https://sherlock-files.ams3.digitaloceanspaces.com/twitter_images/411426e6-18a9-4ad6-b31b-9d73dcbfd3c7.jpg

arnie

Security Researcher

Security researcher DM for a private audit

Contact Me

High

4

Total

Medium

6

Total

$3.69K

Total Earnings

#835 All Time

9x

Payouts

silver

2x

2nd Places

regular

3x

Top 10

regular

7x

Top 25

All

Code4rena

Cantina

CodeHawks

Feb '25

THORWallet

THORWallet

549.84 USDC • 3 total findings • Code4rena • arnie

silver

high

MergeTgt has no handling if TGT_TO_EXCHANGE is exceeded during the exchange period

high

The user can send tokens to any address by using two bridge transfers, even when transfers are restricted.

medium

Improper Transfer Restrictions on Non-Bridged Tokens Due to Boolean Bridged Token Tracking, Allowing a DoS Attack Vector

Aug '24

Fjord Token Staking

Fjord Token Staking

0.19 USDC • 1 total finding • CodeHawks • arnie

#20

medium

`FjordAuction` incorrect `block.timestamp` check allows users to bid after calling `auctionEnd` to claim more tokens than they should

Jul '24

TempleGold

TempleGold

74.89 USDC • 1 total finding • CodeHawks • arnie

#29

low

Lack of Comprehensive Pausability for Critical Functions

May '24

YOLO Games

YOLO Games

407.98 USDC • 1 total finding • Cantina • Arnie

#12

medium

Finding not yet public.

Mar '24

Ondo Finance

Ondo Finance

8.28 USDC • Code4rena • arnie

#17

Oct '23

Steadefi

Steadefi

135.80 USDC • 2 total findings • CodeHawks • arnie

#25

low

A bad price can be delivered in ChainlinkARBOracle

low

USDC is not valued correctly in case of a depeg, which causes a loss of funds

Aug '23

Sparkn

Sparkn

654.00 USDC • 5 total findings • CodeHawks • arnie

#6

medium

The `digest` calculation in `deployProxyAndDistributeBySignature` does not follow EIP-712 specification

medium

Malicious/Compromised organiser can reclaw all funds, stealing work from supporters

low

If a winner is blacklisted on any of the tokens they can't receive their funds

low

Centralization Risk for trusted organizers

low

Using basis points for percentage is not precise enough for realistic use-cases

Jul '23

Beedle - Oracle free perpetual lending

Beedle - Oracle free perpetual lending

0.07 USDC • 2 total findings • CodeHawks • arnie

#224

high

Sandwich attack to steal all ERC-20 tokens in the Fees contract

medium

Single-step process for critical ownership transfer is risky

Foundry DeFi Stablecoin CodeHawks Audit Contest

Foundry DeFi Stablecoin CodeHawks Audit Contest

1,858.82 USDC • 1 total finding • CodeHawks • arnie

silver

high

There is no incentive to liquidate small positions