• Dapps:16.23K
  • Blockchains:78
  • Active users:66.47M
  • 30d volume:$303.26B
  • 30d transactions:$879.24M

Thala Labs Recovers $25M After Hack: Detailed Insights

user avatar

by Giorgi Kostiuk

a year ago


On November 15, 2024, Thala Labs, a decentralized finance protocol on the Aptos blockchain, faced a significant security breach, resulting in $25.5 million in liquidity pool tokens being stolen.

The Attack and Immediate Actions

The hack was due to an isolated vulnerability in its v1 mining contract, allowing the attacker to withdraw funds. Thanks to swift responses and the assistance of law enforcement, the crypto community, and specialized recovery groups, Thala managed to recover $25 million of the stolen funds just six hours after the exploit. All relevant contracts were paused, and $11.5 million in Thala-associated assets, including $9 million in Move Dollars (MOD) and $2.5 million in THL, were frozen. Affected users were informed that their positions would be fully restored without requiring any action.

We are relieved to announce that affected users require no further action, and their positions will be made 100% whole.Thala Labs

Recovery Process and Negotiation

With the help of Seal 911 and Ogle, Thala quickly identified the hacker. A representative of Seal 911 stated that the hacker was tracked down easily due to obvious on-chain links, and the hacker contacted them willingly to negotiate the return of the stolen funds. In exchange for returning the assets, the hacker was given a $300,000 bounty. The stolen funds were returned just hours after the incident.

What is Thala?

Thala Labs offers automated market making and the yield-bearing stablecoin Move Dollar (MOD) within the Aptos ecosystem. Named after Aptos' programming language, MOD is designed to provide liquidity and stable yields for DeFi users. The protocol recently launched ThalaSwap V2, but the hack was due to a vulnerability within the older v1 contracts.

Thala Labs' incident is part of a growing trend in cryptocurrency security threats. The company is undertaking all efforts to rebuild trust and ensure future safety through comprehensive code reviews and audits. Despite success in recovering the stolen funds, incidents like this continue to pose significant risks to decentralized protocols.

0

Rewards

chest
chest
chest
chest

More rewards

Discover enhanced rewards on our social media.

chest

Other news

New Biodata Platform Promotes Neutral Interoperability

chest

The new platform promotes neutral interoperability, allowing any compliant buyer or device to participate.

user avatarKaterina Papadopoulou

New Direct Compensation Model Ensures Fair Payment for Biodata

chest

A new direct compensation model has been introduced, where researchers pay users directly for access to their biodata, ensuring transparency in payments.

user avatarMaya Lundqvist

New Portable Permissions Enhance User Control Over Data Sharing

chest

A new system introduces portable permissions that are cryptographically attached to the data itself, allowing users to share their data with researchers under specific conditions.

user avatarLeo van der Veen

BUIDL and Superstate Drive Onchain Treasury Adoption

chest

BUIDL and Superstate are pioneering onchain Treasuries, making them accessible and compliant for institutional use.

user avatarTomas Novak

Onchain US Treasuries Revolutionize Global Capital Infrastructure

chest

Onchain US Treasuries have evolved into a new interest rate infrastructure, enabling global access to the US Treasury yield curve.

user avatarKaterina Papadopoulou

Etherealize Report Reveals ETH L2s as Game Changers for Finance

chest

The Etherealize report highlights the transformative role of Ethereum Layer 2 solutions (ETH L2s) in institutional finance, emphasizing their benefits in cost efficiency, speed, and enhanced privacy.

user avatarEmily Carter

Important disclaimer: The information presented on the Dapp.Expert portal is intended solely for informational purposes and does not constitute an investment recommendation or a guide to action in the field of cryptocurrencies. The Dapp.Expert team is not responsible for any potential losses or missed profits associated with the use of materials published on the site. Before making investment decisions in cryptocurrencies, we recommend consulting a qualified financial advisor.