gno-security-exploit

Type: fact
Tags: gnosecurityexploitgovdaovulnerabilitycritical
Created: Mon Nov 03 2025 00:00:00 GMT+0000 (Coordinated Universal Time)

Gno GovDAO Critical Security Exploit

Critical vulnerability discovered in Gno’s governance system allowing complete takeover.

Exploit Details

Severity Assessment

Attack Steps

  1. Create exploit realm - Attacker deploys malicious realm
  2. Submit spoofed proposal - Disguised as legitimate governance action
  3. Social engineering - Trick govdao voters into approval
  4. Execute proposal - Add malicious realm to AllowedDAOs list
  5. Update implementation - Use UpdateImpl for full control

Attack Surface

Immediate Fixes

Architectural Improvements

Business Impact

This exploit was discovered during Gno fork analysis and influenced the decision to:

See also

← Back to Knowledge Base