https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/6c33cd88-2940-4320-b2d1-e47ca2549a56.png

haxagon

Security Researcher

Contact Me

High

2

Total

Medium

5

Total

$8.64K

Total Earnings

#809 All Time

5x

Payouts

gold

1x

1st Places

regular

4x

Top 10

regular

4x

Top 25

All

Sherlock

Sep '24

Thanos L2 Native Token Bridge

Thanos L2 Native Token Bridge

4,500 USDC • 1 total finding • Sherlock • haxagon

gold

high

Address aliasing will not be applied if a contract calls `approveAndCall` directly on the portal allowing for impersonation attacks on L2

Boost Core Incentive Protocol

Boost Core Incentive Protocol

454.17 USDC • 4 total findings • Sherlock • haxagon

#8

high

Missing functionality to clawback the incentives

medium

FoT tokens will not work with budget

medium

Rebasing tokens will be stuck in the ERC20 Incentive on negative rebase

medium

Weak randomness in drawing raffle

Jul '24

MakerDAO Endgame

MakerDAO Endgame

964.34 USDC • Sherlock • haxatron

#59

Mar '24

Optimism Fault Proofs

Optimism Fault Proofs

2,203.02 USDC • 1 total finding • Sherlock • haxatron

#6

medium

Anchor state registry can be corrupted which will prevent game creation of the same type.

Jan '24

Olympus On-Chain Governance

Olympus On-Chain Governance

524.45 USDC • 1 total finding • Sherlock • haxatron

#6

medium

High risk quorum bypass by appending extra bytes into the calldata.