Incidents and Security Advisories
A forensic archive of price feed anomalies, data stalls, cross-chain delivery failures, and any security exploits, including root cause analysis and remediation steps. This group is indispensable for DeFi protocols, risk managers, and exchange operators who rely on Pyth for liquidations and asset pricing, providing a distinct operational history that informs future risk controls and fallback designs.
Single-Publisher Price Deviation Events
Forensic analysis of incidents where a single publisher's feed diverged significantly from the aggregate, exploring root causes like API errors, fat-finger trades, or compromised systems. Focuses on how Pyth's aggregation and confidence interval mechanisms mitigated or failed to mitigate the impact on downstream consumers, with guidance for DeFi protocols on tuning deviation checks and for publishers on hardening data pipelines.
Aggregate Price Staleness and Freeze Events
Catalog of incidents where the aggregate price for a specific feed stopped updating despite active trading on underlying venues. Covers root causes like correlated publisher data source outages, network congestion, or bugs in on-chain aggregation logic. Provides impact analysis for lending protocols relying on fresh prices for liquidations and outlines monitoring strategies Chainscore can help implement.
Confidence Interval Miscalculation and Anomalies
Documents specific events where the reported confidence interval was inappropriately narrow or wide, leading to incorrect risk assessments by lending protocols. Analyzes whether the cause was a flawed publisher methodology, an aggregation bug, or a market microstructure event that broke standard assumptions. Includes guidance for integrators on validating confidence intervals against their own risk models.
Cross-Chain Price Discrepancy Events
Incident reports where the canonical price on Pythnet differed materially from the price attested on a target chain like Solana or an EVM L2 at the moment of a critical liquidation. Root cause analysis focuses on Wormhole message latency, batch processing delays, or target chain congestion. Essential reading for protocols operating cross-chain lending or perps markets.
Wormhole Message Delivery Outages and Delays
Dedicated archive of incidents where the Wormhole relayer network failed to deliver Pyth price updates to one or more target chains. Analyzes the duration, impact on DeFi protocols relying on fresh prices for liquidations, and the manual recovery steps taken. Provides a framework for integrators to design fallback oracle logic that accounts for cross-chain message delivery failure modes.
Pythnet Validator Set Stalls and Consensus Failures
Documents events where the Pythnet validator network itself stalled, failed to reach consensus, or produced a chain halt, completely stopping the production of new price attestations. Focuses on the root cause such as client bugs or network partitions, the time-to-recovery, and the cascading impact on all downstream consumers. Critical for risk officers evaluating oracle liveness assumptions.
Target Chain Receiver Contract Bugs and Exploits
Security advisories concerning vulnerabilities discovered or exploited in the on-chain Pyth receiver contracts deployed on various chains. Distinct from core protocol issues, this focuses on integration-layer bugs that could cause incorrect price parsing or denial of service. Includes a checklist for teams to audit their own receiver contract implementations and dependencies.
Batch Price Update Replay and Ordering Incidents
Analysis of incidents where the sequence of batch price updates was replayed or reordered on a target chain, potentially allowing a stale price to be used after a fresher one. Covers the technical conditions that enabled this and the resulting arbitrage or bad debt. Provides integrators with patterns to validate update sequencing and freshness in their consumer contracts.
Publisher Key Compromise and Malicious Data Injection
Security advisory format for any confirmed or suspected compromise of a publisher's hot wallet or API key, detailing how malicious prices were injected, the duration of the compromise, and the slashing or remediation outcome. Offers a model for how protocols can monitor for anomalous price contributions and what Chainscore's incident response services cover.
Correlated Publisher Infrastructure Outages
Recurring report on significant, correlated outages among major publishers due to shared cloud provider failures or coordinated DDoS attacks. Analyzes the impact on aggregate price availability and the network's resilience to publisher concentration risk. Includes recommendations for publishers to diversify infrastructure and for consumers to monitor publisher diversity metrics.
Slashing Event Post-Mortems
Detailed forensic reports on specific slashing events where a publisher's stake was reduced. Each page covers the exact violation such as prolonged downtime or persistent deviation, the evidence submitted, the governance process, and the economic impact on the publisher. Serves as a deterrent case study and a guide for publishers on operational compliance.
Latency Arbitrage Exploit Analysis on Lending Protocols
Case-study archive of DeFi exploits where the root cause was not a smart contract bug, but the attacker's ability to front-run a Pyth price update on a target chain. Analyzes the specific latency window, the MEV technique used, and the resulting protocol bad debt. Provides integrators with architectural patterns to mitigate latency-based oracle manipulation.
Staleness Tolerance Exploits and Bad Debt Cascades
Incident reports where a protocol's fallback oracle logic failed because it accepted a Pyth price that was technically within its staleness tolerance but economically stale, leading to a cascade of under-collateralized loans and liquidations. Guides integrators on setting dynamic staleness thresholds and combining Pyth with circuit-breaker mechanisms.
Governance Attack Surface and Parameter Manipulation Risks
Risk analysis page detailing the potential for a malicious governance proposal to slash honest publishers, whitelist a Sybil set, or set update fees to zero to enable spam. While a permanent advisory on the protocol's political attack surface, it also serves as a historical archive of any attempted or successful governance attacks. Relevant for risk teams monitoring governance proposals.
Economic Viability of 51% Attacks on Pythnet
Living risk assessment that models the cost to corrupt or halt the Pythnet validator set, factoring in the market cap of the staked token, validator concentration, and the potential profit from manipulating a high-volume derivatives exchange. Updated after major market structure changes. Essential for protocols setting exposure limits based on oracle security assumptions.
Publisher Collusion and Low-Liquidity Asset Manipulation Risk
Hypothetical but critical risk analysis page modeling the economic and game-theoretic feasibility of a subset of publishers colluding to manipulate a low-liquidity asset's price. Serves as a permanent risk assessment for integrators, analyzing publisher stake distribution, slashing deterrents, and the conditions under which collusion could become profitable.