https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/a02fc9b2-fb80-4646-9d5f-7dad4966a773.png

chista0x

Security Researcher

I am passionate about learning and enjoy auditing blockchain projects. With a keen interest in discovering vulnerabilities and improving security

Contact Me

High

2

Total

Medium

9

Total

$2.98K

Total Earnings

#953 All Time

11x

Payouts

regular

2x

Top 10

regular

4x

Top 25

regular

8x

Top 50

All

Sherlock

Code4rena

CodeHawks

Immunefi

May '25

Audit Comp | Flare | FAssets

Audit Comp | Flare | FAssets

78 • 1 total finding • Immunefi • chista0x

#42

low

Finding not yet public.

Mar '25

Audit Comp | Yeet

Audit Comp | Yeet

59 USDC • 2 total findings • Immunefi • chista0x

#32

low

Finding not yet public.

low

Finding not yet public.

Feb '25

Core Contracts

Core Contracts

27.08 usdc • 3 total findings • CodeHawks • chista0x

#228

medium

[H-2] Lack of Emergency Pause in `BaseGauge::stake` and `BaseGauge::withdraw

medium

Emergency revoke in RAACReleaseOrchestrator will freeze revoked RAAC tokens in orchestrator

low

Boost delegation can be removed even if the BoostController is paused, updating the pool's boost accounting

Dec '24

QuantAMM

QuantAMM

163.70 op • 1 total finding • CodeHawks • chista0x

#40

high

Loss of Fees for Router `UpliftOnlyExample` due to Division Rounding in Admin Fee Calculation, Causing Unfair Fee Distribution

Oku's New Order Types Contract Contest

Oku's New Order Types Contract Contest

0.00 OP • 1 total finding • Sherlock • chista0x

#66

high

Malicious Sequencer Can Override Orders, Causing Loss of User Funds

Autonomint Colored Dollar V1

Autonomint Colored Dollar V1

1.57 OP • 1 total finding • Sherlock • chista0x

#64

medium

External callers can reset function approvals, leading to Denial of Service (DoS) attacks.

Nov '24

Project

Project

80.34 USDC • 1 total finding • CodeHawks • chista0x

#13

medium

Reorg Vulnerability in DAO Membership Creation Allows Users to Join Incorrect DAOs

Oct '24

Flow

Flow

241.58 USDC • 1 total finding • CodeHawks • chista0x

#7

low

`SablierFlowBase` Lacks `EIP-165` Compliance for `EIP4906` Interface Support

Jul '24

Audit Comp | Folks Finance

Audit Comp | Folks Finance

1,737 USDC • 5 total findings • Immunefi • chista0x

#12

medium

Finding not yet public.

medium

Finding not yet public.

medium

Finding not yet public.

low

Finding not yet public.

low

Finding not yet public.

Jun '24

Vultisig

Vultisig

591.87 USDC • 1 total finding • Code4rena • chista0x

#9

medium

Vultisig should be burnable

May '24

Predy

Predy

1.92 USDC • 1 total finding • Code4rena • chista0x

#40

medium

Vaults can become immune from liquidation by setting `vault.recipient` to a blacklisted quote token address