Cosmos Labs Alerts EVM Networks to Halt Operations
Cosmos Labs advises EVM-compatible networks to pause block production following an undisclosed security incident affecting modular infrastructure.
Cosmos Labs has not yet disclosed the nature of the issue, the specific networks involved, or any potential financial losses.
An ongoing security incident has impacted users of the Cosmos EVM module. Cosmos Labs’ security and engineering teams have been proactively responding to this incident. We have advised the Cosmos EVM chains that are in contact with us to request that validators halt their chains.…
— Cosmos Labs (@cosmoslabs_io) August 24, 2026
Security and engineering infrastructure teams at Cosmos Labs are currently investigating the case. They have recommended that EVM networks in contact with them request validators to halt their respective blockchains until the situation is brought under control.
Such a step is typically intended to limit the ability of a vulnerability to be further exploited while developers identify the root cause. In this instance, however, Cosmos Labs has not confirmed whether the incident resulted from an exploit, a software bug, or another type of compromise.
This distinction is vital because Cosmos EVM is not a single, standalone network. The module allows Cosmos SDK-based chains to support the Ethereum Virtual Machine and ETH-compatible applications and tools. Consequently, the potential scope of the problem depends on which part of the EVM infrastructure is affected and which networks utilize the specific version or configuration involved.
Affected Networks and Potential Losses Remain Unknown
The greatest uncertainty at this stage is the scale of the incident. Cosmos Labs has not published a list of affected nodes nor specified how many users have been impacted.
There is also no confirmed estimate regarding stolen or at-risk funds. This means it is currently impossible to determine if this is primarily a preemptive infrastructure shutdown or if broader financial damage has already occurred.
The company expressed gratitude to the teams using Cosmos EVM for their rapid response and stated that a full incident report will be published once the matter is resolved.
This response will likely be key to determining the technical cause, the timeline, and the actual scope of the problem.
Calling for validators to cease block production is a serious but relatively direct protective measure during a potential network infrastructure vulnerability. While a shutdown can disrupt transactions and applications, it simultaneously restricts changes to the chain’s state while developers analyze the issue and prepare a potential fix.
Incident Highlights Risks of Shared EVM Code
The situation underscores a specific risk inherent in modular blockchain architecture. When multiple independent networks rely on a common software component, a flaw in that component can potentially require a coordinated response across more than one ecosystem.
This does not automatically mean all Cosmos EVM networks are vulnerable. The specific impact may depend on software versions, configurations, and how individual chains integrated the module. For this reason, the current lack of technical details prevents a reliable assessment of systemic risk.
The next critical signal will be whether Cosmos Labs allows halted networks to resume block production following a software update and whether additional affected chains are identified.
Until these details are released, the most significant fact remains the recommendation to halt the networks itself. It demonstrates that Cosmos Labs views the incident as serious enough to prioritize risk containment over the continuous operation of the affected EVM infrastructure.

Fill in necessary fields and publish