• Dapps:16.23K
  • Blockchains:78
  • Active users:66.47M
  • 30d volume:$303.26B
  • 30d transactions:$879.24M

Thala Labs Recovers $25M After Hack: Detailed Insights

user avatar

by Giorgi Kostiuk

2 years ago


On November 15, 2024, Thala Labs, a decentralized finance protocol on the Aptos blockchain, faced a significant security breach, resulting in $25.5 million in liquidity pool tokens being stolen.

The Attack and Immediate Actions

The hack was due to an isolated vulnerability in its v1 mining contract, allowing the attacker to withdraw funds. Thanks to swift responses and the assistance of law enforcement, the crypto community, and specialized recovery groups, Thala managed to recover $25 million of the stolen funds just six hours after the exploit. All relevant contracts were paused, and $11.5 million in Thala-associated assets, including $9 million in Move Dollars (MOD) and $2.5 million in THL, were frozen. Affected users were informed that their positions would be fully restored without requiring any action.

We are relieved to announce that affected users require no further action, and their positions will be made 100% whole.Thala Labs

Recovery Process and Negotiation

With the help of Seal 911 and Ogle, Thala quickly identified the hacker. A representative of Seal 911 stated that the hacker was tracked down easily due to obvious on-chain links, and the hacker contacted them willingly to negotiate the return of the stolen funds. In exchange for returning the assets, the hacker was given a $300,000 bounty. The stolen funds were returned just hours after the incident.

What is Thala?

Thala Labs offers automated market making and the yield-bearing stablecoin Move Dollar (MOD) within the Aptos ecosystem. Named after Aptos' programming language, MOD is designed to provide liquidity and stable yields for DeFi users. The protocol recently launched ThalaSwap V2, but the hack was due to a vulnerability within the older v1 contracts.

Thala Labs' incident is part of a growing trend in cryptocurrency security threats. The company is undertaking all efforts to rebuild trust and ensure future safety through comprehensive code reviews and audits. Despite success in recovering the stolen funds, incidents like this continue to pose significant risks to decentralized protocols.

0

Rewards

chest
chest
chest
chest

More rewards

Discover enhanced rewards on our social media.

chest

Other news

Bank of England Unveils New Stablecoin Framework to Boost UK Market

chest

The Bank of England has announced a new stablecoin regime, easing previous restrictions to support the development of a sterling-backed market.

user avatarMaria Gutierrez

Governor Hochul Highlights Pumpfun Report Findings

chest

New York Governor Kathy Hochul addresses the findings of a report from Pumpfun, emphasizing the importance of accuracy, relevance, and impartiality.

user avatarDavid Robinson

Report Utilizes Information from Reuters and Charles Schwab

chest

The report utilizes information from Reuters and public materials from Charles Schwab.

user avatarAndrew Smith

BitMine Launches Dividend-Paying Preferred Equity Offering

chest

BitMine's preferred equity offering, BMNP, began trading on the New York Stock Exchange last week, successfully raising approximately $274 million.

user avatarZainab Kamara

BitMine Immersion Technologies Expands Its Ethereum Holdings.

chest

BitMine Immersion Technologies has added 52,203 ETH to its balance sheet, bringing its total to 5,672,956 ETH valued at approximately $10 billion.

user avatarJacob Williams

JaredFromSubway MEV Bot Drained for $75 Million

chest

One of Ethereum's most notorious MEV bots, known as JaredFromSubway, has reportedly been drained for around $75 million after attacker-controlled contracts tricked its automated system into granting token approvals.

user avatarSon Min-ho

Important disclaimer: The information presented on the Dapp.Expert portal is intended solely for informational purposes and does not constitute an investment recommendation or a guide to action in the field of cryptocurrencies. The Dapp.Expert team is not responsible for any potential losses or missed profits associated with the use of materials published on the site. Before making investment decisions in cryptocurrencies, we recommend consulting a qualified financial advisor.