Cosmos Labs Faces Criticism Over Disclosure Bug Issue, Leading to Recommendations for EVM Chains to Halt Operations
Cosmos Labs Faces Criticism Over Disclosure Bug Issue, Leading to Recommendations for EVM Chains to Halt Operations
A serious security flaw has been discovered in the shared modules that make up the Cosmos EVM infrastructure, resulting in multiple blockchain networks being affected by attacks that exploited this vulnerability.
Specifically, it is believed that vulnerabilities arose from a combination of several upstream defects, including calculation errors in staking processes, such as underflows. Among the affected networks, MANTRA and Nesa were able to prevent direct impacts on user funds through proactive chain halting measures.
On the other hand, KiiChain suffered a loss of approximately 150 million KII, equivalent to about $9 million at the time's theoretical price (around 1.43 billion yen), leading to a collapse in token prices. Additionally, around 3 billion TAC, worth approximately $7.5 million (about 1.19 billion yen), was withdrawn from staking contracts, resulting in significant losses being reported.
Growing Criticism from the Community Regarding Disclosure Practices
In this series of incidents, the most strongly criticized aspect by the security community in the cryptocurrency industry and the affected projects is the information-sharing process of Cosmos Labs, the module developer.
After the situation was revealed, Cosmos Labs urgently recommended the halting of EVM chain operations for the affected networks. However, the disclosure of vulnerability fixes that occurred prior to this was handled in a manner close to a silent patch model (post-fix without public disclosure), which has been criticized as extremely inadequate.
Delayed Response and Future Challenges
According to a verification report published by KiiChain, when a critical patch was made public in mid-August, individual notifications were not sent to the affected chains in advance, and there was insufficient warning regarding the importance of the update. As a result, attackers were able to exploit the vulnerability before the patch was applied, having analyzed the code updates.
It has been pointed out that if clear emergency halting measures had been communicated after prior non-public notifications, the damage could have been minimized. Cosmos Labs plans to submit a detailed incident report, but this case has left significant challenges regarding the coordination and disclosure processes of vulnerability information among infrastructure providers in the industry.
-- Price
This content is provided for general informational purposes only and doesn't constitute financial, investment, legal, or tax advice. Any events, rewards, online promotions, or related information mentioned herein should not be considered a recommendation, solicitation, or invitation to purchase, sell, trade, or otherwise deal in any crypto assets. Crypto assets are highly volatile and may result in loss. The availability of WEEX services, products, and related events may vary by region. You are responsible for ensuring that your participation is in accordance with applicable local laws and regulations.
You may also like

Attacker Steals $50 Million in NES, Only Profits $60,000

Cosmos EVM Module Faces Security Incident, Multiple Chains Affected

Apple TV+ Raises Price for the 4th Time: What's Behind It

Mounjaro Receives Cardiac Approval from the FDA: What It Means for Eli Lilly

GDP, Debt, Rates: Is France Heading Towards Recession?

Cedears: ETFs Replicating Soybeans and Corn to Be Added to the Market

Spot Trading on Decentralized Exchanges Reaches 13.6%, Sparking Debate on DeFi Governance

Intense Battle in the Sejm Over Presidential Veto. Czarzasty Strongly on Cryptocurrencies and 'Mafia Activities'

Walmart Reaches Settlement with U.S. Over Opioid Lawsuit

Cyberattack at Lingor: Identity Documents, IBANs, and Addresses of Gold Buyers Exposed

JPMorgan’s IBIT Bitcoin ETF bet just missed its escape hatch to avoid 6% deduction

A zero-revenue public company tried to copy Michael Saylor to avoid delisting, but its stock immediately crashed 25%

Coinbase: "Finance Was Built for People Who Sleep"

Beyond the rally: 4 Trends to watch this cycle

Aging is not linear: cells go through coordinated stages of deterioration

Export Tax on Oil Suspended by Court

The $37 Billion Tokenization Boom Has an Ownership Problem

Sanctum Becomes Leading Protocol on Solana, But Revenues Plummet by 39.7%

From $250,000 to $60 million! Durant's AI investment is more profitable than his NBA career

City Protocol Raises $11 Million: Will It Bring Hedging, Arbitrage, and Private Equity on-chain?

Bank of England Sets Legal Goal to Support Stablecoins and Promote Payment Innovation

Monetization of Debt: Treasury Conceals Deficits and Expropriates Savings with Stablecoins

UK crypto gains hit £1.38B as 240 investors report over £1M each

Robinhood Chain Sees Over $100 Million Meme Coin, Crypto-Stock Pairing Boosts RWA

Senolytics Reduce Harmful Microglia in Aging Mouse Brains

$3.16 Billion Inflow Observed for BlackRock ETFs

Who is Charging the Toll in the Era of "Everything on the Chain" as Tokenization's "Back-End" is Clearly Priced?

A Founder’s Reflection: Why Did Fomo Run Further Than Us from the Same Starting Point?

STX crypto review 2026: Tokenomics, BTC yield and staking demand



