What Is a “Governance Attack” on a Mutable Contract?
A governance attack occurs when an attacker gains enough voting power (e.g. by acquiring or borrowing a majority of governance tokens) to pass a malicious proposal. In a mutable contract, this proposal could be an upgrade that points the proxy to a contract designed to steal funds or halt operations.
This is often executed via a flash loan to temporarily acquire the necessary tokens.