PANews, August 26: According to on-chain analytics platform Bubblemaps on X, an investigation into the security vulnerability exploit targeting the Cosmos EVM module revealed that the primary attacker address, 0x9AE7, purchased $250,000 worth of NES tokens and bridged them to Nesa Chain, exploiting a balance vulnerability to inflate their holdings 200-fold. The attacker then bridged approximately $50 million worth of NES back to Ethereum. The initial funds for the attack originated from Monero. The attacker used multiple wallets to exchange NES for ETH on DEXs and deposited the proceeds into centralized exchanges. However, due to rapid liquidity withdrawal, most of the exchanges suffered extreme slippage, and the attacker ultimately sold only $315,000 worth, netting a realized profit of approximately $60,000 after costs.
Cosmos EVM Vulnerability Attack: Attacker Inflated $50M NES, Only Made $60K Profit
PANewsShare
A recent vulnerability incident targeted the Cosmos EVM module, where an attacker exploited a balance flaw to inflate NES tokens by 200 times. The attacker spent $250,000 in NES, cross-chained them to the Nesa Chain, and moved $50 million in inflated tokens back to Ethereum. Funds were traced to Monero. Despite attempts to swap on DEXs and deposit on CEXs, liquidity issues resulted in significant slippage. Final sales netted $315,000, yielding a $60,000 profit. On-chain analysis reveals the full attack path.
Source:Show original
Disclaimer: The information on this page may have been obtained from third parties and does not necessarily reflect the views or opinions of KuCoin. This content is provided for general informational purposes only, without any representation or warranty of any kind, nor shall it be construed as financial or investment advice. KuCoin shall not be liable for any errors or omissions, or for any outcomes resulting from the use of this information.
Investments in digital assets can be risky. Please carefully evaluate the risks of a product and your risk tolerance based on your own financial circumstances. For more information, please refer to our Terms of Use and Risk Disclosure.


