SlowMist Cosine: GMX-related fork projects need to avoid similar security risks as GMX v1

By: odaily.com|2025/07/10 21:01:40
0
Share
copy

Odaily News Yu Xian, the founder of SlowMist, posted on the X platform that GMX-related fork projects need to pay attention to similar security risks. He said that the fundamental reason why GMX was stolen for $42 million last night was that GMX v1 would immediately update the global short average price (globalShortAveragePrices) when processing short positions, and this global average price would directly affect the calculation of the total asset size (AUM), which would lead to the manipulation of the GLP token price. The attacker took advantage of this design flaw and enabled the timelock.enableLeverage feature (a necessary condition for creating large short orders) when executing orders through Keeper. By re-entering, he successfully created a large short position to manipulate the global average price, so as to artificially raise the GLP price in a single transaction and profit through redemption operations.

-- Price

--

You may also like

WEEX Bitcoin Pizza Day: Zero Fees, BTC Cashback & 150,000 USDT to Honor Crypto History

Join WEEX’s Pizza Day celebration! From zero fees to BTC cashback, honor the first ever real-world bitcoin transaction. 150,000 USDT prize pool, that's the way WEEX rewards its users and honors crypto history.

New Types of Information Laundering in Prediction Markets: How Secrets Integrate into Investment Signals

The harsh reality is that information laundering is not a man-made loophole in the prediction market, but rather a side effect of its core operating mechanism.

The richest chairman of the Federal Reserve in 112 years has arrived: Kevin Warsh is rewriting the rules

The "richest" new chairman of the Federal Reserve, Kevin Warsh, has officially taken office. His alternative proposal of "balance sheet reduction + interest rate cuts" aims not only to reshape the decision-making mechanism but also to profoundly disrupt the U.S. Treasury, the dollar, and the global ...

Vitalik talks about the future of the Ethereum Foundation: a smaller, more distinctive, yet more enduring ship

Vitalik elaborated on his personal views regarding the transformation direction of the Ethereum Foundation: EF is not "the center of Ethereum," but one of many nodes. With limited resources, EF chooses long-termism over spreading itself thin, focusing on key tasks that "would not happen without EF"—...

Agentic Design Patterns: A book that made me rethink "What exactly is an Agent?"

Google Engineering Director's new book deeply analyzes: 21 design patterns of AI Agents. This article reveals the core progression from "bare LLM" to advanced intelligent agents, detailing Context Engineering, the dual Agent reflection mechanism (Producer-Critic), and the three-layer memory model, w...

Key Takeaways: Full Text of Google Chief Scientist Shanahan's Speech

Google DeepMind Chief Scientist Shanahan's London Speech: Deconstructing the mental attributes of large language models (LLM) using the framework of Wittgenstein, analyzing the trend of "alien self-identity" under the context of all-weather agents.

Contents

Popular coins

Latest Crypto News

Read more
iconiconiconiconiconiconicon
Customer Support:@weikecs
Business Cooperation:@weikecs
Quant Trading & MM:bd@weex.com
VIP Program:support@weex.com