SlowMist: The core reason for the GMX attack is that the global short average price of GMX v1 can be manipulated, causing the GLP price to be maliciously inflated for arbitrage.

By: theblockbeats.news|2025/07/10 01:21:53
0
Share
copy

BlockBeats News, July 10th, Slowmist CISO @im23pds tweeted that "The root cause of the GMX attack is that GMX v1 immediately updates the global short position average price when handling short positions. This global average price directly affects the calculation of the total asset under management (AUM), leading to the manipulation of the GLP token price.

The attacker exploited this design flaw by using a Keeper to enable the timelock.enableLeverage feature when executing orders (a necessary condition to create a large short position). Through reentrancy, they successfully created a large short position to manipulate the global average price, artificially raising the GLP price in a single transaction and profiting through redemption.

-- Price

--

You may also like

a16z New Article: Predictive Markets Entering Fast-Forward Phase

Data, systems, and transactions are accelerating the institutional penetration of the market.

a16z founder: In the age of Agents, what truly matters has changed

The best programmers in the future may not need to write code, but they must have strong logical reasoning and system architecture thinking, because code will become a cheap commodity due to AI.

The President of Kyrgyzstan meets with Sun Yuchen, and TRON collaborates with Kyrgyzstan to build a new pattern of digital economy in Central Asia

This meeting focused on the global trends in digital financial transformation, the construction of regulatory frameworks for virtual assets, and the strategic layout of the TRON ecosystem in Central Asia, marking a substantial phase in the cooperation between TRON and Kyrgyzstan in the fields of blo...

46 minutes, $292 million stolen, DeFi faces development dilemma again

"Let's withdraw from DeFi first, it's too dangerous. This time the damage is much greater than Drift/Cowswap..." said well-known DeFi investor Dovey Wang.

How to Earn Free USDT in 2026: No High Volume Required (WEEX Poker Party Guide)

Is Joker Crypto legit in 2026 or just another memecoin? Can You Really Earn Passive Income with Joker Crypto in 2026? Learn how Joker staking rewards work, how to earn NFT bonuses, expected APY ranges, gas-fee rebates, and how to avoid crypto scams before joining.

How to Get Free USDT Welcome Bonus in 2026: Earn Up to 700 USDT on WEEX

Legit Free Welcome Bonus 2026: Learn how to earn up to 700 USDT on WEEX with Auto Earn Boost Fest. Increase your balance, activate Auto Earn, and qualify automatically.

Contents

Popular coins

Latest Crypto News

Read more