OceanAltOceanAlt

Security incident · 2025-07-09

GMX V1 Perps

According to the public DefiLlama incident dataset, GMX V1 Perps (Arbitrum) suffered a security incident on 2025-07-09, with about $42.0M reported lost.

Date2025-07-09
Reported loss$42.0M
ChainArbitrum
Target typeDeFi Protocol
Technique classReentrancy
TechniqueReentrancy
Bridge incidentNo
Within 2025#11 by loss that year, 1.5% of all reported losses that year

How this kind of attack works

The contract sent funds before updating balances, and the attacker re-entered during the transfer to withdraw repeatedly.

Would a pre-payment check have helped

Needs other controls

Reentrancy is a classic contract bug, unrelated to the counterparty; code audits address it.

Other incidents with the same technique

Sources

This page restates public reports and is not OceanAlt's judgment of any party. To report an error, email business@oceanalt.com; we review within 48 hours.

← Back to incidents