https://sherlock-files.ams3.digitaloceanspaces.com/twitter_images/95213ee9-f32a-44e4-a2a1-d2cbce0d9ce4.jpg

LeoGold

Security Researcher

💎 Smart Contract Security Researcher💎 API Security Tester 💎

Contact Me

High

6

Total

Medium

7

Total

$2.27K

Total Earnings

#1145 All Time

11x

Payouts

regular

2x

Top 10

regular

3x

Top 25

regular

6x

Top 50

All

Code4rena

Cantina

CodeHawks

Aug '25

Flare - FAsset

Flare - FAsset

1,473.68 USDC • Code4rena • LeoGold

#6

Feb '25

Virtuals Protocol

Virtuals Protocol

248.51 USDC • 2 total findings • Code4rena • LeoGold

#30

high

Public `ServiceNft::updateImpact` call leads to cascading issue

medium

Functions in FERC20 can't be invoked

Liquidity Management

Liquidity Management

131.04 usdc • 2 total findings • CodeHawks • leogold

#30

high

Deposits on long one leverage vault don't actually finalize the flow, leading to a Denial of Service (DoS)

medium

Wrong index causes last depositor to always get execution fee refund if cancelFlow is called by keeper to cancel a withdrawal

Jan '25

Next Generation

Next Generation

151.99 USDC • 1 total finding • Code4rena • LeoGold

#10

medium

Lack of deadline check in forwarded request

daao-contracts

daao-contracts

83.54 USDC • 2 total findings • Cantina • oxhonor

#44

high

Finding not yet public.

medium

Finding not yet public.

Ignite

Ignite

103.63 usdc • CodeHawks • leogold

#19

Apr '24

DYAD

DYAD

0.28 USDC • 1 total finding • Code4rena • LeoGold

#113

high

Design flaw and mismanagement in vault licensing leads to double counting in collateral ratios and positions collateralized entirely with kerosine

Jan '24

Salty.IO

Salty.IO

25.08 USDC • 2 total findings • Code4rena • LeoGold

#106

high

When borrowers repay USDS, it is sent to the wrong address, allowing anyone to burn Protocol Owned Liquidity and build bad debt for USDS

medium

Impossible to change managed wallets with `proposeWallets` after first rejection

Curves

Curves

3.82 USDC • 2 total findings • Code4rena • LeoGold

#111

high

Unauthorized Access to setCurves Function

medium

Curves::_buyCurvesToken(), Excess of Eth received is not refunded back to the user.

Apr '23

Frankencoin

Frankencoin

22.6 USDC • Code4rena • LeoGold

#66

Mar '23

Asymmetry contest

Asymmetry contest

30.81 USDC • 1 total finding • Code4rena • LeoGold

#90

medium

Residual ETH unreachable and unuitilized in SafEth.sol