Security Researcher
High
Total
Medium
Total Earnings
#2206 All Time
Payouts
Top 50
All
Sherlock
Dec '24
2.28 OP • 3 total findings • Sherlock • gajiknownnothing
#45
high
Missing `msg.sender == recipient` check allows steal user's tokens
User Can Refund Tokens Multiple Times by Modifying a Cancelled Order
medium
Malicious User Will Cause `_cancelOrder()` Function Denial of Service
Aug '24
5.62 USDC • 2 total findings • Sherlock • gajiknownnothing
#30
Not updating `_lockedETH` in the `refundPlayers()` function leads to the asset being locked
Raffle cancellation can be front-run to lock assets on Ethereum
Jul '24
0.08 USDC • 1 total finding • Sherlock • gajiknownnothing
#64
Protocol is incompatible with rebase ERC20 tokens that have a mechanism for balance modifications outside of transfers