Share this article

MakerDAO Members Voting on a Safeguard Against BProtocol Flash Loan-Type Attack

The MakerDAO community is voting on a proposal to harden the protocol's governance structure against flash loan voting.

Updated Sep 14, 2021, 10:25 a.m. Published Oct 30, 2020, 7:22 p.m.
ivoted
  • The MakerDAO community is voting Friday on a proposal to change its governance system to harden it against flash loan attacks.
  • This proposal comes after the team from BProtocol flash borrowed $7 million worth of MKR tokens from derivatives platform dYdX to swing a vote on Maker in its own favor.
  • MakerDAO’s MKR token is required to vote on changes to the DeFi platform.
  • According to a MakerDAO forum post, the proposed fix extends the delay between a proposal’s passing and its implementation from 12 hours to 72 hours, which would give the community enough time to review and veto an unfair vote.
  • Additionally, the proposal would also deactivate two modules that allow users to freeze Maker’s liquidation engine and its oracle service.

More For You

Protocol Research: GoPlus Security

GP Basic Image

알아야 할 것:

  • As of October 2025, GoPlus has generated $4.7M in total revenue across its product lines. The GoPlus App is the primary revenue driver, contributing $2.5M (approx. 53%), followed by the SafeToken Protocol at $1.7M.
  • GoPlus Intelligence's Token Security API averaged 717 million monthly calls year-to-date in 2025 , with a peak of nearly 1 billion calls in February 2025. Total blockchain-level requests, including transaction simulations, averaged an additional 350 million per month.
  • Since its January 2025 launch , the $GPS token has registered over $5B in total spot volume and $10B in derivatives volume in 2025. Monthly spot volume peaked in March 2025 at over $1.1B , while derivatives volume peaked the same month at over $4B.

More For You

New React bug that can drain all your tokens is impacting 'thousands of' websites

Hacker sitting in a room

Attackers are using the vulnerability to deploy malware and crypto-mining software, compromising server resources and potentially intercepting wallet interactions on crypto platforms.

알아야 할 것:

  • A critical vulnerability in React Server Components, known as React2Shell, is being actively exploited, putting thousands of websites at risk, including crypto platforms.
  • The flaw, CVE-2025-55182, allows remote code execution without authentication and affects React versions 19.0 through 19.2.0.
  • Attackers are using the vulnerability to deploy malware and crypto-mining software, compromising server resources and potentially intercepting wallet interactions on crypto platforms.