https://sherlock-files.ams3.digitaloceanspaces.com/twitter_images/fe120a2b-3010-44b7-8094-dc2e36998c81.jpg

Throttle

Security Researcher

#solidity Security Researcher at @CertoraInc + @SpearbitDAO Prev: software eng. @ Hight Frequency Trading

Contact Me

High

3

Total

Medium

18

Total

$10.24K

Total Earnings

#545 All Time

20x

Payouts

regular

4x

Top 10

regular

11x

Top 25

regular

18x

Top 50

All

Code4rena

Sep '22

Art Gobblers contest

Art Gobblers contest

55.2 USDC • Code4rena • throttle

#21

Aug '22

Nouns DAO contest

Nouns DAO contest

35.44 USDC • Code4rena • throttle

#41

Jun '22

Infinity NFT Marketplace contest

Infinity NFT Marketplace contest

526.34 USDC • 2 total findings • Code4rena • throttle

#21

high

`canExecTakeOrder` mismatches `makerOrder` and `takerItems` when duplicated items present

medium

Protocol fee rate can be arbitrarily modified by the owner and the new rate will apply to all existing orders

May '22

Rubicon contest

Rubicon contest

455.59 USDC • 3 total findings • Code4rena • throttle

#25

medium

Lack of Access Control for offer(uint, ERC20, uint, ERC20) and insert(uint, unint)

medium

No cap on fees can result in a DOS in BathToken.withdraw()

medium

Use `safeTransfer()`/`safeTransferFrom()` instead of `transfer()`/`transferFrom()`

Cally contest

Cally contest

39.78 USDC • 2 total findings • Code4rena • throttle

#71

medium

Owner can modify the feeRate on existing vaults and steal the strike value on exercise

medium

User's may accidentally overpay in `buyOption()` and the excess will be paid to the vault creator

Enso Finance contest

Enso Finance contest

185.11 USDT • Code4rena • throttle

#44

Alchemix contest

Alchemix contest

269.18 DAI • Code4rena • throttle

#29

FactoryDAO contest

FactoryDAO contest

96.9 DAI • 2 total findings • Code4rena • throttle

#51

medium

safeTransferFrom is recommended instead of transfer (1)

medium

amount requires to be updated to contract balance increase (1)

Forgotten Runes Warrior Guild contest

Forgotten Runes Warrior Guild contest

611.56 USDC • 2 total findings • Code4rena • throttle

#16

medium

The owner can mint all of the NFTs.

medium

Many unbounded and under-constrained variables in the system can lead to unfair price or DoS

bunker.finance contest

bunker.finance contest

439.72 USDC • 1 total finding • Code4rena • throttle

#8

medium

Chainlink pricer is using a deprecated API

Apr '22

PoolTogether Aave v3 contest

PoolTogether Aave v3 contest

39.05 USDC • Code4rena • throttle

#26

AbraNFT contest

AbraNFT contest

72.39 MIM • Code4rena • throttle

#45

Mar '22

Biconomy Hyphen 2.0 contest

Biconomy Hyphen 2.0 contest

1,299.02 USDT • 3 total findings • Code4rena • throttle

#12

medium

WhitelistPeriodManager: Improper state handling of exclusion removals

medium

Improper Upper Bound Definition on the Fee

medium

Owners have absolute control over protocol

Feb '22

Hubble contest

Hubble contest

3,255.81 USDC • 2 total findings • Code4rena • throttle

#10

high

denial fo service

medium

USDC blacklisted accounts can DoS the withdrawal system

Badger Citadel contest

Badger Citadel contest

33.21 USDC • Code4rena • throttle

#35

Concur Finance contest

Concur Finance contest

2,519.42 USDC • 3 total findings • Code4rena • throttle

#9

high

Wrong reward token calculation in MasterChef contract

medium

Rewards get diluted because `totalAllocPoint` can only increase.

medium

Unconstrained fee

Jan '22

Yield-Convex contest

Yield-Convex contest

167.73 USDC • 1 total finding • Code4rena • throttle

#9

medium

Oracle data feed is insufficiently validated.

Notional contest

Notional contest

80.95 USDC • Code4rena • throttle

#20

OpenLeverage contest

OpenLeverage contest

26.86 USDT • Code4rena • throttle

#18

Behodler contest

Behodler contest

30.02 USDC • Code4rena • throttle

#27