Security Researcher
Smart Contract Auditor - Prev. CEX On-Chain Security and Crypto AML investigations
High
Total
Medium
Solo
Total
Total Earnings
#790 All Time
Payouts
2nd Places
Top 10
Top 25
All
Sherlock
Code4rena
Aug '24
Jul '24
Jun '24
620.53 USDC • 3 total findings • Sherlock • BiasedMerc
#8
high
PendlePTKelpVault allows anyone to finalize a withdraw for any account, which can lead to less rewards received for users
high
PendlePrincipleToken::_redeemPT is prone to fees and slippage, but contains no limiting parameters
medium
VaultRewarderLib::_claimRewardToken transfer wrapped in try catch can lead to loss of rewards
May '24
Apr '24
high
Edition:mintBatch() collects minted fees once, but it should collect fees per mint
high
FeeManager::_splitProtocolFee sends collectionReferrerShare to wrong address
medium
Edition::mintBatch() Uses msg.value on each itteration, meaning after 1st itteration there will not be enough ETH to continue
medium
Edition doesn't update Nodes when Work attributes are changed
medium
ZivoeYDL::distributeYield() will revert if protocolRecipients recipients length is smaller than residualRecipients
medium
OCL_ZVE::pushToLockerMulti() will revert due to incorrect assert() statements when interacting with UniswapV2
medium
OCY_Convex_C use of PYUSD can lead to DAO and User funds being DOS
Jan '24