Security Researcher
software engineer | security researcher | Discord: _theblackpanther
High
Total
Medium
Total

Total Earnings
#191 All Time

Payouts

2nd Places

3rd Places

Top 10
All
Sherlock
Cantina
CodeHawks
Nov '25
Collaborative Audit • Sherlock • 0xTheBlackPanther
May '25
high
medium
medium
high
high
medium
medium
medium
medium
high
high
high
medium
medium
Apr '25
high
high
high
high
high
high
medium
medium
medium
medium
medium
medium
medium
Feb '25
high
medium
Treasury Contract Deposit Function Can Be Frontrun To Deny Protocol Operations
medium
Pending fee not cleared and overwritten by updates via updateFeeType()
medium
closeLiquidation within LendingPool does not allow partial repayments, which can cause massive losses to users within edge case
low
Overwriting Previous Allocations in allocateFunds May Lead to Loss of Cumulative Allocation Data
low
Lack of incentives for users to call LendingPool::initiateLiquidation allows extensive delay between when health factor dropped below threshold and when grace period starts
Jan '25
medium
medium
medium
medium
medium
high
medium
medium
medium
Dec '24
medium
medium
high
medium
medium
medium
Oct '24
high
high
medium
medium
Sep '24
high
medium
Aug '24
medium
medium
medium
Jul '24
high
`Tokens` Are Automatically Whitelisted Upon Creation And Binding Even When `_whiteListEnabled == false`
medium
There is No `msg.value` check in `depositTokens`, causing potential token stuck
medium
Potential Blockage of User Withdrawals When Bridge is Disabled in `withdrawTokens`
low
_disableInitializers is missing in Bridge’s constructor
May '24
medium
Apr '24
Mar '24
Feb '24
medium
high
medium
medium
medium
medium
medium
medium
Jan '24
low
Use custom gas in `sendMintMessage` instead of default gas
low
Create Pool in Mock Distribution is missing validations; allowing duplicates, wrong decreaseInterval value and payoutStart value
low
The `editPool()` lacks a sanity check on the `payoutStart` parameter leading to incorrect or unfair reward distributions
medium
Dec '23
high
A user can steal an already transfered and bridged reSDL lock because of approval
low
SINGLE STEP OWNERSHIP TRANSFER PROCESS
low
Insufficient Gas Limit Specification for Cross-Chain Transfers in _buildCCIPMessage() method. WrappedTokenBridge.sol #210
low
No validation for `_amount` in migrate function