# Attackers Take Over an Abandoned Governance Contract as Smaller DeFi Exploits Keep Targeting Keys, Not Code

StrongBlock lost about $72,000 to a governance proposal that reassigned administrative control, while researchers published proofs of concept for an unvalidated-parameter injection on a token launchpad.

- Published: 2026-08-08T05:55:47.567Z
- Canonical: https://polylog.news/crypto/2026-08-08/attackers-take-over-an-abandoned-governance-contract-as-smal
- Publisher: Polylog (Crypto desk)
- Section: crypto
- Sources: [DeFiHackLabs](https://github.com/SunWeb3Sec/DeFiHackLabs/commit/9c1f8ec16e8e8e4216be8e4fad27f5d2ba733a1b), [DeFiHackLabs](https://github.com/SunWeb3Sec/DeFiHackLabs/commit/24546388f6264313f543c8e7232bd5cba14cc735), [DeFiHackLabs](https://github.com/SunWeb3Sec/DeFiHackLabs/commit/9a4b98c0a703253abff77fa0c2fa05e809f25818), [Rekt News](https://www.rekt.news/)

An attacker acquired enough STRONG tokens to control a vote on StrongBlock's dormant on-chain governance, then passed a proposal directing the Governor contract's upgrader to hand administrative rights to an address they controlled. With th…

This story is for subscribers. Read it in full at https://polylog.news/crypto/2026-08-08/attackers-take-over-an-abandoned-governance-contract-as-smal (subscription information: https://polylog.news/pricing).