
Cosmos misjudged a critical bug for 4 months before hackers stole nearly $6 million across 6 chains
The vulnerability was patched in the main codebase in May but later proved broader than engineers initially believed.
Follow crypto hack news, exploits, bridge attacks, protocol breaches, and security lessons from major incidents across Web3.

MANTRA mainnet is running on v8.4.0, while wallet addresses, transaction hashes, amounts and the attack path remain undisclosed.

Coinspect says five wallet apps used vulnerable code that sharply reduced the randomness behind recovery phrases.

Core Lightning is urging node operators to upgrade or go offline as multiple vulnerabilities remain under embargo.

Repository history places the official protection in 0.21.0, leaving earlier standard releases exposed unless separately patched.

Trail of Bits says the flaw put token supply and about $500,000 of HASH escrow at risk, but no exploitation was confirmed.

Socket confirmed 40 malicious IDs, and exposed crypto wallet secrets still require migration after the add-ons are removed.



