00:00
The Financial Ways
The Financial Ways
USD/RUB
EUR/RUB
Cryptocurrency

Term Labs Recovers Fixed-Rate Positions Following $8.5M Governance Hack

Term Labs has successfully migrated all fixed-rate loan positions previously held in vaults compromised during an $8.5 million governance exploit. The final position was secured on August 25, though the protocol’s Meta Vaults and the affected strategies remain offline while investigations into the breach continue.

Term Labs Recovers Fixed-Rate Positions Following $8.5M Governance Hack

The August 23 attack bypassed the protocol’s core lending markets, which remained fully operational throughout the incident. Instead, the hackers exploited governance mechanisms by submitting malicious proposals to remove mandatory execution delays. By eliminating these windows—which typically allow liquidity providers to intervene—the attackers gained administrative control to drain approximately 2,843 ETH and 1.68 million USDC.

Technical analysis revealed that the perpetrators utilized two operator wallets funded via Tornado Cash to deploy a series of counterfeit contracts. These contracts impersonated legitimate vault controllers and price adapters, allowing the attackers to price a fraudulent repo token against the exact liquid balances of the target strategies. Once the proposals were passed, the assets were swept into the attackers' wallets.

Term Labs confirmed that its V1 and V2 contracts were never compromised. The firm is currently coordinating with law enforcement and cybersecurity analysts to track the stolen funds, while simultaneously disabling new deposits and revoking the governance roles associated with the compromised Meta Vaults.

Share

Comments (0)

Leave a comment

No comments yet. Be the first!