https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/defaults/default_avatar_1.png

PRAISE

Security Researcher

Blockchain security 🤖 deep practice 👨🏼‍💻🧘 My Audit stats (1st acct) -- https://t.co/5MrEQF8pEq

Contact Me

High

1

Total

Medium

12

Total

$538.00

Total Earnings

#1485 All Time

9x

Payouts

regular

3x

Top 25

regular

7x

Top 50

All

Sherlock

Code4rena

Jul '23

PoolTogether

PoolTogether

21.54 USDC • 2 total findings • Code4rena • Praise

#64

high

`Vault.mintYieldFee` FUNCTION CAN BE CALLED BY ANYONE TO MINT `Vault Shares` TO ANY RECIPIENT ADDRESS

medium

`drawManager` CAN BE SET TO A MALICIOUS ADDRESS

Jun '23

Hubble Exchange

Hubble Exchange

0.14 USDC • 1 total finding • Sherlock • PRAISE

#30

medium

Oracle.sol may return stale price

DODO V3

DODO V3

33.79 USDC • 5 total findings • Sherlock • PRAISE

#29

medium

ERC20.approve() doesn't approve to 0 first for tokens like USDT

medium

heartbeat issues for chainlink

medium

return value of ERC20.transferFrom() is not checked, can cause loss of funds/stuck funds in D3VaultLiquidation

medium

possible precision loss when calculating `borrows` in D3VaultLiquidation.liquidate() because of division before multiplication

medium

D3Oracle.getPrice() and D3Oracle.getOriginalPrice() doesn't check If Arbitrum sequencer is down for Chainlink feeds

Unitas Protocol

Unitas Protocol

1.81 USDC • 1 total finding • Sherlock • PRAISE

#23

medium

XOracle.getLatestPrice() can return stale price within _getSwapResult() function

May '23

Footium

Footium

0.00 USDC • 1 total finding • Sherlock • PRAISE

#35

medium

Loss of funds due to Unchecked return value of .transfer().

Feb '23

Derby

Derby

249.62 USDC • 2 total findings • Sherlock • PRAISE

#23

medium

missing deadline and deadline checker in xTransfer() and swapStableCoins()

medium

The exchange rate in MainVault.sol is statically updated.

Ethos Reserve contest

Ethos Reserve contest

42.07 USDC • Code4rena • Praise

#34

GMX

GMX

154.07 USDC • 1 total finding • Sherlock • PRAISE

#24

medium

Missing freshness check in getLatestPrice() function in oracle.sol

Jan '23

Popcorn contest

Popcorn contest

35.48 USDC • Code4rena • Praise

#84