tornado-cash-exploit icon indicating copy to clipboard operation
tornado-cash-exploit copied to clipboard

This repository implements a simplified PoC that showcases how a contract can morph. A similar approach was used as part of the governance attack on Tornado Cash in May 2023.

Tornado Cash Governance Attack via Metamorphic Contracts

Test smart contracts License: WTFPL

This repository implements a simplified PoC that showcases how a contract can morph using a combination of CREATE2, CREATE, and SELFDESTRUCT. A similar approach was used as part of the governance attack on Tornado Cash[^1] in May 2023.

[^1]: A detailed post-mortem can be found here, and a full technical replication (using Foundry) of the attack here.