An attacker acquired majority governance control of Term Labs with a capital outlay of just $951, draining $8.5 million in funds. The Term Labs team confirmed the incident on X on August 23, 2026, a finding subsequently verified independently by security firms PeckShield and CertiK. The attacker, using the wallet address 0xD5183d8BfC65a50863C62aF2538198A8288FFc13, siphoned the funds from four USDC strategy vaults and an Ethereum Meta Vault through a technically valid governance proposal.
Unlike typical crypto exploits that rely on complex code vulnerabilities, this attack involved no reentrancy tactics, oracle manipulation, or flash loan schemes. The Term Labs governance system functioned exactly as designed. The attacker simply purchased tokens on the open market to secure a voting majority, submitted a proposal to transfer funds to their own wallet, and executed it without hindrance.
No Delays and No Oversight
The frictionless execution stemmed from a complete absence of protocol safeguard layers. Term Labs’ governance system lacked a timelock mechanism to enforce an execution delay, as well as multi-sig approvals or secondary review procedures between voting and asset transfers. Once the proposal secured a majority vote, the system immediately transferred the $8.5 million to the attacker’s address.
Term Finance operates as a fixed-rate lending platform powered by on-chain auctions. The protocol stated that its core lending infrastructure remained unaffected by the vault drain. Yearn Finance also clarified that the vulnerability resided entirely within Term Labs’ custom governance layer built atop Yearn V3 infrastructure, rather than within Yearn’s core framework.
An Identical Tactic Keeps Repeating
The Term Labs exploit marks the fifth governance attack of 2026 and the second in the past seven weeks. Just seven weeks prior, BonkDAO was exploited using a nearly identical method. The primary difference lay in the required upfront capital: the BonkDAO attacker had to purchase $4 million worth of BONK tokens to secure a 99.878% majority, which was then used to drain roughly $20 million from the project’s treasury.
Two identical incidents in close succession demonstrate that structural vulnerabilities in DAO governance remain largely unaddressed. When multi-million-dollar vaults can be unlocked simply by acquiring majority voting power without a timelock, attackers no longer need smart contract exploitation skills. They can simply arrive as ordinary investors, spend $951, and follow the protocol’s own rules to drain its treasury.
Reported via crypto.news.
Read also: What Is DeFi (Decentralized Finance)?
Disclaimer: This article is for informational and educational purposes only, not financial advice. Cryptocurrency assets are highly volatile and carry significant risk. Always do your own research (DYOR) and never invest more than you can afford to lose.




