Security Researcher
High
Total
Medium
Total Earnings
#997 All Time
Payouts
Top 10
Top 25
Top 50
All
Code4rena
CodeHawks
Jan '25
0 USDC • 1 total finding • Code4rena • 13u9
#12
medium
Incorrect Logic in onlyOperator Modifier Leading to Denial-of-Service for Authorized Operators Across Critical Functions
85.73 USDC • 1 total finding • Code4rena • 13u9
#9
Last buy might charge the wrong fee
Aug '24
2.27 USDT • 1 total finding • Code4rena • 13u9
#55
high
Anyone can manipulate user nonce (nonce_manager) in settlement contract
1,980.99 USDC • 1 total finding • Code4rena • 13u9
#8
When performing 'swap' and the swap position does not cover 'swap amount', the base price of 'sqrt_price' is set incorrectly.
4.49 USDC • 2 total findings • Code4rena • 13u9
#49
`PhiFactory:claim` Potentially Causing Loss of Funds If `mintFee` Changed Beforehand
Refunds sent to incorrect addresses in certain cases
Jul '24
7.92 USDC • 1 total finding • Code4rena • 13u9
#51
PositionAction.decreaseLever() fails to consider the loan fee in Flashlender when calculating loanAmount, as a result, the functionanlity will not work when protocolFee != 0.
Jan '24
98.26 USDC • 3 total findings • Code4rena • 13u9
#53
Unauthorized Access to setCurves Function
Single token purchase restriction on curve creation enables sniping
Curves::_buyCurvesToken(), Excess of Eth received is not refunded back to the user.
Dec '23
0.07 USDC • 1 total finding • CodeHawks • 13u9
#102
Rewards can be drained because of lack of access control