https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/defaults/default_avatar_7.png

codegpt

Security Researcher

Contact Me

High

8

Total

Medium

10

Total

$16.64K

Total Earnings

#470 All Time

10x

Payouts

silver

2x

2nd Places

regular

2x

Top 10

regular

3x

Top 25

All

Code4rena

Aug '25

GTE Perps and Launchpad

GTE Perps and Launchpad

304.88 USDC • 9 total findings • Code4rena • codegpt

#47

high

Total reward shares for token can reach zero after unlocking, causing `GTELaunchpadV2Pair` to be bricked

high

Risk of Gas DoS due to Looping

high

Donations to `Distributor` with arbitrary `quoteToken` can be used to drain all quote rewards from distributor

high

`GTELaunchpadV2Pair` permits minting LP tokens for free when there are non-zero accumulated launch pad fees

high

`GTELaunchpadV2Pair::burn` over-estimates distribution amounts when there are non-zero accrued launchpad fees

high

CREATE2 address of the uniswap pair used by `LaunchPad` does not match address of pair deployed by `GTELaunchpadV2PairFactory`

medium

Bypass of recipient check allows pre-seeding the real pair and manipulating initial AMM price

medium

`LaunchToken` transfers cause staking rewards to be lost to the `LaunchPad`

medium

Pair pre-creation disables Launchpad rewards hooks leading to no fees accrued or distributed

Solana Foundation

Solana Foundation

2,526.32 USDC • Code4rena • codegpt

silver

Jan '24

Curves

Curves

4.24 USDC • 4 total findings • Code4rena • codegpt

#106

high

Unauthorized Access to setCurves Function

medium

Protocol and referral fee would be permanently stuck in the Curves contract when selling a token

medium

onBalanceChange causes previously unclaimed rewards to be cleared

medium

Curves::_buyCurvesToken(), Excess of Eth received is not refunded back to the user.

Sep '23

Centrifuge

Centrifuge

132.86 USDC • 1 total finding • Code4rena • codegpt

#28

medium

Cached `DOMAIN_SEPARATOR` is incorrect for tranche tokens potentially breaking permit integrations

Ondo Finance

Ondo Finance

7.08 USDC • Code4rena • codegpt

#32

Aug '23

Chainlink Staking v0.2

Chainlink Staking v0.2

1,202.41 USDC • Code4rena • codegpt

#31

Dopex

Dopex

27.02 USDC • 2 total findings • Code4rena • codegpt

#101

high

The settle feature will be broken if attacker arbitrarily transfer collateral tokens to the PerpetualAtlanticVaultLP

medium

`sync` function in `RdpxV2Core.sol` should be called in multiple scenarios to account for the balance changes that occurs

Jul '23

Basin

Basin

17.52 USDC • Code4rena • codegpt

#26

Nouns DAO

Nouns DAO

58.98 USDC • Code4rena • codegpt

#16

Jun '23

LUKSO

LUKSO

12,360.37 USDC • 2 total findings • Code4rena • codegpt

silver

medium

LSP8 and LSP9's ERC-165 interface ID differs from their specification

medium

Insufficient Length Check When Verifying Allowed Data Keys