SlowMist: GMX was attacked because the average short price of GMX v1 can be manipulated, and the price of GLP was maliciously raised for arbitrage
Odaily News SlowMist CISO @im23pds posted on the X platform: The root cause of the GMX attack is that GMX v1 will immediately update the global short break price when processing short positions, and this global break price will directly affect the calculation of the total asset size (AUM), which will lead to the manipulation of the GLP token price. The attacker took advantage of this design flaw and enabled the timelock.enableLeverage feature (a necessary condition for creating large short orders) when executing orders through Keeper. By re-entering, the attacker successfully created a large short position to manipulate the global average price, artificially raising the GLP price in a single transaction and profiting from redemption operations.
You may also like

The "PayPal Mafia" of the AI era, from an internship to a net worth of billions

The Most Crypto-Knowledgeable Fed Chair in History: What Cryptocurrencies Does Kevin Warsh Hold?

X Launches Cashtag, Musk's Super App Most Concrete Landing

Educational | How Can the Average Person Quickly Identify Token Rug Pull and Trading Strategy?

Rhythm X Zhihu Event Guest Announcement, featuring experts from academia, institutions, and individuals covering all aspects of the AI Agent's transformative financial model.

Is It a Dead Cat Bounce or the Bull Market Revival? How Do Traders View It?

Why Can Bitcoin Rise Against the Tide of Turmoil?

OpenAI and Anthropic, both pre-IPO, want to keep brawling

Entry is Revenue, Is YouTube Turning into a Neobank?

NEET Reaches New High, Another Cultural Phenomenon of AI Meme

CROO officially releases the CROO Agent Protocol (CAP), building a decentralized business infrastructure for AI agents

Who is swimming naked, and who is breaking the waves? Analysis Report on the Comprehensive Ranking of Hong Kong Licensed Virtual Asset Trading Platforms (VATP)

Deconstructing RAVE Dealer Control Techniques

70x in a Month: When $RAVE Put Istanbul’s Dancefloor on the Chain
A Web3 project with zero VCs and no whitepaper started with a midnight party for 200 people. Eighteen months later, its token $RAVE is up 70x, and its contract liquidations briefly eclipsed Ethereum’s. Is this just pure speculation, or are we looking at a new breed of cultural asset?

Bearish Traders Continue to Short Bitcoin | Rewire News Morning Update

Is Nasdaq About to Reach a New High, Is the Bull Market Back?

Goldman Sachs Applies for Bitcoin ETF, Wall Street's Final Bastion Falls

