https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/defaults/default_avatar_7.png

darksnow

Security Researcher

Contact Me

High

4

Total

Medium

3

Total

$11.00

Total Earnings

#2288 All Time

5x

Payouts

All

Code4rena

Apr '24

DYAD

DYAD

9.74 USDC • 2 total findings • Code4rena • darksnow

#92

medium

No incentive to liquidate small positions could result in protocol going underwater

medium

Value of kerosene can be manipulated to force liquidate users

Jan '24

Decent

Decent

0.12 USDC • 1 total finding • Code4rena • darksnow

#55

high

Anyone can update the address of the Router in the DcntEth contract to any address they would like to set.

Curves

Curves

1.08 USDC • 2 total findings • Code4rena • darksnow

#129

high

Attack to make ````CurveSubject```` to be a ````HoneyPot````

high

Unauthorized Access to setCurves Function

Oct '23

NextGen

NextGen

0 USDC • 1 total finding • Code4rena • darksnow

#115

high

Attacker can drain all ETH from AuctionDemo when block.timestamp == auctionEndTime

Apr '23

Rubicon v2

Rubicon v2

0.29 USDC • 1 total finding • Code4rena • darksnow

#123

medium

Calling `ExpiringMarket.stop` and `ExpiringMarket.isClosed` functions cannot pause any functionlities of the market