THORChain contributors are debating the efficacy of blocking specific hacker addresses following a DPRK-linked attack, with concerns raised about the practical limitations of such measures. Contributor cbarraford stated that attackers would simply switch addresses to evade blocks, noting that executing a full network halt requires a two-thirds node vote and takes one to two weeks to implement. Contributor tayvano_ argued that even a brief network halt could have been effective by pushing DPRK actors to target alternative protocols instead. The discussion highlights the governance challenges decentralized cross-chain protocols face when responding to state-sponsored threats in real time.