Cosmos EVM Module Hit by Widespread Security Incident
Cosmos Labs has confirmed an ongoing security incident affecting users of the Cosmos EVM module. The company advised chains in contact with it to ask validators to halt block production.
Three networks have now disclosed impact: KiiChain and TAC froze their chains after attackers drained accounts, while MANTRA restarted its mainnet.
The incident has been linked to the Cosmos EVM module, a component that lets Cosmos SDK chains run Ethereum-style smart contracts. MANTRA was first to report an issue, citing a security incident in an upstream dependency. The team said two MANTRA-managed wallets were affected, but user balances were never impacted.
The vulnerability has been fixed in version 8.4.0, and the network has resumed normal block production. KiiChain and TAC also reported attacks linked to the Cosmos EVM module, with an attacker draining 148,326,583.15 KII from a single account on TAC.