https://sherlock-files.ams3.digitaloceanspaces.com/twitter_images/7eb770d5-ecbc-4838-ba75-97f563856766.jpg

dutra

Security Researcher

Independent security researcher | Eternal n00b.

Contact Me

High

2

Total

Medium

5

Total

$57.00

Total Earnings

#2072 All Time

4x

Payouts

regular

1x

Top 50

All

Code4rena

Feb '24

AI Arena

AI Arena

1.92 USDC • 2 total findings • Code4rena • dutra

#160

medium

Can mint NFT with the desired attributes by reverting transaction

medium

Fighter created by mintFromMergingPool can have arbitrary weight and element

Jan '24

Decent

Decent

23.19 USDC • 2 total findings • Code4rena • dutra

#49

high

Anyone can update the address of the Router in the DcntEth contract to any address they would like to set.

medium

Missing access control on UTB:receiveFromBridge allows UTB swaps to be executed without spending bridge fees while bypassing fee/swap instruction signature verification

Salty.IO

Salty.IO

31.2 USDC • 1 total finding • Code4rena • dutra

#100

medium

Reusing a SALT that has already been used for voting can allow a malicious proposal to pass and compromise the protocol.

Curves

Curves

1.11 USDC • 2 total findings • Code4rena • dutra

#128

high

Unauthorized Access to setCurves Function

medium

If a user sets their curve token symbol as the default one plus the next token counter instance it will render the whole default naming functionality obsolete