https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/defaults/default_avatar_7.png

codegpt

Security Researcher

Contact Me

High

8

Total

Medium

10

Total

$22.96K

Total Earnings

#385 All Time

11x

Payouts

silver

2x

2nd Places

regular

2x

Top 10

regular

4x

Top 25

All

Code4rena

Sep '25

Monad

Monad

6,315.79 USDC • Code4rena • codegpt

#12

Aug '25

GTE Perps and Launchpad

GTE Perps and Launchpad

304.88 USDC • 9 total findings • Code4rena • codegpt

#47

high

Total reward shares for token can reach zero after unlocking, causing `GTELaunchpadV2Pair` to be bricked

high

Risk of Gas DoS due to Looping

high

Donations to `Distributor` with arbitrary `quoteToken` can be used to drain all quote rewards from distributor

high

`GTELaunchpadV2Pair` permits minting LP tokens for free when there are non-zero accumulated launch pad fees

high

`GTELaunchpadV2Pair::burn` over-estimates distribution amounts when there are non-zero accrued launchpad fees

high

CREATE2 address of the uniswap pair used by `LaunchPad` does not match address of pair deployed by `GTELaunchpadV2PairFactory`

medium

Bypass of recipient check allows pre-seeding the real pair and manipulating initial AMM price

medium

`LaunchToken` transfers cause staking rewards to be lost to the `LaunchPad`

medium

Pair pre-creation disables Launchpad rewards hooks leading to no fees accrued or distributed

Solana Foundation

Solana Foundation

2,526.32 USDC • Code4rena • codegpt

silver

Jan '24

Curves

Curves

4.24 USDC • 4 total findings • Code4rena • codegpt

#106

high

Unauthorized Access to setCurves Function

medium

Protocol and referral fee would be permanently stuck in the Curves contract when selling a token

medium

onBalanceChange causes previously unclaimed rewards to be cleared

medium

Curves::_buyCurvesToken(), Excess of Eth received is not refunded back to the user.

Sep '23

Centrifuge

Centrifuge

132.86 USDC • 1 total finding • Code4rena • codegpt

#28

medium

Cached `DOMAIN_SEPARATOR` is incorrect for tranche tokens potentially breaking permit integrations

Ondo Finance

Ondo Finance

7.08 USDC • Code4rena • codegpt

#32

Aug '23

Chainlink Staking v0.2

Chainlink Staking v0.2

1,202.41 USDC • Code4rena • codegpt

#31

Dopex

Dopex

27.02 USDC • 2 total findings • Code4rena • codegpt

#101

high

The settle feature will be broken if attacker arbitrarily transfer collateral tokens to the PerpetualAtlanticVaultLP

medium

`sync` function in `RdpxV2Core.sol` should be called in multiple scenarios to account for the balance changes that occurs

Jul '23

Basin

Basin

17.52 USDC • Code4rena • codegpt

#26

Nouns DAO

Nouns DAO

58.98 USDC • Code4rena • codegpt

#16

Jun '23

LUKSO

LUKSO

12,360.37 USDC • 2 total findings • Code4rena • codegpt

silver

medium

LSP8 and LSP9's ERC-165 interface ID differs from their specification

medium

Insufficient Length Check When Verifying Allowed Data Keys