Cosmos EVM Security Incidents Halt Multiple Blockchain Networks
A series of security incidents has impacted multiple blockchain networks built on the Cosmos EVM software stack. On August 22, an attacker drained 148,326,583.15 KII from wallets on KiiChain through a vulnerability involving vesting accounts, staking operations, and balance handling within the Cosmos EVM module.
TAC also reported an exploit on August 22, with an attacker using a weakness in the Cosmos EVM precompile layer to drain one account before validators halted the network at block 24,671. MANTRA halted its network after detecting unusual activity involving two project-managed wallets but resumed block production after roughly 30 hours.
Cosmos Labs has not disclosed affected chains, vulnerability details, or total losses publicly. The company urged affected chains to ask their validators to stop block production while a fix was developed. It remains unconfirmed whether the August attacks used the same code path as an earlier Cosmos EVM flaw involving the ICS20 precompile.
Cosmos Labs said it plans to release a full incident report once the situation is contained, which will identify the faulty component, affected versions, and total losses across all chains. Users should monitor official chain status pages and avoid transactions through unverified interfaces until then.