News linked to both this project and an event.
According to PeckShieldAlert, the cryptocurrency industry saw 50 major attack incidents in August 2026, an increase of 67% over the 30 incidents in July. Total losses reached approximately $136.3 million, a 49.5% decrease from the $270 million in July. The Tectonic.cro incident caused approximately $74 million in losses, ranking as the fourth-largest crypto theft of the year, behind only attacks associated with Drift, KelpDAO/LayerZero, and COLDCARDwallet. The attacker managed to cross-chain only around $6 million to Ethereum before Cronos suspended its entire network, leaving the rest of the funds mostly stranded on Cronos. The attacker has since started laundering the illicit proceeds and bridging a portion to Bitcoin, amounting to roughly $200,000 to date. Other significant attack incidents in August involved Moonwell, Termlabs, Coinsbuy, TAC, Injective, MANTRA, BounceBit, Cosmos Labs, and aquifer.
According to Odaily, an investigation into the security vulnerability exploit of the Cosmos EVM module reveals that the primary attacker (0x9AE7) purchased $250,000 worth of NES and bridged it to Nesa Chain, exploiting a balance vulnerability to inflate holdings to 200 times their original size, then bridged approximately $50 million worth of NES back to Ethereum. The attacker's initial funding for the wallet originated from Monero. Through multiple wallets, the attacker exchanged NES for ETH on DEXs and deposited the proceeds into centralized exchanges. Due to rapid liquidity withdrawal, most exchanges suffered extreme slippage, and the attacker ultimately sold for only $315,000, netting a profit of approximately $60,000 after deducting costs.
Cosmos Labs stated that a security incident is occurring in the Cosmos EVM module and has already affected relevant users. Its security and engineering teams are addressing the situation and have advised the contacted Cosmos EVM chains to require validators to suspend chain operations. Cosmos Labs has not yet disclosed vulnerability details, the affected chains, or specific losses, stating that an incident report will be published after the matter is resolved.
TAC tweeted that on August 22, an attacker exploited a vulnerability in the Cosmos EVM precompile layer, transferring 2,985,651,403 TAC from a single account on the TAC network. The project team subsequently paused the network at block height 24,671,475 to halt the attack.
RWA Layer 1 blockchain MANTRA Chain announced that the vulnerability in the Cosmos-EVM module has been patched, the network has resumed operations and block production, and the incident did not affect user funds. The team will release a complete post-incident analysis report in the coming days.
Secret Network 团队提议将隐私区块链从 Cosmos 迁移至 Arbitrum,称 AI 使旧代码更易被攻击的安全风险及生态流动性下降是主要考量。
According to Odaily, the privacy-focused public chain project Namada officially stated that the protocol encountered a vulnerability attack incident. The team is currently investigating and has contacted relevant parties to assist in handling the matter.Officials stated that if the operator behind this attack is a white hat hacker, they hope the individual will proactively contact the team to further understand the vulnerability and facilitate a resolution.On-chain data shows that some ATOM assets related to the incident were allegedly transferred to a Cosmos Hub network address via IBC (Inter-Blockchain Communication protocol). According to on-chain tracking information, this address received approximately 228,517 ATOM on June 18. The funds were subsequently drained within hours through IBC transfers and multiple outgoing transactions. Currently, only a small balance remains in this address.As of now, Namada has not disclosed the type of vulnerability, the attack method, or the specific scale of losses. The relevant investigation is still ongoing.
The Cosmos ecosystem’s cross-chain bridge Gravity Bridge was reportedly attacked due to a leaked signature key, resulting in approximately $5.4 million in stolen assets. The official team has confirmed the security incident and has urgently suspended bridging services to conduct an investigation. Validators have also been instructed to halt their validator nodes and coordinators. It is reported that the bridge’s contract keys may have been compromised.
According to Cointelegraph, the widespread adoption of AI is driving up the number of submissions to cryptocurrency industry bug bounty programs—but a flood of low-quality “AI spam” reports has also emerged, placing a heavy burden on protocol teams for triaging. Barry Plunkett, Co-CEO of Cosmos Labs, stated that submission volume to its platform surged 900% year-on-year, with 20–50 reports received daily; Kadan Stadelmann, CTO of Komodo Platform, likewise noted a marked rise in low-quality and false-positive reports, attributing the root cause primarily to AI’s drastic reduction in the cost of generating reports. Daniel Stenberg, creator of the open-source tool curl, has already shut down his bug bounty program outright due to being overwhelmed. In response, industry insiders recommend that teams deploy defensive AI systems to automatically triage reports and adopt stricter submission criteria—reducing the volume of invalid reports and ensuring genuine vulnerabilities receive timely attention.
Security researcher Doyeon Park announced on X that he discovered and disclosed a high-severity CVSS 7.1 zero-day vulnerability in the Cosmos consensus layer (CometBFT). This vulnerability could cause network nodes to stall during block synchronization, thereby affecting system operation—but it cannot directly lead to asset theft. Doyeon Park stated that he made every effort to follow the Coordinated Vulnerability Disclosure (CVD) process; however, due to the project team’s lack of cooperation and “irresponsible decisions,” he ultimately chose to publicly disclose the vulnerability details, adding that any resulting security risks would be borne by the relevant project teams.