https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/a02fc9b2-fb80-4646-9d5f-7dad4966a773.png

chista0x

Security Researcher

I am passionate about learning and enjoy auditing blockchain projects. With a keen interest in discovering vulnerabilities and improving security

Contact Me

High

2

Total

Medium

7

Total

$2.88K

Total Earnings

#916 All Time

9x

Payouts

regular

2x

Top 10

regular

4x

Top 25

regular

7x

Top 50

All

Sherlock

Code4rena

CodeHawks

Immunefi

Mar '25

Audit Comp | Yeet

Audit Comp | Yeet

59 USDC • 2 total findings • Immunefi • chista0x

#32

low

Finding not yet public.

low

Finding not yet public.

Dec '24

QuantAMM

QuantAMM

163.70 op • 1 total finding • CodeHawks • chista0x

#40

high

Loss of Fees for Router `UpliftOnlyExample` due to Division Rounding in Admin Fee Calculation, Causing Unfair Fee Distribution

Oku's New Order Types Contract Contest

Oku's New Order Types Contract Contest

0.00 OP • 1 total finding • Sherlock • chista0x

#66

high

Malicious Sequencer Can Override Orders, Causing Loss of User Funds

Autonomint Colored Dollar V1

Autonomint Colored Dollar V1

1.57 OP • 1 total finding • Sherlock • chista0x

#64

medium

External callers can reset function approvals, leading to Denial of Service (DoS) attacks.

Nov '24

Project

Project

80.34 USDC • 1 total finding • CodeHawks • chista0x

#13

medium

Reorg Vulnerability in DAO Membership Creation Allows Users to Join Incorrect DAOs

Oct '24

Flow

Flow

241.58 USDC • 1 total finding • CodeHawks • chista0x

#7

low

`SablierFlowBase` Lacks `EIP-165` Compliance for `EIP4906` Interface Support

Jul '24

Audit Comp | Folks Finance

Audit Comp | Folks Finance

1,737 USDC • 5 total findings • Immunefi • chista0x

#12

medium

Finding not yet public.

medium

Finding not yet public.

medium

Finding not yet public.

low

Finding not yet public.

low

Finding not yet public.

Jun '24

Vultisig

Vultisig

591.87 USDC • 1 total finding • Code4rena • chista0x

#9

medium

Vultisig should be burnable

May '24

Predy

Predy

1.92 USDC • 1 total finding • Code4rena • chista0x

#40

medium

Vaults can become immune from liquidation by setting `vault.recipient` to a blacklisted quote token address