The Solana ecosystem has faced a serious security incident: the decentralized autonomous organization (DAO) of the meme coin BONK — BonkDAO — lost tokens worth approximately $20 million. The cause was a malicious proposal in the governance system that was approved and executed.
As revealed during the investigation, the attacker pushed through a voting mechanism an initiative that allowed funds to be withdrawn from the treasury. Technical details of the attack have not yet been disclosed, but it is known that the voting took place via the Solana Realms platform, a standard tool for managing DAOs on the Solana network. The incident occurred on July 6.
According to blockchain data, the tokens were not distributed among voting participants. The funds first went to an address that the Solscan service associates with a deposit via the Bybit exchange, and a few hours later were transferred to another wallet. The BonkDAO team has already identified the exchange wallets used to purchase BONK before submitting the malicious proposal and is actively cooperating with exchanges, bridges, and the Solana Foundation to manage the situation.
Against the backdrop of the incident, exchanges Kraken and Upbit temporarily suspended BONK deposits and withdrawals. The market reacted immediately: over the past 24 hours, the meme token's price fell by 7.7%, reaching around $0.00000432 according to CoinGecko data.
It is worth noting that such attacks on governance systems are a growing threat to DAOs. Holders of large token volumes can use their voting weight to make decisions that harm the ecosystem. This reminds us of the critical importance of protection mechanisms against malicious proposals and the need for more thorough vetting of initiatives before they are voted on.
This incident occurred against the backdrop of a general decline in activity in the meme token market. In June 2026, the number of daily launched coins on the Pump.fun platform decreased by 30% compared to spring figures, indicating waning interest in this segment.
My analysis: The attack on BonkDAO is not just another hack, but a symptom of a systemic vulnerability in decentralized governance. DAOs with low token holder engagement and weak proposal verification mechanisms become easy targets. The market urgently needs more advanced security protocols for governance systems, otherwise such incidents will recur, undermining trust in decentralized finance as a whole.