Security Researcher
High
Total
Medium
Total Earnings
#291 All Time
Payouts
3rd Places
Top 10
Top 25
All
Code4rena
Mar '24
565.16 USDC • 1 total finding • Code4rena • erebus
#11
medium
Freezed Chain will never be unfreeze since `StateTransitionManager::unfreezeChain` is calling `freezeDiamond` instead of `unfreezeDiamond`.
Feb '24
152.74 USDC • 1 total finding • Code4rena • erebus
#14
[M09] No slippage check in `remove_liquidity` function in omnipool can lead to slippage losses during liquidity withdrawal.
Jan '24
15.39 USDC • 2 total findings • Code4rena • erebus
#79
high
Unauthorized Access to setCurves Function
If a user sets their curve token symbol as the default one plus the next token counter instance it will render the whole default naming functionality obsolete
Dec '23
4,185.05 USDC • 3 total findings • Code4rena • erebus
Withdrawals can be frozen by creating null deposits
Missing slippage protection in `liquidity_lockbox::withdraw`
Withdraw amount returned by `getLiquidityAmountsAndPositions` may be incorrect
Nov '23
4.08 USDC • Code4rena • erebus
#29
Oct '23
4.52 USDC • Code4rena • erebus
#39
25,342.89 USDC • Code4rena • erebus
#5
Aug '23
65.42 USDC • 1 total finding • Code4rena • erebus
#88
A malicious early depositor can manipulate the `LP-Token` price per share to take an unfair share of future user deposits
9.82 USDC • Code4rena • erebus
#52
Jul '23
122.45 USDC • 1 total finding • Code4rena • erebus
#17
Rounding error in `WUSDA` can result in loss of user funds, especially when manipulated by an attacker
15.92 USDC • Code4rena • erebus
#66
1,149.67 USDC • 2 total findings • Code4rena • erebus
#42
Tokens can be stolen from other users who have approved Magnetar
Executing transfers before reverting (AKA bad execution flow/logic design)
2,177.78 USDC • 1 total finding • Code4rena • erebus
#4
QA Report
Jun '23
1,016.48 USDC • 1 total finding • Code4rena • erebus
#7
Potential risk of using `swappedAmount` in case of swap error