https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/defaults/default_avatar_3.png

iamephraim

Security Researcher

Contact Me

High

5

Total

Medium

4

Total

$2.27K

Total Earnings

#1144 All Time

5x

Payouts

regular

1x

Top 10

regular

2x

Top 25

regular

3x

Top 50

All

Sherlock

Code4rena

Nov '25

stNXM by EaseDeFi

stNXM by EaseDeFi

10.44 USDC • 3 total findings • Sherlock • iamephraim

#32

high

Removal of TokenID with active shares on Nexus Mutual Pool tranches will cause an accounting issues

high

Attacker will drain Morpho vault liquidity by exploiting price source mismatch between vault accounting and Morpho oracle

medium

Time-based sanePrice protection weakens linearly over time to allow morpho stNXM/wNXM vault exploit

Aug '25

Flare - FAsset

Flare - FAsset

2,210.53 USDC • Code4rena • Ephraim

#5

Feb '25

Yieldoor

Yieldoor

29.63 USDC • 2 total findings • Sherlock • iamephraim

#20

high

Protocol will witness DOS vulnerability due to incorrect use of wrong tickUpper in `collectFees()` and halt withdrawals and liquidations

medium

Repayment could fail when withdrawals on leveraged positions are made with denomination token

Jan '24

Salty.IO

Salty.IO

25.08 USDC • 2 total findings • Code4rena • Ephraim

#106

high

When borrowers repay USDS, it is sent to the wrong address, allowing anyone to burn Protocol Owned Liquidity and build bad debt for USDS

medium

Impossible to change managed wallets with `proposeWallets` after first rejection

Curves

Curves

0 USDC • 2 total findings • Code4rena • Ephraim

#137

high

Unauthorized Access to setCurves Function

medium

Curves::_buyCurvesToken(), Excess of Eth received is not refunded back to the user.