GMX Exploit Reveals Design Flaw, $42M Lost
GMX v1 exploited by hackers due to design flaw, causing $42M loss. SlowMist identifies vulnerability, with GMX pausing trading and offering bounty.

- GMX lost approximately $42 million due to a design flaw.
- SlowMist identified the vulnerability in GMX v1.
- Trading paused, a bounty offered for fund return.

GMX v1 on Arbitrum suffered a $42 million exploit on July 10, 2025, due to a design flaw, identified by security firm SlowMist, prompting immediate protocol suspensions.
The exploit exposes potential vulnerabilities and underscores the challenges in ensuring DeFi security, swiftly impacting market confidence.
The security breach at GMX revealed vulnerabilities in their v1 design. Users suffered significant losses when hackers exploited this flaw to manipulate GLP token prices, draining funds from the liquidity pool.
Key players include SlowMist, who identified the vulnerability, and the GMX Core Team, who took prompt action by suspending trading activities and offering a 10% bounty for the return of stolen assets.
Financial markets saw immediate repercussions. The value of GMX’s governance token fell sharply. The exploit resulted in a loss of public trust, underlining the need for robust security measures in DeFi platforms.
“The vulnerability arises from the immediate update of the global average price when handling short positions. This price directly affects the calculation of the total asset under management (AUM), leading to potential manipulation of the GLP token price.” – @im23pds, CISO, SlowMist
The loss affected major stablecoins like USDC and pressured DeFi protocols to tighten security defenses. It highlighted vulnerabilities in decentralized mechanics, impacting their usability and trustworthiness among users.
Historically, design flaws and reentrancy vulnerabilities have plagued the DeFi sector. This incident accentuates the importance of continual security audits and improvements, aiming for safer crypto ecosystems. The event forecasts heightened scrutiny and innovation in crypto security.
More From Crypto News
Circle’s EURC Goes Live on Upbit in South Korea
The report identifies three things: the asset is EURC, the platform is Upbit, and the market is South Korea. A single source, Crypto Briefing, reported the list...
SlowMist: Liquid Network Exploit Minted 3,998 L-BTC
Security firm SlowMist has reportedly attributed a Liquid Network exploit that allowed an attacker to mint 3,998 L-BTC, a claim circulating in secondary reporti...
GYEN Wind-Down: Coinbase to Convert Holdings to USDC
GMO-Z. com Trust Company is winding down its GYEN stablecoin, and Coinbase plans to convert customer GYEN holdings to USDC, according to unconfirmed reports.
HeyAnon Token Triples After Equilibra Robinhood Chain Deployment
Crypto Briefing reported that ANON tripled on Friday following Sesta’s Equilibra announcement, describing Equilibra as a custom automated market maker. That cla...
Binance Alpha NES Swap and Refund: Two-Snapshot Eligibility
Binance Alpha is using two separate snapshots to decide which NES holders qualify for a 1:1 swap and which fall under refund treatment after an exploit hit the...
Nasdaq Plans $100M Investment in Kraken Parent Payward
The deal is a proposed investment, not a completed one, making Nasdaq’s investment in Payward one of the larger strategic bets tied to bringing traditional stoc...