Critical vulnerability in Cosmos EVM module exploited across multiple chains, with KiiChain losing 148M KII tokens and networks halting to prevent further damage.
Security & Exploits ·
Cosmos Labs directed affected networks to pause operations after a critical security flaw in the shared EVM module was exploited across multiple chains. KiiChain sustained the heaviest damage, losing more than 148 million KII tokens, while TAC and MANTRA also reported exposure to the same infrastructure vulnerability.
In response, KiiChain and TAC shut down their respective networks to block additional unauthorized withdrawals. MANTRA implemented a temporary operational pause and subsequently verified that no customer assets were affected following remediation efforts. The timing of notifications played a role in the damage; delayed alerts from Cosmos Labs meant attackers had an extended window to exploit the flaw before networks went offline.
The scope of the vulnerability and whether other Cosmos EVM chains remain at risk or require similar halts remains unclear. No statement has emerged detailing a timeline for network restoration or the root cause analysis of the EVM module flaw.