gmx finalizes 44m compensation

Following a devastating $42 million exploit that targeted the GMX V1 GLP pool on Arbitrum in July 2025, the DeFi platform has announced a thorough compensation plan to make affected users whole again.

The attack, which leveraged a reentrancy vulnerability, allowed the perpetrator to manipulate asset calculations and withdraw excessive funds from the protocol.

In a move that demonstrates resilience in the DeFi space, GMX successfully negotiated the return of approximately $37.5 million through an on-chain white-hat bounty arrangement.

The attacker kept roughly $5 million for their troubles—think of it as an unplanned, rather expensive security audit.

The final compensation structure, approved by community vote, totals $44 million and will be distributed as GLV tokens.

These tokens represent a vault product on GMX V2 and mirror the original pre-exploit GLP composition: 25% WBTC, 25% ETH, and 50% stablecoins.

GMX’s DAO treasury contributed about $2 million to cover the remaining shortfall after the fund recovery.

Users will receive two types of GLV tokens in equal proportions: GLV [BTC-USDC] and GLV [WETH-USDC].

This structure guarantees claimants maintain exposure to primary cryptocurrencies and stablecoins similar to their previous GLP holdings.

Importantly, GLP tokens held by the attacker—approximately 29% of the supply—were burned to restore proportional value for legitimate holders.

The transparent execution of this recovery plan aligns with the core benefits of DAO governance where all decisions and fund movements are visible to community members.

To encourage ecosystem stability, the GMX DAO has allocated a $500,000 retention incentive pool.

Users who hold their GLV tokens for at least three months will receive a pro-rata share of this pool.

It’s like being rewarded for not immediately running for the exit after someone yelled “Fire!”

The compensation plan comes after the exploit caused significant asset de-pegging that affected numerous liquidity providers on the platform.

Eligible users can claim their compensation through the GMX dApp by connecting wallets that held GLP at the snapshot time before the exploit.

The compensation plan, alongside security improvements and the unaffected GMX V2 architecture, demonstrates the platform’s commitment to accountability and improved risk management in DeFi.

After the exploit, GMX immediately halted GLP trading and redemption on both Arbitrum and Avalanche networks to prevent further losses while developing the recovery solution.

Leave a Reply
You May Also Like

Crypto Hacks 2025: Endless Cybersecurity War Targets Human Behavior

North Korean hackers stole $1.46 billion in 2025’s largest crypto heist, while fraudsters exploited human behavior for $4 billion in total losses. Your psychology is the new battleground.

State-Sponsored Lazarus Hackers Target Venus Protocol in Failed $13.5M Heist Attempt

North Korean hackers almost stole $13.5M from Venus Protocol through a clever phishing attack. Security teams recovered every cent while the crypto world held its breath.

Top 5 DeFi Exploits in 2025 So Far (And What We Learned)

Despite $470M lost to DeFi exploits in 2025, security remains shockingly primitive. Even giants like Coinbase and Bybit fell victim while 80% of hacked protocols skipped basic audits.

Arcadia Finance DeFi Platform Exploited for $3.5M in Base Network Security Breach

Hackers pillaged $3.5 million from Arcadia Finance in 60 seconds, exploiting a single approval flaw. Will your DeFi assets be next? Code vulnerabilities leave millions at stake.