Banner
https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/268c673f-e316-48ff-a028-f9ff746624c1.jpeg

hail_the_lord

Security Researcher

here to do my best to secure WEB3

Contact Me

High

8

Total

Medium

7

Total

$368.00

Total Earnings

#1771 All Time

5x

Payouts

regular

1x

Top 25

regular

1x

Top 50

All

Code4rena

Cantina

CodeHawks

Jun '25

telcoin-network

telcoin-network

0.95 USDC • 1 total finding • Cantina • HailTheLord

#70

high

Finding not yet public.

Feb '25

Virtuals Protocol

Virtuals Protocol

9.38 USDC • 1 total finding • Code4rena • hail_the_lord

#68

high

Lack of Access Control in `AgentNftV2::addValidator()` Enables Unauthorized Validator Injection and Causes Reward Accounting Inconsistencies

Core Contracts

Core Contracts

178.99 usdc • 3 total findings • CodeHawks • hailthelord

#111

high

Ownership Parameter Mismatch in LendingPool’s Vault Withdrawal Logic

medium

Incorrect DebtToken totalSupply Scaling Breaks Interest Rate Calculations

medium

Missing Slippage Protection in `LendingPool.deposit()`

Aug '24

Phi

Phi

171.69 USDC • 6 total findings • Code4rena • hail_the_lord

#15

high

Unrestricted Changes to Token Settings Allow Artists to Alter Critical Features

high

Reentrancy Vulnerability Allows Bypass of Cooldown, Leading to Unfair Reward Extraction Through Flash Loan

high

Exposed `_removeCredIdPerAddress` & `_addCredIdPerAddress` allows anyone to cause issues to current holders as well as upcoming ones

high

Signature replay in `createArt` allows to impersonate artist and steal royalties

medium

Refunds sent to incorrect addresses in certain cases

medium

Contract `PhiNFT1155` can't be paused

Jul '24

TraitForge

TraitForge

7.15 USDC • 4 total findings • Code4rena • hail_the_lord

#73

high

`mintToken()`, `mintWithBudget()`, and `forge()` in the `TraitForgeNft` Contract Will Fail Due to a Wrong Modifier Used in `EntropyGenerator.initializeAlphaIndices()`

medium

Forger Entities can forge more times than intended

medium

Pause and unpause functions are inaccessible

medium

TraitForgeNft: Generations without a golden god are possible