started · updated
Term Finance loses $8.5 million in governance exploit
Term Finance, an Ethereum-based lending protocol developed by Term Labs, suffered a governance exploit on August 23, 2026, resulting in an estimated loss of $8.5 million. Security firms PeckShield and CertiK reported that the attacker drained approximately 2,843 ETH and 1.68 million USDC, which was subsequently swapped for DAI.
The attack was characterized as a governance manipulation rather than a smart contract code vulnerability. The attacker reportedly acquired a significant portion of the protocol’s thinly distributed governance tokens to gain voting power. This allowed them to approve proposals that granted control over the Meta Vaults, bypassing existing protections like the seven-day timelock and liquidity provider veto rights.
In response, Term Labs has permanently shut down the Term Meta Vaults, blocked new deposits, and revoked the DAO governance permissions that enabled the exploit. While the broader lending and borrowing markets remain unaffected, the company is working with external security teams to investigate the incident and explore potential asset recovery or compensation for users.
Entities
CertiK · Dion Chu · Ethereum · PeckShield · Term Finance · Term Labs
Claims
What the coverage asserts, and how many sources carry each claim.
- [● 2 SOURCES] Term Finance vaults held $12.25 million at the time of the exploit. www.cryptopolitan.com
- [● 13 SOURCES] The attacker drained approximately $8.5 million in ETH and DAI. cryptobriefing.com · www.cryptopolitan.com · coin-turk.com · coindoo.com · crypto.news · +7 more
- [● 13 SOURCES] Term Labs confirmed a governance exploit is impacting its vaults. cryptobriefing.com · www.cryptopolitan.com · coin-turk.com · coindoo.com · crypto.news · +7 more
- [● 8 SOURCES] The attacker's wallets were initially funded with 2 ETH from Tornado Cash. cryptobriefing.com · www.cryptopolitan.com · coindoo.com · crypto.news · thecryptocurrencypost.net · +2 more
- [● 13 SOURCES] The exploit was a governance manipulation rather than a smart contract code vulnerability. cryptobriefing.com · coin-turk.com · cryptoticker.io · www.cryptopolitan.com · bitcoinke.io · +7 more
- [● 2 SOURCES] The attacker gained 100% voting control over four of the five USDC strategy vaults. cryptobriefing.com · www.cryptopolitan.com
- [● 13 SOURCES] The attacker extracted approximately 1.6 million DAI. coin-turk.com · coindoo.com · crypto.news · cryptoticker.io · cryptobriefing.com · +7 more
- [● 5 SOURCES] The exploit targeted Term Vaults built on Yearn v3 infrastructure. bitcoinke.io · www.spacemoney.com.br · www.tokenpost.com · www.blocktempo.com
- [● 13 SOURCES] The attacker extracted approximately 2,843 ETH. coin-turk.com · coindoo.com · crypto.news · cryptoticker.io · cryptobriefing.com · +7 more