Cosmos EVM Security Flaw Exposes Multiple Networks to Attack
The Cosmos EVM framework has been hit by a security flaw that allowed an attacker to exploit multiple networks, including Nesa Chain, KiiChain, TAC, and MANTRA Networks. The vulnerability was used to create and bridge around $50 million worth of NES tokens from Nesa Chain to Ethereum.
The attack started with wallet 0x9AE7, which initially acquired approximately $250,000 in NES before bridging the tokens to Nesa Chain. Blockchain analytics firm Bubblemaps traced the wallet's initial funding to Monero.
The attacker increased the NES balance by around 200 times and bridged approximately $50 million in tokens back to Ethereum. The assets were then split across eight wallets, exchanged for ETH through decentralized exchanges and sent toward centralized platforms.
Liquidity disappeared as the wallets attempted to sell, producing severe slippage. The attacker spent about $255,000 and recovered approximately $315,000, leaving a gain near $60,000.