< Back to situations

Monitor this situation.

[SITUATION] · [QUIET] · [TECHNOLOGY]

3 clusters · 24 sources · 7 days · First seen · Last updated

MANTRA Chain software exploit and network halt

Overview

MANTRA Chain, a Layer 1 blockchain, halted all network operations, including transactions, staking, and bridge operations, following a security exploit. The incident was attributed to a vulnerability in an upstream software dependency. The exploit caused significant market volatility, with the OM token dropping approximately 18.5% to an all-time low and trading volume increasing by nearly 600%.

The network has since resumed mainnet operations using version v8.4.0. The vulnerability was traced to the Cosmos EVM module, which had been upgraded shortly before the incident. While the project team stated that no user funds were exploited, developers have raised concerns regarding a lack of transparency concerning specific transaction hashes and the exact attack route.

Subsequent investigations revealed that the Cosmos EVM software stack exploit resulted in a loss of approximately $5.72 million across at least six networks, including MANTRA, TAC, and KiiChain. The vulnerability was identified as an “arithmetic underflow occurring when mirroring balances after staking operations.”

Cosmos Labs reported that while the flaw was identified on April 25, engineers mistakenly believed production chains were safe because they used 18 decimals rather than the six-decimal format used during initial testing. This misjudgment left multiple networks exposed for months. While the Cosmos Hub and ATOM tokens were not directly targeted, the shared software layer allowed attackers to move significant funds. In response, Cosmos Labs contacted 40 networks, and several chains have since patched or halted operations to mitigate further risk.

Entities

MANTRA Chain · Cosmos Labs · MANTRA · Upbit · VARA

Timeline

  1. 16 days ago

    [TECHNOLOGY] 5 sources
    Cosmos EVM exploit drains nearly $6 million across multiple networks

    Hackers exploited a long-standing Cosmos EVM vulnerability to steal nearly $6 million across multiple blockchain networks, including MANTRA and KiiChain, after a misjudgment regarding decimal precision.

  2. 16 days ago

    [TECHNOLOGY] 2 sources
    MANTRA Chain resumes operations after software dependency exploit

    MANTRA Chain has resumed operations via version v8.4.0 after a network halt caused by an upstream software exploit in its Cosmos EVM module. Developers have raised concerns over transparency and undocumented 코드

  3. 22 days ago

    [TECHNOLOGY] 18 sources
    MANTRA Chain halts network operations following software exploit

    MANTRA Chain has halted all transactions and network operations after an attacker exploited an upstream dependency vulnerability, causing the native token to drop to an all-time low.

Sources

altcoininvestor.com · bitcoinethereumnews.com · bitcoinsistemi.com · blocktempo.com · blogtienao.com · boxmining.com · cahighways.org · coinedition.com · cointelegraph.com · cointrust.com · comparic.pl · criptotendencias.com · crypto-insiders.nl · crypto.news · cryptobreaking.com · cryptoslate.com · cybernoz.com · en.bitcoinsistemi.com · kansrijk.nl · newsmaxtv.com · spacemoney.com.br · thehackernews.com · therogueginger.com · tronweekly.com

This summary has been updated 1 time: see revision history