Attackers exploited a critical Cosmos EVM vulnerability across six blockchain networks from Aug. 20 to Aug. 25, converting stolen tokens into about $2.87 million on decentralized exchanges and $2.85 million on centralized exchanges. Cosmos Labs received the bug report through its bounty program on April 25 but initially concluded that live production networks were not exposed after failing to reproduce the attack. It merged a silent fix in May and released patched versions on Aug. 19 without a vulnerability-specific warning. Independent researchers later established that all Cosmos EVM chains were affected. MANTRA lost 720.9 million tokens valued at about $3.6 million, while TAC and KiiChain suffered separate attacks. Cosmos Labs coordinated with 40 networks and helped 13 patch or halt before attacks, but recommended halting only after three networks had been breached. The attackers' centralized-exchange accounts were frozen pending investigation, while no stolen tokens had been recovered as of Aug. 28.