https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/444ace0d-f257-4b6b-b00f-220cbc780578.jpg

Riceee

Security Researcher

I like decentralised systems. Started Comp Audits on Jan'25 Let's see my progress by EoY

Contact Me

High

8

Total

Medium

3

Total

$3.04K

Total Earnings

#924 All Time

8x

Payouts

regular

4x

Top 10

regular

7x

Top 25

regular

7x

Top 50

All

Code4rena

Cantina

CodeHawks

Apr '25

Kinetiq

Kinetiq

634.15 USDC • 3 total findings • Code4rena • Riceee

#10

high

Mishandling of receiving HYPE in the StakingManager , lead to user can't confirm withdrawal and inflate the exchange ratio

high

Buffer Silently Locks Staked HYPE in Contract Without Using Them For Withdrawals Or Providing A Way To Be Pulled Out Or Moved To L1

medium

Inconsistent State Restoration in `cancelWithdrawal` Function

Mar '25

Forte: Float128 Solidity Library

Forte: Float128 Solidity Library

1,698.76 USDC • 1 total finding • Code4rena • Riceee

#6

high

Precision loss in `toPackedFloat` function when mantissa is in range - (`MAX_M_DIGIT_NUMBER`, `MIN_L_DIGIT_NUMBER`)

badger-ebtc-bsm

badger-ebtc-bsm

29.7 USDC • 2 total findings • Cantina • Riceee

#23

high

Finding not yet public.

high

Finding not yet public.

Feb '25

Liquidity Management

Liquidity Management

305.55 usdc • 6 total findings • CodeHawks • riceee

#20

high

Wrong refundExecutionFee in _handleReturn

high

Deposits on long one leverage vault don't actually finalize the flow, leading to a Denial of Service (DoS)

high

Loss of fee refund due to premature state deletion in `PerpetualVault::_handleReturn` function

medium

Wrong index causes last depositor to always get execution fee refund if cancelFlow is called by keeper to cancel a withdrawal

low

Cancelling a Flow after a Position Is Created Might Result in Inflation/Deflation of Shares

low

PerpetualVault withdrawals are affected by global parameter updates

Core Contracts

Core Contracts

0.00 usdc • 1 total finding • CodeHawks • riceee

#389

low

Incorrect Timestamp Tracking in RAACHousePrice contract

Jan '25

Liquid Ron

Liquid Ron

0 USDC • 1 total finding • Code4rena • Riceee

#12

medium

Incorrect Logic in onlyOperator Modifier Leading to Denial-of-Service for Authorized Operators Across Critical Functions

Aave DIVA Wrapper

Aave DIVA Wrapper

0.04 usdc • 1 total finding • CodeHawks • riceee

#9

low

Incorrect sequence of AaveDIVAWrapper constructor parameters

Ignite

Ignite

369.84 usdc • CodeHawks • riceee

#8