logo

EVM – Cosmos Convergence Research From Security Base: Part 2

ID: 77a5f140-ec80-5960-be18-8cbea2f5a6d3

STIX ID: report--77a5f140-ec80-5960-be18-8cbea2f5a6d3

Feed Name: CertiK Blog

Threat Score
70/100

Date Published: 2025-06-09

Date Updated: 2026-06-11

...
...

This blog post analyzes a class of vulnerabilities introduced by stateful EVM precompiles on Cosmos EVM chains that allow Cosmos SDK state mutations to become inconsistent with the EVM state. It describes three principal issues—(1) missing commits causing partial state transitions, (2) precompile execution reverts that do not roll back Cosmos state (enabling delegation/fund-drain scenarios), and (3) out-of-gas induced partial writes—provides GHSA identifiers and code references, and notes that patches have been released for affected implementations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.