Cosmos Labs Warns of Security Incident Targeting EVM Module Chains
Cosmos Labs has issued an urgent warning to chains built with its Cosmos EVM module after a security incident was reported. The team advised affected validators to halt their networks, citing the risk of further attacks.
The incident is not the first time the Cosmos EVM module has been targeted this year, with a $7 million exploit occurring in January 2026 affecting 15 chains. The current wave of attacks appears connected to a critical vulnerability catalogued as ASA-2026-002, which was disclosed in March and patched through a collaborative effort.
The patch, however, may have been incomplete or insufficient, allowing attackers to find new pathways through related code. Cosmos Labs has not yet disclosed the full list of affected chains or the total value at risk.
The timing of the warning suggests that either the recent breaches on MANTRA Chain and TAC revealed a broader systemic weakness or that attackers found a way to generalize their exploit across multiple chains sharing the same codebase.