The attacker accumulated enough governance voting power to approve transfers of funds, ultimately controlling four USDC strategy vaults and roughly 91% of the Ethereum Meta Vault.
Term Labs' exploit exposes a core DeFi risk: governance tokens held by few addresses can be weaponized to drain protocol vaults—a recurring attack vector in 2026.
Ethereum is experiencing its biggest governance debate since The Merge over EIP-8363. DeFi leaders including Aave's founder oppose Ethereum Foundation researchers, showing governance fractures.
Despite exploits, institutional capital is embedding in staking infrastructure. BNY and Sharplink made major staking commitments this week, betting governance risks can be managed.
Post-exploit, Term Labs and other protocols are reviewing multisig structures and voting thresholds—learning from this hack to prevent future governance captures.
Read More →