Security Researcher
High
Total
Medium
Total Earnings
#1238 All Time
Payouts
Top 10
Top 25
Top 50
All
Sherlock
Code4rena
Dec '24
0 USDC • 1 total finding • Code4rena • Hama
#67
high
Users can claim more that their actual allotment
Dec '23
172.15 USDC • 1 total finding • Sherlock • Hama
#5
medium
First depositor can abuse exchange rate to steal funds from later depositors
Oct '23
25.24 USDC • 2 total findings • Code4rena • Hama
#81
Attacker can drain all ETH from AuctionDemo when block.timestamp == auctionEndTime
Auction payout goes to AuctionDemo contract owner, not the token owner
Sep '23
4.37 USDC • Code4rena • Hama
#39
0.11 USDC • 1 total finding • Code4rena • Hama
#62
All tokens can be stolen from `VirtualAccount` due to missing access modifier
Aug '23
25.53 USDC • 1 total finding • Sherlock • Hama
#17
Lender force Loan become default
46.25 USDC • 1 total finding • Code4rena • Hama
#94
A malicious early depositor can manipulate the `LP-Token` price per share to take an unfair share of future user deposits
0.72 USDC • Code4rena • Hama
#86
250.17 USDC • 1 total finding • Code4rena • Hama
#20
First depositor can break minting of liquidity shares in GeVault
Jul '23
104.41 USDC • 1 total finding • Code4rena • Hama
#32
missing check for the max/min price in the `chainlinkOracle.sol` contract
9.43 USDC • 1 total finding • Code4rena • Hama
#23
Reentrancy issue with the 'withdraw' method of USDC. All tokens could be drained.
Jun '23
29.06 USDC • 1 total finding • Code4rena • Hama
#76
`stakerewardV2pool.withdraw()` should check the user's boost lock status.
202.01 USDC • 2 total findings • Sherlock • Hama
#26
Chainlink’s latestRoundData might return stale or incorrect results
Chainlink Oracle will return the wrong price for asset if underlying aggregator hits minAnswer
31.8 USDC • 1 total finding • Code4rena • Hama
#34
Chainlink's `latestRoundData` may return stale or incorrect result
May '23
#71
## vMaia is an ERC-4626 compliant but maxWithdraw & maxRedeem functions are not fully up to EIP-4626's specification
0.00 USDC • 1 total finding • Sherlock • Hama
#25
Chainlink’s latestRoundData Might Return Stale Results
Apr '23
22.6 USDC • Code4rena • Hama
#66