DeFi Security
Solidity Attack Vector #4: Oracle Manipulation
SecurityInfinity Research•8 min read
Solidity Attack Vector #4: Oracle Manipulation
Oracles are the bridges between the blockchain and the real world (or other DEX prices). If an oracle can be manipulated, the contract's logic collapses.
Defense
Never use a single DEX pair as a price source. Use multi-source oracles and check for 'stale' prices.