Security Researcher
For pay-per-vuln private audits - DM 📝
High
Total
Medium
Total Earnings
#983 All Time
Payouts
3rd Places
Top 10
Top 25
All
Sherlock
Code4rena
Jun '24
6.78 USDC • 1 total finding • Code4rena • 0xMAKEOUTHILL
#31
high
Vultisig whitelisting can be bypassed by anyone
Jan '24
104.78 USDC • 2 total findings • Sherlock • 0xMAKEOUTHILL
#5
User can get free entries to rounds
medium
A ready to be withdrawn round can be forcefully extended by a single user
5.09 USDC • 4 total findings • Code4rena • 0xMAKEOUTHILL
#102
Attack to make ````CurveSubject```` to be a ````HoneyPot````
Unrestricted claiming of fees due to missing balance updates in `FeeSplitter`
Unauthorized Access to setCurves Function
onBalanceChange causes previously unclaimed rewards to be cleared
Oct '23
5.49 USDC • 2 total findings • Code4rena • 0xMAKEOUTHILL
#99
Attacker can drain all ETH from AuctionDemo when block.timestamp == auctionEndTime
Bidder Funds Can Become Unrecoverable Due to 1 second Overlap in `participateToAuction()` and `claimAuction()`
257.41 USDC • 1 total finding • Sherlock • 0xMAKEOUTHILL
#14
Whenever a user wants to `takeOverDebt` will never work
Sep '23
2.50 USDC • 2 total findings • Sherlock • 0xMAKEOUTHILL
#65
Approved allocator can send as many votes as he wants to an accepted recipient
Registering a recipient for a RFPSimpleStrategy while useRegistryAnchor is true will always revert
Aug '23
170.90 USDC • 1 total finding • Sherlock • 0xMAKEOUTHILL
#13
Lender can lose funds after lending debt token
0.72 USDC • Code4rena • 0xMAKEOUTHILL
#86
Jul '23
1,627.94 USDC • 1 total finding • Sherlock • 0xMAKEOUTHILL
Loss of funds during user adjusting
Jun '23
1.32 USDC • 1 total finding • Code4rena • 0xMAKEOUTHILL
#85
Incorrect function call in LybraRETHVault's getAssetPrice
May '23
0.03 USDC • 1 total finding • Sherlock • 0xMAKEOUTHILL
#24
No checks if an Arbitrum L2 sequencer is down
Jan '23
2.59 USDC • 1 total finding • Code4rena • 0xMAKEOUTHILL
#84
Bad implementation in minter access control for `RabbitHoleReceipt` and `RabbitHoleTickets` contracts