Close Menu
  • Markets
    • Spot Market
      • Market Overview
      • Top Gainers / Losers
      • Market Cap Charts
      • Reviews
    • Futures Market
      • Market Overview
      • Funding Rate
      • Liquidations
      • Long Short/Ratio
  • Metrics
    • Dashboard
    • Whale tracker
    • Market Heatmap
    • Funding Rates
  • News
    • Bitcoin
    • Ethereum
    • Altcoins
  • Prediction
  • Opinion
  • Calendar
  • Live Feed
What's Hot

Dog and Cat Memecoins Surge Over 100% Amid Crypto Rally

August 25, 2026

AI Agents Transfer $3.3M USDC via Solana x402 Payments

August 25, 2026

US Expands Iran Crypto Sanctions Over $100M Oil Payments

August 25, 2026

Pi Network Ends Subsidized App Building With Pricing Shakeup

August 25, 2026

Block Bits Capital Founder Convicted of $1M Crypto Fraud

August 25, 2026

Cosmos Labs Confirms EVM Incident Affecting Three Chains

August 25, 2026

SpaceX and Nvidia Partner for Space-Optimized AI System

August 25, 2026

Solana Validators Vote On Proposal to Burn Transaction Fees

August 25, 2026

Bitcoin Traders Bet $2.9 Million on Price Surging Past $82,000

August 25, 2026

Ripple Co-Founder Chris Larsen Targeted by Flock Protest

August 25, 2026
Facebook X (Twitter) Instagram
Daily Crypto News
  • Markets
    • Spot Market
      • Market Overview
      • Top Gainers / Losers
      • Market Cap Charts
      • Reviews
    • Futures Market
      • Market Overview
      • Funding Rate
      • Liquidations
      • Long Short/Ratio
  • Metrics
    • Dashboard
    • Whale tracker
    • Market Heatmap
    • Funding Rates
  • News
    • Bitcoin
    • Ethereum
    • Altcoins
  • Prediction
  • Opinion
  • Calendar
  • Live Feed
Dashboard
Daily Crypto News
Home»Altcoins»Cosmos Labs confirms vulnerability, advises chain
Cosmos Labs confirms vulnerability, advises chain
An ongoing Cosmos EVM incident has led to emergency halts and exploits on MANTRA, KiiChain, and TAC, highlighting shared infrastructure security risks for al...
Altcoins

Cosmos Labs confirms vulnerability, advises chain

Michael FawnBy Michael FawnAugust 25, 20267 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

By Michael Fawn

A critical vulnerability in the shared Cosmos EVM module has triggered exploits and emergency chain halts on at least three independent blockchains, sending ripples through the ecosystem. Cosmos Labs confirmed the ongoing security incident on August 24, advising all chains using the module to pause block production as its teams scrambled to respond.

The flaw has already been exploited on the KiiChain and TAC networks, leading to the theft of hundreds of millions of tokens. A third network, MANTRA, also halted its chain for over a day as a preventative measure.

Cosmos Labs confirms impact from shared vulnerability

These events highlight the systemic risks inherent in modular blockchain frameworks, where a single bug in a shared component can create a cascading failure across multiple sovereign networks.

The incidents began to surface publicly around August 20, with each affected team initially investigating what appeared to be isolated issues. MANTRA, a Layer 1 blockchain focused on real-world assets, was the first to act. It halted its network at 8:10 p.m. ET on August 20 as a precaution, stating that two MANTRA-managed wallets were impacted but that no user funds were ever at risk.

After roughly 30 hours offline, MANTRA resumed block production on August 22. The team confirmed the issue was a vulnerability in an “upstream dependency” which was later identified as the Cosmos-EVM module. While MANTRA avoided a direct exploit of user assets, its tracked DeFi total value locked plummeted from over $548,575 to just $5,159 during the halt, demonstrating immediate impact on liquidity.

Two other chains were not as fortunate. On August 22, KiiChain disclosed it had been the victim of a significant exploit. An attacker repeatedly used the same technique 18 times to drain 148,326,583.15 KII tokens before validators managed to halt the chain at block 9,355,723.

The KiiChain team was quick to state the flaw was not in its own code. “The vulnerability is in Cosmos code… It sits in the shared Cosmos EVM module (cosmos/evm), which KiiChain runs unmodified,” the team said.

That same day, the TAC blockchain also paused all on-chain operations at block height 24,671,475. The team reported that an attacker exploited a flaw in the Cosmos EVM precompile layer to drain approximately 2.986 billion TAC tokens from a single account. Like KiiChain, the TAC team confirmed the defect was in the shared module, not in its own specific implementation.

Cosmos Labs advises chain halts in official response

After days of speculation, Cosmos Labs issued an official statement on August 24 confirming the breadth of the problem. “An ongoing security incident has impacted users of the Cosmos EVM module,” the organization announced. “We have advised the Cosmos EVM chains that are in contact with us to request that validators halt their chains.” This active response signals the severity of the underlying vulnerability.

The Cosmos EVM module is a crucial piece of software that allows blockchains built with the Cosmos SDK to gain compatibility with the Ethereum Virtual Machine. This enables them to run popular Ethereum-style smart contracts and dApps, features that many projects leverage to attract developers and users. This integration is vital for projects with an Ether goal, demonstrating the inherent value of such modules.

Halting a proof-of-stake network is a drastic but standard emergency procedure for critical bugs. It prevents new transactions from being processed, effectively freezing the ledger. This gives developers time to investigate the flaw, develop a patch, and coordinate a simultaneous restart with the network’s validators, preventing further losses.

Questions raised over silent security patch

As the dust settles, the technical details of the exploits are becoming clearer, and they point to different attack vectors stemming from the same core module. The KiiChain exploit was reportedly linked to a Cosmos EVM vulnerability involving vesting accounts, staking operations, and balance handling. Meanwhile, the attack on TAC targeted the EVM precompile layer, a component that provides efficient implementations of complex cryptographic functions.

More troubling for the community are reports concerning the disclosure of the fix. Community member “De” noted that the Cosmos engineering team had released an updated version of the module, v0.7.2, on GitHub on August 19. This update contained “important security fixes” but was allegedly pushed without a corresponding public security announcement, a practice often referred to as a “silent patch.”

This approach to patching is controversial. While it can prevent drawing immediate attention to a flaw, it also risks alerting sophisticated attackers who monitor code repositories for such changes. If these attackers identify the vulnerability before network operators have time to apply the patch, it creates a critical window for exploitation, which may have been the case here.

Not the first critical flaw in Cosmos EVM code

This is not the first time a vulnerability in a shared Cosmos component has led to widespread issues. In January 2026, an estimated $7 million was lost on the SagaEVM network due to a different flaw in the Cosmos EVM module. That earlier incident involved the ICS20 precompile, which handles cross-chain token transfers.

Cosmos Labs later issued security advisory ASA-2026-002 in March 2026 detailing a critical bug where incorrect state handling during nested contract calls could allow an attacker to use the same token balance multiple times within a single transaction.

Interestingly, the MANTRA team had reportedly assisted in investigating that previous issue, and a fix was included in a prior version of the module.

The recurrence of such a high-impact bug in the same shared codebase raises serious questions about its security auditing processes and can impact overall market confidence, potentially creating selling pressure in the altcoin sector.

The persistence of these vulnerabilities in core infrastructure components serves as a reminder that fundamental technological risks remain a primary concern for the long-term viability of many altcoin ecosystems.

Recovery plans in motion for affected chains

For the affected chains, the road to recovery is now the main focus. MANTRA has already successfully patched its network and resumed normal operations. KiiChain and TAC, which suffered direct financial losses, remain halted as their teams prepare for a coordinated restart. This will involve all validators applying a patched version of their node software at a predetermined block height.

The process is a delicate one, designed to bring the network back online in a consistent state without requiring a lengthy on-chain governance vote. Some assets stolen from KiiChain have already been tracked moving to the BNB Smart Chain via the Hyperlane bridge, complicating recovery efforts.

The situation is a live test of the resilience and coordination of these independent-yet-interconnected crypto projects. The broader crypto market, often characterized by weekly volume fluctuations, continues to monitor such security events.

Cosmos Labs has pointed teams with questions to its security contact. For an ecosystem built on the promise of interoperable and sovereign chains, ensuring the security of the common threads that bind them together has never been more critical.

Michael Fawn

About Michael Fawn

Michael Fawn is a cryptocurrency journalist and blockchain analyst with a passion for breaking down complex market trends into easy-to-understand insights. Covering everything from Bitcoin and Ethereum to emerging altcoins and Web3 innovation, Michael focuses on delivering accurate, timely, and engaging crypto news for investors and enthusiasts alike. With years of experience following the digital asset industry, Michael keeps readers informed on the latest developments shaping the future of finance.

More from Michael Fawn →

altcoin ecosystems blockchain networks cosmos labs confirms cosmos sdk evm module security incident
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Hyperliquid HYPE dips 3% after reaching ATH, $70 billion weekly volume underscores resilience

August 24, 2026

BNB Chain to activate Pasteur hard fork bolstering security and capacity

August 23, 2026

Monad (MON) surges 12% as TVL hits $2.677 billion

August 22, 2026

BNB Chain leads RWA growth amid CZ’s ‘tokenize everything’ push

August 21, 2026

Recent Posts

  • Dog and Cat Memecoins Surge Over 100% Amid Crypto Rally
  • AI Agents Transfer $3.3M USDC via Solana x402 Payments
  • US Expands Iran Crypto Sanctions Over $100M Oil Payments
  • Pi Network Ends Subsidized App Building With Pricing Shakeup
  • Block Bits Capital Founder Convicted of $1M Crypto Fraud
Top Posts

Hyperliquid HYPE dips 3% after reaching ATH, $70 billion weekly volume underscores resilience

August 24, 2026

BNB Chain to activate Pasteur hard fork bolstering security and capacity

August 23, 2026

Monad (MON) surges 12% as TVL hits $2.677 billion

August 22, 2026

Stay updated with the latest crypto news, market trends, and expert insights. We provide accurate and timely information to help you make better decisions.

Facebook X (Twitter) Instagram Pinterest YouTube
Our Resources
  • About Us
  • Privacy Policy
  • Editorial Policy
  • Legal Disclaimer
  • Contact us
Categories
  • Altcoins
  • Prediction
  • Opinion
  • Guides
  • Reviews
  • Bitcoin
  • Ethereum
Recent Posts
  • Dog and Cat Memecoins Surge Over 100% Amid Crypto Rally
  • AI Agents Transfer $3.3M USDC via Solana x402 Payments
  • US Expands Iran Crypto Sanctions Over $100M Oil Payments
  • Pi Network Ends Subsidized App Building With Pricing Shakeup
© 2026 Daily Crypto News

Type above and press Enter to search. Press Esc to cancel.