logo

Magic Internet Money Incident Analysis

ID: 68bbd1f9-c21d-5579-a03d-7bcee476dc53

STIX ID: report--68bbd1f9-c21d-5579-a03d-7bcee476dc53

Feed Name: CertiK Blog

Threat Score
78/100

Date Published: 2025-03-27

Date Updated: 2026-06-11

...
...

A smart‑contract vulnerability in the integration between GmxV2CauldronV4 and RouterOrder was exploited on 25 March 2025, allowing an attacker to liquidate a position, avoid clearing RouterOrder.collateral state (inputAmount), and repeatedly borrow additional MIM without repaying, resulting in a drain of ~6,261.13 ETH (~$12.9M). The report includes detailed transaction links, attacker and contract addresses, stepwise attack actions, the root cause (sendValueInCollateral not clearing RouterOrder.inputAmount), and the subsequent fund flow including bridging via Stargate and distribution to multiple wallets.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.