GMX Releases $40 Million Vulnerability Exploitation Event Recap: Further Discussion on Compensation Measures
BlockBeats News, July 11, GMX officially released a summary report on the GMX V1 approximately $40 million exploit on Arbitrum.
Event Summary:
The attacker bypassed the PositionRouter and PositionManager contracts (usually responsible for calculating the average short price) by directly calling the Vault contract's increasePosition function through reentrancy;
Through manipulation, the attacker pushed the BTC average short price down from $109,505.77 to $1,913.70;
Using a flash loan, the attacker purchased GLP at a normal price of $1.45, opening a $15 million position;
Due to the manipulated price, the GLP price was pushed above $27, allowing the attacker to redeem GLP at a high price for profit;
GMX has confirmed that V2 does not have a similar vulnerability.
Next Step Funding Situation:
Approximately $3.6 million remains in the GLP pool, reserved for unclosed positions;
The cost of V1's GLP on Arbitrum this week is around $500,000 (excluding the 30% portion allocated to GMX stakers) and will be transferred to the DAO Treasury for compensation;
Will disable GLP minting and redemption on Arbitrum (redemption disablement requires a 24-hour Timelock);
Disable GLP minting on Avalanche but retain the redemption function;
Enable the closure of V1 positions on Arbitrum and Avalanche, disable opening positions to prevent a recurrence of the vulnerability;
Cancel V1 orders on Arbitrum and Avalanche. Remaining funds in the GLP pool on Arbitrum will be allocated to the compensation pool for use by affected GLP holders.
After the above steps are completed, the GMX DAO will discuss further compensation measures. It is recommended that all GMX V1 forks take immediate action, await fixes and audits before re-enabling trading and minting of GLP-like tokens.
You may also like

DeFi has reached its most dangerous moment: the real vulnerabilities are not in the code

Vitalik emphasized in a post that Ethereum must be "amazing," but the foundation is not the center

WEEX Bitcoin Pizza Day: Zero Fees, BTC Cashback & 150,000 USDT to Honor Crypto History

New Types of Information Laundering in Prediction Markets: How Secrets Integrate into Investment Signals

The richest chairman of the Federal Reserve in 112 years has arrived: Kevin Warsh is rewriting the rules

Vitalik talks about the future of the Ethereum Foundation: a smaller, more distinctive, yet more enduring ship

Agentic Design Patterns: A book that made me rethink "What exactly is an Agent?"

Key Takeaways: Full Text of Google Chief Scientist Shanahan's Speech

SuperEx's Mars exploration dream: Digital currency is the key to unlocking economic exchanges in the interstellar era

Morning News | Michael Saylor stated that this week he bought bonds instead of Bitcoin; StablR was attacked and lost about 2.8 million dollars; the U.S. Congress is pushing the Bitcoin Reserve Act again

a16z: 7 Images to Understand How Tokenization Changes the Nature of Assets

The secret to Hyperliquid's success dismantled from the five-layer financial stack

After Futu Securities was banned, will buying stocks on-chain be the new remedy?
Why Crypto Traders Are Watching Gold and Nasdaq Again in 2026

Why have foreign exchange stablecoins never taken off?

AIDC, computing power leasing, and cloud: The "three-part thesis" of AI transformation in cryptocurrency mining farms

Futu has had all its illegal gains confiscated, reminding cryptocurrency exchanges

