According to news from PANews on July 2, according to the Beosin EagleEye security risk monitoring, early warning and blocking platform monitoring of the blockchain security audit company Beosin, on July 2, 2023, the Aave fork project on the Pulse chain suffered governance attacks, and hackers first Purchased a large number of Aave tokens to obtain the governance authority of the Aave fork project, and then created multiple contracts. The hacker seemed to want to use the governance authority to modify the implementation address of the proxy contract, and use the user's authorization to the contract to deprive the user funds transferred. Such as: (WBTC, YFI, BAL, AAVE, UNI and other tokens). Finally, the hacker converted the above stolen funds into ETH through the cross-chain bridge protocol, and sent it to the address 0xA30190b96FaEe0080144aA0B7645081Fcbf49E6F of Ethereum. The attacker made a profit of 483 ETH about $930,000.