Banner
https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/a5996ac4-47ab-4455-8f3b-d2a5b3db9478.jpg

0xlookman

Security Researcher

Blockchain developer. Crypto enthusiast. Eager to contribute to the crypto community. Ready to be part of your next big project.

Contact Me

High

16

Total

Medium

11

Total

$20.15K

Total Earnings

#388 All Time

25x

Payouts

bronze

1x

3rd Places

regular

6x

Top 10

regular

15x

Top 25

All

Sherlock

Code4rena

Cantina

CodeHawks

Jul '25

DeBank

DeBank

3.27 USDC • Sherlock • 0xlookman

#99

Apr '25

Staking Part 2

Staking Part 2

4,103.92 usdc • CodeHawks • 0xlookman

#7

Mar '25

reserve-index-dtfs-solana

reserve-index-dtfs-solana

1,424.19 USDC • 1 total finding • Cantina • 0xlookman

#6

medium

Finding not yet public.

colorpool-chromia

colorpool-chromia

415.79 USDC • 3 total findings • Cantina • 0xlookman

#16

high

Finding not yet public.

medium

Finding not yet public.

medium

Finding not yet public.

Feb '25

SEDA Protocol

SEDA Protocol

36.49 USDC • 2 total findings • Sherlock • 0xlookman

#21

high

Lack of nonces for users allows for Signature replays, allowing accumulation of `votingPower` with the same valid signature for a given batch.

medium

Fee Distribution can be Dos'd by malicious receiver (BatchSender or refundReceiptient)

Rova

Rova

0.04 USDC • 1 total finding • Sherlock • 0xlookman

bronze

medium

Subtracting currencyAmount from TokenAmount in `launch.sol::updateParticipation` can DO'S refunds.

Jan '25

daao-contracts

daao-contracts

2.12 USDC • 2 total findings • Cantina • 0xlookman

#97

high

Finding not yet public.

high

Finding not yet public.

Ignite

Ignite

15.29 usdc • CodeHawks • 0xlookman

#21

farcasterattestation-monorepo

farcasterattestation-monorepo

1,198.13 OP • 4 total findings • Cantina • 0xlookman

#15

high

Finding not yet public.

high

Finding not yet public.

high

Finding not yet public.

high

Finding not yet public.

Pump Science

Pump Science

85.73 USDC • 1 total finding • Code4rena • 0xlookman

#9

medium

Last buy might charge the wrong fee

Dec '24

Tally ARB Staker

Tally ARB Staker

1.44 USDC • Sherlock • 0xlookman

#42

aligned-layer

aligned-layer

375 USDC • Cantina • 0xlookman

#13

SecondSwap

SecondSwap

0 USDC • 1 total finding • Code4rena • 0xlookman

#67

high

Users can claim more that their actual allotment

Nov '24

MANTRA DEX

MANTRA DEX

237.63 USDC • 2 total findings • Code4rena • 0xlookman

#18

medium

Penalty fees can be shared among future farms or expired farms, risks of exploits

medium

User is unable to claim their reward for the expanded epochs if farm is expanded

Nouns DAO - Auction Streams

Nouns DAO - Auction Streams

3.87 USDC • Sherlock • 0xlookman

#62

Telcoin Update #2

Telcoin Update #2

2.72 USDC • Sherlock • 0xlookman

#50

Oct '24

Era

Era

9,084.11 USDC • CodeHawks • 0xlookman

#9

Dria

Dria

7.24 USDC • 3 total findings • CodeHawks • 0xlookman

#62

high

Subtraction in `variance()` will revert due to underflow

medium

Platform fees withdrawal will sweep oracle agents earned fees

low

Sequential Fee Calculations Lead to Lost Platform Revenue Due to Precision Loss

mev-commit

mev-commit

13.67 USDC • 1 total finding • Cantina • 0xlookman

#39

high

Finding not yet public.

Sep '24

Staking

Staking

450.08 USDC • CodeHawks • 0xlookman

#28

Boost Core Incentive Protocol

Boost Core Incentive Protocol

53.81 USDC • 1 total finding • Sherlock • 0xlookman

#20

medium

Boost Creators can prevent the protocol from getting the Default 10% of the claim fee its supposed to receive

symbioticfi-core

symbioticfi-core

211.51 USDC • 1 total finding • Cantina • 0xlookman

#22

medium

Finding not yet public.

Aug '24

Tadle

Tadle

2,243.35 USDC • 3 total findings • CodeHawks • 0xlookman

#4

high

Formulaic Error Rounds Down Causing Total Loss Of Funds For Bid Takers During Abort

high

Malicious user can drain protocol by bypassing `ASK` offer abortion validation in `Turbo` mode

high

Missing check for aborted origin offer allows bid takers to relist unbacked offers

Jul '24

TraitForge

TraitForge

0 USDC • 2 total findings • Code4rena • 0xlookman

#89

high

Number of entities in generation can surpass the 10k number

high

Wrong minting logic based on total token count across generations

TempleGold

TempleGold

181.22 USDC • 1 total finding • CodeHawks • 0xlookman

#18

low

Malicious user can prevent `rewardData.perodfinish` from ending by calling `TempleGoldStaking::distributeRewards()` before the end of the reward duration when no starter is set.