Cosmos Labs recommended on Tuesday that any public blockchain running a version of its Cosmos EVM module below v0.6.2 or v0.7.2 "immediately halt the blockchain and upgrade it to include the patches in those releases." The post went up at 11:19 a.m. New York time and asked teams that have not shared security contacts to write to security@cosmoslabs.io "to receive critical updates."
The recommendation reaches an unknown number of networks that share one open-source codebase. Three chains that run it — MANTRA, TAC and KiiChain — were attacked between Aug. 20 and Aug. 22, and two are still frozen. Cosmos Labs has published no security advisory for the flaw.
KiiChain has put the only numbers on the damage. An attacker drained 148 million, KII from wallets on the chain on Aug. 22, "repeating the same technique 18 times against different targets," the team said in an incident report published Aug. 24. That is worth roughly $9.7 million at the $0.0653 KII traded at 21:00 UTC that day, per CoinGecko. KiiChain halted the network at block 9,355,723, timestamped 22:50:58 UTC. A public node showed that block still as the chain tip on Tuesday afternoon, 66 hours later.
About 80.7 million KII, or 54.4%, sits in attacker addresses the halt immobilized and will be moved to recovery wallets at restart, the report said. The other 67.6 million was bridged to BNB Smart Chain through Hyperlane, where 64.6 million was sold on decentralized exchanges for roughly 1.61 million BUSD. A final 3 million went to a KuCoin deposit address; KiiChain said "confirmation is still pending" on whether it can be recovered.












