MIT TRACE

MIT CTL Logo
Back to Main Dashboard

Thala exploit forces temporary suspension of DeFi services

On 15 November 2024, an attacker exploited a vulnerability introduced in Thala's v1 farming contracts and withdrew liquidity-pool tokens valued at approximately $25.5 million. Thala immediately paused the affected contracts and subsequently kept all relevant contracts and its frontend paused for several days while securing the protocol; user assets were ultimately recovered through negotiation with the exploiter. The operational suspension, rather than the asset theft alone, establishes the cyber-event → affected service → material consequence linkage required for TRACE.

73

Estimated severity

73 / 100

92

Source reliability

92 / 100

Approximate Date

15/11/2024

Targeted Company

THALA

Targeted Company Supply Chain Impact

  1. Distribution & Fulfillment

  2. Procurement & Sourcing

  3. Production & Manufacturing

  4. Sales (Retail & Ecommerce)

  5. Warehousing

  6. Service Delivery

  7. Unrecognized Impact

Supply Chain Relations

No information

Geographic Impact

Country Targeted Company

Country visual unavailable

No information

Other Affected Countries

No other affected countries reported

Target country

No information

Affected countries

No information

Impacted regions

No information

Operational Impact

Duration

No information

Financial impact (USD M)

No information

Impact types

Service unavailabilityOperational disruption

Affected sectors

Finance & Insurance

Affected departments

Information Technology

Attack Profile

Attack types

Exploitation of vulnerability

Attributed threat actors

No information

Sources

Please rotate your phone

MIT TRACE is optimized for landscape orientation on mobile.