Cosmos EVM vulnerability drains MANTRA, TAC and KiiChain in cross chain attacks

58 minutes ago 3



Cosmos Labs has disclosed that attackers exploited a critical Cosmos EVM vulnerability across six blockchain networks between Aug. 20 and Aug. 25, converting stolen tokens into about $5.72 million in assets through decentralized and centralized exchanges. Summary Attackers exploited a critical Cosmos EVM flaw across six networks between Aug. 20 and Aug. 25, converting stolen tokens into about $5.72 million in other assets. Cosmos Labs first received the vulnerability report in April but initially concluded that production networks were not at risk and handled the fix through its silent patch process. MANTRA lost 720.9 million tokens worth about $3.6 million, while TAC and KiiChain later suffered separate attacks using the same method. The first attack began about 20 hours after patched Cosmos EVM versions were released without a vulnerability specific advisory to network operators. Cosmos Labs coordinated with 40 chains during the response and helped 13 networks patch or halt before they could be attacked. Cosmos Labs said in a technical post-mortem published Friday that the flaw had first been reported through its bug bounty program on April 25, nearly four months before the attac...

Read Entire Article