Country visual unavailable
No information
On 15 November 2024, an attacker exploited a vulnerability introduced in Thala's v1 farming contracts and withdrew liquidity-pool tokens valued at approximately $25.5 million. Thala immediately paused the affected contracts and subsequently kept all relevant contracts and its frontend paused for several days while securing the protocol; user assets were ultimately recovered through negotiation with the exploiter. The operational suspension, rather than the asset theft alone, establishes the cyber-event → affected service → material consequence linkage required for TRACE.
Estimated severity
73 / 100
Source reliability
92 / 100
Approximate Date
15/11/2024
Targeted Company
THALA
Distribution & Fulfillment
Procurement & Sourcing
Production & Manufacturing
Sales (Retail & Ecommerce)
Warehousing
Service Delivery
Unrecognized Impact
Supply Chain Relations
No information
Country visual unavailable
No information
No other affected countries reported
Target country
No information
Affected countries
No information
Impacted regions
No information
Duration
No information
Financial impact (USD M)
No information
Impact types
Affected sectors
Affected departments
Attack types
Attributed threat actors
No information
Please rotate your phone