cryptd.in

另类 LinkedIn 适合加密人才

GMX Defends Contracts After $13 Million Loss Tied to Abracadabra’s Cauldron Exploit

Prominent blockchain security firm PeckShield reported an exploit involving the GMX decentralized exchange (DEX), which has brought attention to vulnerabilities within the Abracadabra (Spell) ecosystem.

The incident, tied to Abracadabra’s cauldrons – smart contracts that facilitate DeFi operations like lending, borrowing, and liquidity provision – led to the theft of approximately 6,260 Ethereum, worth roughly $13 million.

GMX Assures Contracts Remain Secure

While the attack has drawn considerable attention, GMX was quick to clarify that its contracts were not compromised. In fact, the issue was confined to the integration between GMX V2 and Abracadabra’s cauldrons, which use GMX’s liquidity pools for their operations. The team assured the community that it was not affected by the incident and confirmed that no vulnerabilities were found within GMX’s own smart contracts.

The team further explained that the Abracadabra team, along with external security researchers, was actively investigating the breach to determine its cause and prevent future incidents. This incident is particularly noteworthy as it highlights the continued security challenges within the broader DeFi ecosystem.

It also follows a previous security breach in January 2024 when Abracadabra’s Magic Internet Money (MIM) stablecoin was exploited due to a flaw in its smart contract. The exploit led to a loss of $6.49 million.

Flash Loan Attack

Crypto researcher Weilin (William) Li 陈述 that the CauldronV4 contract permits users to perform multiple actions, with the solvency check occurring at the end of the process. In this case, the attacker performed seven actions, five of which involved borrowing the Magic Internet Money (MIM) stablecoin, followed by calling the attack contract and initiating liquidation.

Li’s initial analysis suggests that the first action, borrowing MIM, already increased the attacker’s debt, making the liquidation (action 31) possible. This liquidation, however, was suspiciously executed in a flash loan state – where the borrower had no collateral.

He also pointed out that the attacker profited from liquidation incentives and exploited the fact that the solvency check only occurred after all actions were completed, which allowed the attacker to circumvent the system’s protections.

职位 GMX Defends Contracts After $13 Million Loss Tied to Abracadabra’s Cauldron Exploit 首次出现在 加密土豆.


评论

发送留言

發佈留言必須填寫的電子郵件地址不會公開。 必填欄位標示為 *

最新信息

热门类别

搜索网站

热门故事

标签

#AlexeyPertsev (1) #BidenCryptoBan (1) #BidenElection (1) #BinanceVsCoinbase (1) #Bitcoin (285) #BitcoinETF (3) #itcoinFundamentals (1) # 比特币处理 (1) # 比特币价格 (5) # 比特币价格水平 (1) #BitcoinPump (1) #BitcoinReserve (1) #BitcoinSurge (1) #itcoinTop (1) #Bitfinex (1) #Bitwise (1) #BracebridgeCapital (1) #BRC20Tokens (1) #BTC 收购 (1) 1TP5 看涨预测 (1) #BullishSentiment (1) #C 中国矿业 (1) #CPIPreview (1) #CryptoAsset (2) #CryptoBattle (1) #CryptoBoom (1) #CryptoExpert (1) #CryptoInsights (1) #CryptoMania (1) #CryptoMarket (4) #CryptoPrediction (1) #CryptoPredictions (1) #CryptoRegulation (2) #CryptoTakeoff (1) #CryptoTiming (1) #CryptoTips (1) #CryptoTreasury (1) #CryptoUncertainty (1) #DerivativeJump (1) #Dogecoin (52) #ogecoinGains (1) #ogecoinVolume (1) #DutchCourt (2) #ECommerce (1) #El萨尔瓦多比特币 (1) #E以太坊 (59) #EthereumPain (1) #E以太坊价格 (1) #ExpertOpinion (1) #FedRateCut (1) #FiatCurrency (1) #F 财务影响 (1) #F 财务隐私 (1) #FirmShutdown (1) #FrozenAccounts (1) #IllicitFunds (1) #InflationData (1) #Investment (1) #InvestmentLoss (1) #JapaneseFirm (1) #L LegalAction (1) #L 法律影响 (1) #Legislation (1) #LightningNetwork (1) #M 市场分析 (3) #M 市场监测 (1) #M 市场预测 (1) #M 市场预测 (1) #M 市场投影 (1) #M 市场支持 (1) #M 市场波动性 (1) #M 婚姻 (1) #MemeCoin (5) #MemeCoins (2) #Miner 盈利能力 (1) #M 洗钱 (2) #MtGox (3) #朝鲜加密货币 (1) #诺沃格拉茨预测 (1) 1TP5价格里程碑 (1) #P 价格预测 (2) 1TP5价格问题 (1) #PriceSurge (1) #PrisonSentence (1) # 量化分析 (1) #R 监管压力 (1) #SECA Anti-Crypto (1) #ShibaInu (4) #SocialBuzz (1) #T 技术分析 (1) #Toncoin (3) #T 龙卷风现金 (3) #T 龙卷风现金发展项目 (1) #T 龙卷风现金开发者 (1) #UKCrypto (1) #UpsidePotential (1) #USCongress (1) #WyomingLand (1) #XRPPrice (1) #XRPupswing (1)

实用链接

我发现了一些有用的链接,希望与大家分享。