Security Researcher
High
Total
Medium
Total Earnings
#1887 All Time
Payouts
Top 50
All
Code4rena
Feb '24
7.18 USDC • 1 total finding • Code4rena • spark
#34
high
Holders array can be manipulated by transferring or burning with amount 0, stealing rewards or bricking certain functions
Jan '24
0 USDC • 2 total findings • Code4rena • spark
#137
Unauthorized Access to setCurves Function
medium
Curves::_buyCurvesToken(), Excess of Eth received is not refunded back to the user.
Nov '23
7.42 USDC • 1 total finding • Code4rena • spark
#51
The price of rsEHT could be manipulated by the first staker
Oct '23
0.47 USDC • 1 total finding • Code4rena • spark
#111
Auction winner can prevent payments via `safeTransferFrom` callback
142.75 USDC • 3 total findings • Code4rena • spark
#30
Test addresses and incorrect interface in code prevent integration with UniswapV3 and Camelot
Due to extremely short `votingDelay` and `votingPeriod`, governance is practically impossible.
Decimal Limitation in CamelotRelayer and UniV3Relayer Contract Deployment