Slow Fog: The core reason for the attack on GMX is that the global short average price of GMX v1 can be manipulated, and the GLP price has been maliciously inflated for arbitrage
ChainCatcher news, according to Slow Mist CISO @im23pds's tweet, "The fundamental reason for the attack on GMX is that GMX v1 immediately updates the global average short price when handling short positions, and this global average price directly affects the calculation of total assets under management (AUM), which in turn leads to manipulation of the GLP token price.The attacker exploited this design flaw by using the feature timelock.enableLeverage during order execution via Keeper (a necessary condition for creating large short positions), successfully creating large short positions through reentrancy to manipulate the global average price, artificially raising the GLP price in a single transaction and profiting through redemption operations."