https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/defaults/default_avatar_5.png

Contest-Squad

Security Researcher

Contact Me

High

5

Total

Medium

5

Total

$745.00

Total Earnings

#1396 All Time

2x

Payouts

regular

1x

Top 10

regular

2x

Top 25

regular

2x

Top 50

All

Sherlock

Dec '24

Oku's New Order Types Contract Contest

Oku's New Order Types Contract Contest

585.25 OP • 8 total findings • Sherlock • Contest-Squad

#6

high

`AutomationMaster::generateOrderId` does not generate unique IDs

high

`modifyOrder` does not check if the order is pending or not

high

`cancelOrder` is missing `nonReentrant` modifier, allowing a malicious contract tha created an order to cancel the order before completing the swap

high

Users can steal tokens from the StopLimit contract.

high

The `execute` function does not reset the authorization for the target contract after the call is completed, which can lead to contract funds being stolen.

medium

Incorrect outdated price check in `PythOracle`

medium

An attacker can create dead orders to DoS system.

medium

The `OracleLess::createOrder` does not check for `MASTER::maxPendingOrders` and `Master::checkMinOrderSize`

Nov '24

Ethos Network Financial Contracts

Ethos Network Financial Contracts

160.07 USDC • 2 total findings • Sherlock • Contest-Squad

#19

medium

No slippage protection in `sellVotes` function

medium

Voucher can avoid slash