Security Researcher
Father and husband Ex-concert promoter Currently learning Web3 security
High
Total
Medium
Total Earnings
#1581 All Time
Payouts
Top 10
Top 25
Top 50
All
Sherlock
Code4rena
CodeHawks
Mar '25
2.38 USDC • 2 total findings • Sherlock • anchabadze
#10
high
Arbitrary from parameter in transferFrom allows unauthorized token transfers
medium
Unlimited request assignment and lack of the mechanism to revoke worker permissions enables protocol-wide DoS attack via malicious worker
39.69 USDC • 1 total finding • Sherlock • anchabadze
#15
Incorrect initializer modifier in Vesting contract prevents proper initialization
Feb '25
29.53 USDC • 1 total finding • Sherlock • anchabadze
#21
Incorrect tick parameter in collectFees() function leads to loss of vesting position fees or possible complete protocol lockup
0.35 USDC • 1 total finding • Code4rena • anchabadze
#8
MergeTgt has no handling if TGT_TO_EXCHANGE is exceeded during the exchange period
185.53 usdc • 3 total findings • CodeHawks • anchabadze
#25
Wrong refundExecutionFee in _handleReturn
Wrong index causes last depositor to always get execution fee refund if cancelFlow is called by keeper to cancel a withdrawal
Functions that rely on chainlink prices cannot be queried on avalanche due to sequencer uptime check.
Jan '25
3.58 USDC • 1 total finding • Code4rena • anchabadze
#16
Ineffective proposal threshold validation allows setting arbitrary high values
Dec '24
4.14 USDC • 1 total finding • Code4rena • anchabadze
#56
`SecondSwap_Marketplace` vesting listing order affects how much the vesting buyers can claim at a given step