https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/defaults/default_avatar_9.png

Kenshin

Security Researcher

Contact Me

High

7

Total

Medium

17

Total

$8.73K

Total Earnings

#626 All Time

20x

Payouts

regular

2x

Top 10

regular

6x

Top 25

regular

14x

Top 50

All

Code4rena

Aug '23

Tangible Caviar

Tangible Caviar

42.86 USDC • Code4rena • Kenshin

#65

Jun '23

Lybra Finance

Lybra Finance

637.84 USDC • 6 total findings • Code4rena • Kenshin

#17

medium

The relation between the safe collateral ratio and the bad collateral ratio for the PeUSD vaults is not enforced correctly

medium

It is possible to manipulate WETH/LBR pair to claim reward of the users which shouldn't be claimed

medium

Understatement of `poolTotalPeUSDCirculation` amounts due to incorrect accounting after function `_repay` is called

medium

`stakerewardV2pool.withdraw()` should check the user's boost lock status.

medium

Allowing `refreshReward()` to fail during minting or buring esLBR could result in gain or loss previously earned reward

medium

Impossibility to change `safeCollateralRatio`

May '23

Chainlink Cross-Chain Services: CCIP and ARM Network

Chainlink Cross-Chain Services: CCIP and ARM Network

881.43 USDC • Code4rena • Kenshin

#28

Ajna Protocol

Ajna Protocol

423.24 USDC • 1 total finding • Code4rena • Kenshin

#22

high

Delegation rewards are not counted toward granting fund

Apr '23

Caviar Private Pools

Caviar Private Pools

224.86 USDC • 3 total findings • Code4rena • Kenshin

#26

high

Risk of silent overflow in reserves update

medium

The `royaltyRecipient` could not be prepare to receive ether, making the `sell` to fail

medium

Malicious royalty recipient can steal excess eth from buy orders

Jan '23

Popcorn contest

Popcorn contest

109.47 USDC • 2 total findings • Code4rena • Kenshin

#64

high

Staking rewards can be drained

medium

DOS any Staking contract with Arithmetic Overflow

RabbitHole Quest Protocol contest

RabbitHole Quest Protocol contest

41.4 USDC • 2 total findings • Code4rena • Kenshin

#52

high

Bad implementation in minter access control for `RabbitHoleReceipt` and `RabbitHoleTickets` contracts

medium

User may loose rewards if the receipt is minted after quest end time

Jul '22

Golom contest

Golom contest

56.64 USDC • Code4rena • Kenshin

#81

Jun '22

Putty contest

Putty contest

902.32 USDC • 3 total findings • Code4rena • Kenshin

#18

high

Create a short call order with non empty floor makes the option impossible to exercise and withdraw

medium

Putty position tokens may be minted to non ERC721 receivers

medium

Malicious Token Contracts May Lead To Locking Orders

Illuminate contest

Illuminate contest

63.94 USDC • Code4rena • Kenshin

#56

Infinity NFT Marketplace contest

Infinity NFT Marketplace contest

97.22 USDC • 1 total finding • Code4rena • Kenshin

#40

high

Accumulated ETH fees of InfinityExchange cannot be retrieved

May '22

Cally contest

Cally contest

119.37 USDC • 2 total findings • Code4rena • Kenshin

#29

medium

Use safeTransferFrom instead of transferFrom for ERC721 transfers

medium

Owner can set the feeRate to be greater than 100% and cause all future calls to `exercise` to revert

Apr '22

Backd contest

Backd contest

159.31 USDC • Code4rena • Kenshin

#35

Phuture Finance contest

Phuture Finance contest

1,919.77 USDC • 2 total findings • Code4rena • Kenshin

#6

high

IndexLogic: An attacker can mint tokens for himself using assets deposited by other users

medium

Index managers can rug user funds

JPEG'd contest

JPEG'd contest

2,365.16 USDC • 1 total finding • Code4rena • Kenshin

#8

medium

NFTHelper Contract Allows Owner to Burn NFTs

Backed Protocol contest

Backed Protocol contest

84.8 USDC • Code4rena • Kenshin

#29

Mar '22

Volt Protocol contest

Volt Protocol contest

210.24 USDC • Code4rena • Kenshin

#20

LI.FI contest

LI.FI contest

252.5 USDC • 1 total finding • Code4rena • Kenshin

#36

medium

Anyone can get swaps for free given certain conditions in `swap`.

prePO contest

prePO contest

79.47 USDC • Code4rena • Kenshin

#27

Biconomy Hyphen 2.0 contest

Biconomy Hyphen 2.0 contest

59.52 USDT • Code4rena • Kenshin

#52