SlowMist: GMX Theft Leads to GLP Price Manipulation, Attacker Manipulates Global Average Price by Creating Large Short Positions through Reentrancy
BlockBeats News, July 10th. SlowMist Cosmos stated in a post that the fundamental reason for the $42 million theft of GMX last night was that GMX v1 would immediately update the global short average price when handling short positions. This global average price directly affects the calculation of the total asset under management (AUM), leading to the manipulation of the GLP token price.
The attacker exploited this design flaw by using a Keeper to enable the timelock.enableLeverage feature when executing orders (a necessary condition for creating large short positions), successfully creating a large short position through reentrancy to manipulate the global average price. This artificially inflated the GLP price in a single transaction and profited through redemption operations.
You may also like

Can the CLARITY Act Become Law by July 4? Everything You Need to Know About the Final Battle

How to exit after asset tokenization?

The foundation of SpaceX's trillion-dollar valuation: Who is dividing Musk's annual capital expenditure of tens of billions?

France vs Senegal World Cup 2026: Mbappe’s New Era Begins Against a Historic Rival

SharpLink CEO: How to understand that Ethereum developers have just surpassed 1 million?

Morning Report | MiCA grace period expires on July 1; Kalshi's trading volume in the first week of the World Cup breaks $5.1 billion, setting a record

What is the connection between Huang Zheng of Pinduoduo and blockchain?

Morning Report | Prediction market platforms like Kalshi and Polymarket jointly sue Kentucky over 14.25% trading tax; Bridgewater founder discusses decision-making in the AI era: principled thinking should run parallel to AI, human insight remains irre...

If the AI bubble has already burst, who will truly remain?

Paul Graham: How to Make a Billion Dollars

After 18 years, blockchain has finally started to head towards the main channel

Claude enforces "facial recognition for household registration," starting in July, no ID card means no access?

On the day of SpaceX's IPO, the first real test of the three perpetual mechanisms

Value Distribution of Stablecoins

Galaxy Deep Dive: Is the Bitcoin Four-Year Cycle Still Valid?

SpaceX IPO, Nvidia, and Bitcoin: Why Traders Are Watching More Than Just Crypto in 2026

The other side of Musk's trillion-dollar fortune: 85% cannot be sold

