfer administrative rights over seven lending markets, the comptroller contract, and the price oracle to a contract under the attacker’s control. Gaining that access would effectively allow the attacker to drain the protocol’s pools at will. Moonwell is a DeFi lending protocol operating on Moonbeam and Moonriver, two parachains within the Polkadot ecosystem, where users deposit assets to earn yield or borrow against collateral.

    The exploit targets a structural weakness endemic to token-based governance: when a protocol’s governance token trades at depressed prices and voter participation is thin, a bad actor can acquire enough voting weight to pass proposals with relatively little capital. That dynamic is precisely what made the attack possible — $1,800 worth of MFAM was enough to hit quorum and lock in a favorable vote before meaningful opposition could mobilize.

    Two fail-safes remain in play

    Voting on the proposal remains open until March 27. While it reached quorum quickly, the majority of cast votes are now opposed. The final result still hinges on any remaining undeclared voting power. Separately, Moonwell maintains an emergency multisig mechanism known as the “Break Glass Guardian,” which can override the governance process and revoke the attacker’s access before execution regardless of the vote outcome.

    The incident is the second major security failure to hit Moonwell in a matter of weeks. In February, the protocol suffered a previous exploit when a faulty oracle — reportedly co-authored using the AI model Claude Opus 4.6 — mispriced Coinbase Wrapped ETH (cbETH) at near $1 instead of its actual market value of roughly $2,200, generating approximately $1.78 million in bad debt.

    A recurring vulnerability across DeFi

    Governance attacks are not new to decentralized finance, but they continue to expose the tension between open participation and protocol security. The 2022 Beanstalk flash loan attack remains the most dramatic example of the vector, with an attacker draining over $180 million by using a flash loan to temporarily accumulate sufficient voting power to pass a fraudulent proposal in a single transaction. Compound Finance and the now-defunct Swerve Finance have also faced similar contested governance episodes driven by concentrated token accumulation.

    What distinguishes the Moonwell case is the raw cost efficiency. There were no flash loans required — just a modest open-market purchase on a low-liquidity token, and a governance system that lacked the circuit breakers to slow down a hostile proposal.

    The Moonwell community and team are now racing against the March 27 vote deadline. The outcome will test whether the Break Glass Guardian mechanism and organic voter opposition can neutralize the threat before the proposal reaches execution.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Isabella Taylor

    Related Posts

    Aave CEO says Clarity Act could reshape DeFi regulation — but BTC at ~$80K keeps macro pressure in focus?

    May 14, 2026

    Copper gold ratio repeats Bitcoin’s 2020 signal

    May 14, 2026

    Matchain MAT surges 349% in altcoin rotation

    May 14, 2026

    Comments are closed.

    Don't Miss

    Donald Trump serves fries at McDonald’s five days after flop crypto launch

    Coinbase May 14, 2026

    Five days after the disappointing launch of Donald Trump’s World Liberty Financial, he was filmed…

    Aave CEO says Clarity Act could reshape DeFi regulation — but BTC at ~$80K keeps macro pressure in focus?

    May 14, 2026

    Uniswap Labs launches Unichain without UNI unanimity

    May 14, 2026

    Copper gold ratio repeats Bitcoin’s 2020 signal

    May 14, 2026
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo
    Our Picks

    This feed has expired. Please contact us for pricing options.

    May 5, 2026

    AGII Introduces Scalable AI Execution Layer for Decentralized Systems

    May 1, 2026

    Lithosphere Deploys Full-Stack Development Environment for AI-Native Applications

    May 1, 2026

    Lithosphere Integrates AI Mock Providers for Continuous Integration Workflows

    April 30, 2026

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    Demo
    • Popular
    • Recent
    • Top Reviews

    Colle AI Positions Intelligent Design as the Future of NFT Creation

    March 14, 2026

    ICP price retests key level: what’s the outlook?

    March 14, 2026

    Treasury Staking Initiative | Ethereum Foundation Blog

    March 14, 2026

    Donald Trump serves fries at McDonald’s five days after flop crypto launch

    May 14, 2026

    Aave CEO says Clarity Act could reshape DeFi regulation — but BTC at ~$80K keeps macro pressure in focus?

    May 14, 2026

    Uniswap Labs launches Unichain without UNI unanimity

    May 14, 2026
    Latest Galleries
    [latest_gallery cat="all" number="5" type="slider"]
    Latest Reviews
    Demo
    Top Posts

    This feed has expired. Please contact us for pricing options.

    May 5, 20263 Views

    Lithosphere Deploys Full-Stack Development Environment for AI-Native Applications

    May 1, 20262 Views

    Lithosphere Integrates AI Mock Providers for Continuous Integration Workflows

    April 30, 20262 Views

    Lithic Introduces zk-Verifiable AI Execution Standard (LEP100-5)

    March 17, 20262 Views
    Don't Miss

    Donald Trump serves fries at McDonald’s five days after flop crypto launch

    Coinbase May 14, 2026

    Five days after the disappointing launch of Donald Trump’s World Liberty Financial, he was filmed…

    Aave CEO says Clarity Act could reshape DeFi regulation — but BTC at ~$80K keeps macro pressure in focus?

    May 14, 2026

    Uniswap Labs launches Unichain without UNI unanimity

    May 14, 2026

    Copper gold ratio repeats Bitcoin’s 2020 signal

    May 14, 2026
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    Demo
    Top Posts

    Xiaomi rolls out MiMo V2.5 with multimodal AI and improved efficiency

    April 23, 202614 Views

    Meta’s Muse Spark ends its open-source AI era

    May 9, 202611 Views

    Pi Network confirms Consensus 2026 sponsorship

    May 2, 20268 Views

    Anthropic revenue just hit a $30 billion run rate

    April 9, 20268 Views
    Don't Miss

    Donald Trump serves fries at McDonald’s five days after flop crypto launch

    Coinbase May 14, 2026

    Five days after the disappointing launch of Donald Trump’s World Liberty Financial, he was filmed…

    Aave CEO says Clarity Act could reshape DeFi regulation — but BTC at ~$80K keeps macro pressure in focus?

    May 14, 2026

    Uniswap Labs launches Unichain without UNI unanimity

    May 14, 2026

    Copper gold ratio repeats Bitcoin’s 2020 signal

    May 14, 2026
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    X (Twitter) Instagram YouTube LinkedIn
    Our Picks

    Donald Trump serves fries at McDonald’s five days after flop crypto launch

    May 14, 2026

    Aave CEO says Clarity Act could reshape DeFi regulation — but BTC at ~$80K keeps macro pressure in focus?

    May 14, 2026

    Uniswap Labs launches Unichain without UNI unanimity

    May 14, 2026
    Recent Posts
    • Donald Trump serves fries at McDonald’s five days after flop crypto launch
    • Aave CEO says Clarity Act could reshape DeFi regulation — but BTC at ~$80K keeps macro pressure in focus?
    • Uniswap Labs launches Unichain without UNI unanimity
    • Copper gold ratio repeats Bitcoin’s 2020 signal
    • Sony’s blockchain venture Soneium has a phishing scam issue
    © 2026 - 2026

    Type above and press Enter to search. Press Esc to cancel.