Mantra Suffers $3.6 Million Loss Due to Cosmos EVM Underflow Bug
An attacker exploited a Cosmos EVM underflow bug to drain 720 million MANTRA from Mantra, resulting in a loss of $3.6 million. The majority of the funds were already sent to an exchange before the halt was implemented.
An attacker drained 720 million MANTRA tokens from Mantra, amounting to a loss of $3.6 million as reported in MANTRA's postmortem. This incident was caused by a confirmed underflow bug in the Cosmos EVM, which allowed the attacker to exploit the vulnerability effectively. The halt to the exploit was implemented too late, with 94.7% of the drained tokens already reaching an exchange.
The Cosmos EVM underflow bug not only affected Mantra but also led to vulnerabilities in three additional chains days later. This indicates a broader issue within the ecosystem that could potentially impact other projects utilizing the same technology. The incident highlights the risks associated with smart contract vulnerabilities and the importance of timely responses to security threats.
While the specific chain involved is not stated, the use of the Cosmos EVM suggests that the incident may have implications for other projects operating within that environment. The on-chain record would reflect the movement of the drained tokens, but specific addresses are not provided in the description.
