logo

SlowMist Cosine: GMX-related fork projects need to avoid similar security risks as GMX v1

By: odaily.com|2025/07/10 13:01:31

Odaily News Yu Xian, the founder of SlowMist, posted on the X platform that GMX-related fork projects need to pay attention to similar security risks. He said that the fundamental reason why GMX was stolen for $42 million last night was that GMX v1 would immediately update the global short average price (globalShortAveragePrices) when processing short positions, and this global average price would directly affect the calculation of the total asset size (AUM), which would lead to the manipulation of the GLP token price. The attacker took advantage of this design flaw and enabled the timelock.enableLeverage feature (a necessary condition for creating large short orders) when executing orders through Keeper. By re-entering, he successfully created a large short position to manipulate the global average price, so as to artificially raise the GLP price in a single transaction and profit through redemption operations.

K Wave Media and Anson Funds reach a $500 million convertible bond agreement to increase BTC holdings
In the week ending July 5, initial jobless claims in the United States were 227,000, compared to an expected 235,000.

You may also like

Share
copy

Gainers

Latest Crypto News

17:16

Bank of England Deputy Governor Broadbent: Keeping the US and UK in sync on stablecoin regulation is crucial

17:16

In the past 24 hours, the entire network has witnessed a total liquidation of $1.603 billion, with the majority coming from long positions.

17:16

Bitcoin Rises to Touch $104,000

17:16

The probability of a 25 basis point interest rate cut by the Federal Reserve in December is currently at 64.5%.

16:46

To end the government "shutdown," the Democratic leaders in Congress are calling on Trump to start negotiations.

Read more
Community
icon
icon
icon
icon
icon
icon
icon

Customer Support@weikecs

Business Cooperation@weikecs

Quant Trading & MM[email protected]

VIP Services[email protected]