The Singapore DAO drain
A DAO multisig was drained through a malicious EIP-712 signature solicited via a fake governance proposal. We traced the funds through Tornado Cash deposits, identified the deobfuscated egress to two major CEXes, and coordinated emergency freezes via Singapore High Court Mareva injunctions.
"The exchange-side freeze was filed 41 hours after first call. From that moment, the funds were not going anywhere."