https://sherlock-files.ams3.digitaloceanspaces.com/twitter_images/5e98e618-0123-408d-9f4d-1e1f34922932.jpg

Ocean_Sky

Security Researcher

Web3 Security Researcher ✍️ Defi Specialist I read audit reports for breakfast ☕️ Warden | @code4rena Watson | @sherlockdefi oceansky.canto

Contact Me

High

5

Total

Medium

16

Total

$2.09K

Total Earnings

#1068 All Time

22x

Payouts

regular

1x

Top 10

regular

6x

Top 25

regular

10x

Top 50

All

Sherlock

Code4rena

Cantina

Jun '25

DODO Cross-Chain DEX

DODO Cross-Chain DEX

3.49 USDC • 2 total findings • Sherlock • Ocean_Sky

#66

high

Malicious actor can `claimRefund` to steal the other users' refunds.

medium

`onCall` function has missing fee deduction update prior swap.

Dec '24

Autonomint Colored Dollar V1

Autonomint Colored Dollar V1

14.21 OP • 2 total findings • Sherlock • Ocean_Sky

#52

high

Liquidation type 1 can cause loss of funds to admin due to wrong address ether recipient.

medium

DOS on liquidation type 1 due to underflow in cds profits computation

Oct '24

stakeup-bloomv2

stakeup-bloomv2

511.29 USDC • 1 total finding • Cantina • OceanSky

#22

medium

Finding not yet public.

Aug '24

ZeroLend One

ZeroLend One

150.90 USDC • 1 total finding • Sherlock • Ocean_Sky

#32

medium

Withdrawal of funds can be DOSed due to large accrued treasury shares

May '24

Canto

Canto

0 USDC • Code4rena • Ocean_Sky

#6

Apr '24

Renzo

Renzo

1.89 USDC • 2 total findings • Code4rena • Ocean_Sky

#52

high

Withdrawals logic allows MEV exploits of TVL changes and zero-slippage zero-fee swaps

medium

Lack of slippage and deadline during withdraw and deposit

NOYA

NOYA

2.48 USDC + NOYA stars • 2 total findings • Code4rena • Ocean_Sky

#113

high

`executeWithdraw` may be blocked if any of the users are blacklisted from the `baseToken`

medium

`depositQueue.queue` in `AccountingManager` can be flooded causing a DoS

DYAD

DYAD

4.87 USDC • 1 total finding • Code4rena • Ocean_Sky

#104

medium

No incentive to liquidate small positions could result in protocol going underwater

Mar '24

Revert Lend

Revert Lend

17.32 USDC • 1 total finding • Code4rena • Ocean_Sky

#67

high

Owner of a position can prevent liquidation due to the 'onERC721Received' callback

Feb '24

curvance

curvance

973.15 USDC • 2 total findings • Cantina • OceanSky

#32

medium

Finding not yet public.

medium

Finding not yet public.

HydraDX

HydraDX

150.19 USDC • Code4rena • Ocean_Sky

#16

Dec '23

Revolution Protocol

Revolution Protocol

118.25 USDC • 2 total findings • Code4rena • Ocean_Sky

#42

medium

Violation of ERC-721 Standard in VerbsToken:tokenURI Implementation

medium

Bidder can use donations to get VerbsToken from auction that already ended.

Oct '23

NextGen

NextGen

0.47 USDC • 1 total finding • Code4rena • Ocean_Sky

#111

medium

Auction winner can prevent payments via `safeTransferFrom` callback

May '23

Iron Bank

Iron Bank

0.03 USDC • 2 total findings • Sherlock • Ocean_Sky

#23

medium

No checking for status of L2 sequencer on whether it is active or not

medium

Chainlink's latestRoundData return stale or incorrect result

Index

Index

0.17 USDC • 1 total finding • Sherlock • Ocean_Sky

#25

medium

Use of Deprecated Chainlink Function: latestAnswer()

Apr '23

Rubicon v2

Rubicon v2

0.29 USDC • 1 total finding • Code4rena • Ocean_Sky

#123

medium

Calling `ExpiringMarket.stop` and `ExpiringMarket.isClosed` functions cannot pause any functionlities of the market

Oct '22

Holograph contest

Holograph contest

0 USDC • Code4rena • Ocean_Sky

#44

Sep '22

QuickSwap and StellaSwap contest

QuickSwap and StellaSwap contest

52.04 USDC • Code4rena • Ocean_Sky

#51

Frax Ether Liquid Staking contest

Frax Ether Liquid Staking contest

12.81 USDC • Code4rena • Ocean_Sky

#78

VTVL contest

VTVL contest

9.09 USDC • Code4rena • Ocean_Sky

#80

PartyDAO contest

PartyDAO contest

35.35 USDC • Code4rena • Ocean_Sky

#67

FEI and TRIBE Redemption contest

FEI and TRIBE Redemption contest

33.58 USDC • Code4rena • Ocean_Sky

#14