Security Researcher
High
Total
Medium
Total Earnings
#994 All Time
Payouts
Top 25
Top 50
All
Sherlock
Code4rena
Oct '23
26.77 USDC • 3 total findings • Code4rena • Viktor_Cortess
#90
high
Attacker can reenter to mint all the collection supply
Adversary can block `claimAuction()` due to push-strategy to transfer assets to multiple bidders
medium
Auction payout goes to AuctionDemo contract owner, not the token owner
Sep '23
25.79 USDC • 1 total finding • Code4rena • Viktor_Cortess
#82
All tokens can be stolen from `VirtualAccount` due to missing access modifier
Aug '23
3.86 USDC • Code4rena • Viktor_Cortess
#94
98.54 USDC • 3 total findings • Code4rena • Viktor_Cortess
#83
The peg stability module can be compromised by forcing lowerDepeg to revert.
Missing slippage parameter on Uniswap `addLiquidity()` function
`sync` function in `RdpxV2Core.sol` should be called in multiple scenarios to account for the balance changes that occurs
44.31 USDC • Code4rena • Viktor_Cortess
#67
Jul '23
94.77 USDC • 1 total finding • Code4rena • Viktor_Cortess
#26
Proposal requiring native coin transfers cannot be executed
Jun '23
64.51 USDC • 2 total findings • Sherlock • Viktor_Cortess
#36
PartyB can withdraw funds if it got suspended.
function lockQuote increments nonce incorrectly
May '23
883.33 USDC • Code4rena • Viktor_Cortess
#29
67.74 USDC • 3 total findings • Sherlock • Viktor_Cortess
Missing deadline checks allow pending transactions to be maliciously executed.
A number of similar problems with contracts that are supposed to interact with Oracles.
getPriceUSD() function in StableOracleDAI contract calculates price of WETH with inverted data.
Apr '23
0.51 USDC • 2 total findings • Code4rena • Viktor_Cortess
#150
Calling `Position._marketBuy` and `Position._marketSell` functions that calculate `_fee` by dividing by `10000` can cause incorrect calculations
Calling `ExpiringMarket.stop` and `ExpiringMarket.isClosed` functions cannot pause any functionlities of the market
Mar '23
13.27 USDC • 1 total finding • Code4rena • Viktor_Cortess
#154
Staking, unstaking and rebalanceToWeight can be sandwiched (Mainly rETH deposit )
31.9 USDC • 1 total finding • Code4rena • Viktor_Cortess
#51
Bio Protocol - `tokenURI` JSON injection
48.97 USDC • Code4rena • Viktor_Cortess
#57
Feb '23
370.05 USDC • Code4rena • Viktor_Cortess
Jan '23
4.58 USDC • 1 total finding • Code4rena • Viktor_Cortess
#167
Fee on transfer token not supported
113.89 USDC • Code4rena • Viktor_Cortess
#24
68.6 USDC • Code4rena • Viktor_Cortess
#28
36.5 USDC • Code4rena • Viktor_Cortess
#78