Security Researcher
High
Total
Medium
Total Earnings
#255 All Time
Payouts
2nd Places
3rd Places
Top 10
All
Code4rena
Feb '22
142.32 USDC • Code4rena • 0x0x0x
#31
79.95 USDC • Code4rena • 0x0x0x
#29
736.03 USDC • Code4rena • 0x0x0x
#12
431.15 USDC • Code4rena • 0x0x0x
#18
66.07 USDC • Code4rena • 0x0x0x
#45
Jan '22
104.66 USDT • Code4rena • 0x0x0x
#16
40.64 USDT • Code4rena • 0x0x0x
#35
414 USDC • Code4rena • 0x0x0x
1,673.77 USDC • Code4rena • 0x0x0x
59.12 tokens) • Code4rena • 0x0x0x
#19
10.56 tokens) • Code4rena • 0x0x0x
#30
13.61 USDC • Code4rena • 0x0x0x
#26
Dec '21
624.24 USDC • Code4rena • 0x0x0x
#17
4.68 USDC • Code4rena • 0x0x0x
#27
3,337.45 USDC • 2 total findings • Code4rena • 0x0x0x
#4
high
In `CreditLine#_borrowTokensToLiquidate`, oracle is used wrong way
medium
CreditLine.liquidate doesn't transfer borrowed ETH to a lender
867.3 USDC • 2 total findings • Code4rena • 0x0x0x
#9
cancelPromotion is too rigorous
Dust Token Balances Cannot Be Claimed By An `admin` Account
4,137.91 USDC • 1 total finding • Code4rena • 0x0x0x
No checks if given product is created by the factory
5,120.53 ETH • 3 total findings • Code4rena • 0x0x0x
`Basket.sol#auctionBurn` calculates `ibRatio` wrong
Change in `auctionMultiplier/auctionDecrement` change profitability of auctions and factory can steal all tokens from a basket abusing it
Missing cap on LicenseFee
1,228.03 USDC • Code4rena • 0x0x0x
#5
Nov '21
3,844.48 USDC • 3 total findings • Code4rena • 0x0x0x
Tokens can be stolen when `depositToken == rewardToken`
Wrong calculation of excess depositToken allows stream creator to retrieve `depositTokenFlashloanFeeAmount`, which may cause fund loss to users
This protocol doesn't support all fee on transfer tokens
1,550.17 USDC • Code4rena • 0x0x0x
#6
5,166.49 USDC • 4 total findings • Code4rena • 0x0x0x
Timelock can be bypassed
AuctionEschapeHatch.sol#exitEarly updates state of the auction wrongly
Frontrunning in UniswapHandler calls to UniswapV2Router
AbstractRewardMine.sol#setRewardToken is dangerous
1,467.49 USDC • 3 total findings • Code4rena • 0x0x0x
#7
Inaccurate fees computation
Support of different ERC20 tokens
Refund mechanism doesn't take into account that key price can change
350.59 ETH • Code4rena • 0x0x0x
#13
311.49 USDC • Code4rena • 0x0x0x
#10
1,946.5 USDC • 1 total finding • Code4rena • 0x0x0x
`setGuardian()` Wrong implementation
161.78 USDC • Code4rena • 0x0x0x
#21
130.43 USDC • Code4rena • 0x0x0x
#22
573.3 ETH • Code4rena • 0x0x0x
8.57 USDC • Code4rena • 0x0x0x
Oct '21
129.69 ETH • Code4rena • 0x0x0x
#11
287.6 ETH • Code4rena • 0x0x0x