Security Researcher
I see bug, I kill bug
High
Total
Medium
Total Earnings
#1499 All Time
Payouts
2nd Places
3rd Places
Top 10
All
Sherlock
Jul '24
2.35 USDC • 2 total findings • Sherlock • 0xboriskataa
#59
high
Incorrect `msg.sender` expected
medium
An attacker can prevent anyone from unstaking in `MlumStaking.sol`
May '24
303.16 USDC • 1 total finding • Sherlock • 0xboriskataa
0 data input might break functionality
Apr '24
3.79 USDC • 2 total findings • Sherlock • 0xboriskataa
#51
Collection referrers will get no fees because of incorrect reward distribution
`_refundExcess()` will not work as intended
4.12 USDC • 2 total findings • Sherlock • 0xboriskataa
#54
Attacker can manipulate other users' staking rewards with `depositReward()`
`pushToLockerMulti()` in `OCL_ZVE` expects zero slippage
Mar '24
1.18 USDC • 1 total finding • Sherlock • 0xboriskataa
Highest bidder can cancel bid and win auction for free
5.04 USDC • 1 total finding • Sherlock • 0xboriskataa
#28
Routing info is always stored at 0 slot of `lotRouting[]` mapping