GMX Phishing Hack

TOTAL LOST $4.0M
Medium Phishing Attacks

What happened

An EOA 0x84a25fB2…646fcB was exploited via a phishing attack on the Arbitrum network. The current losses reached  4,000,000 USD.

An EOA wallet was compromised or exploited via a phishing attack. Firstly the victim called signalTransfer() function on the GMX: Reward Router and funded the exploiter with ETH. After this, the malicious actor transferred the pending assets of the victim from the GMX: Reward Router and unstaked them.

All stolen GMX tokens were swapped to the ETH and bridged to another EOA on the Ethereum network.

Scammer addresses:

https://arbiscan.io/address/0x4008f610…f7f9d8

https://etherscan.io/address/0x956A0412…647946

Phishing TX:

https://arbiscan.io/tx/0xe84e0fbc…732184

Case & protocol details

Classification Other
Protocol Type Exploit/Phishing

Evidence & learning

Sources and on-chain records

Practice this exploit pattern safely

Work through hands-on labs covering real exploit mechanics, review techniques, and defensive patterns.