https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/defaults/default_avatar_1.png

itsmeSTYJ

Security Researcher

Contact Me

High

5

Total

Medium

21

Total

$33.20K

Total Earnings

#269 All Time

17x

Payouts

bronze

1x

3rd Places

regular

8x

Top 10

regular

14x

Top 25

All

Code4rena

Apr '23

EigenLayer Contest

EigenLayer Contest

71.6 USDC • Code4rena • itsmeSTYJ

#25

Aug '22

Olympus DAO contest

Olympus DAO contest

1,040.98 USDC • 4 total findings • Code4rena • itsmeSTYJ

#21

medium

Heart will stop if all rewards are swept

medium

Inconsistant parameter requirements between `constructor()` and `Set() functions` in `RANGE.sol` and `Operator.sol`.

medium

[NAZ-M1] Chainlink's `latestRoundData` Might Return Stale Results

medium

Heart::beat() could be called several times in one block if no one called it for a some time

Foundation Drop contest

Foundation Drop contest

42.83 USDC • 1 total finding • Code4rena • itsmeSTYJ

#54

medium

Possible to bypass saleConfig.limitPerAccount

Jul '22

Swivel v3 contest

Swivel v3 contest

1,049.91 USDC • 1 total finding • Code4rena • itsmeSTYJ

#11

medium

VaultTracker has the wrong admin

Jun '22

Putty contest

Putty contest

89.02 USDC • 1 total finding • Code4rena • itsmeSTYJ

#48

medium

Malicious Token Contracts May Lead To Locking Orders

Nibbl contest

Nibbl contest

2,339.34 USDC • 1 total finding • Code4rena • itsmeSTYJ

#5

medium

Lack of sanity check on _initialTokenSupply and _initialTokenPrice can lead to a seller losing his NFT

Illuminate contest

Illuminate contest

308.29 USDC • 2 total findings • Code4rena • itsmeSTYJ

#30

high

Allowance check always true in ERC5095 redeem

high

Illuminate PT redeeming allows for burning from other accounts

Feb '22

Hubble contest

Hubble contest

1,684.71 USDC • 1 total finding • Code4rena • itsmeSTYJ

#13

medium

Users are able to front-run bad debt settlements to avoid insurance costs

Dec '21

Amun contest

Amun contest

277.64 USDC • Code4rena • itsmeSTYJ

#22

Nov '21

Streaming Protocol contest

Streaming Protocol contest

1,246.4 USDC • 1 total finding • Code4rena • itsmeSTYJ

#24

medium

LockeERC20 is vulnerable to frontrun attack

Unlock Protocol contest

Unlock Protocol contest

1,302.66 USDC • 1 total finding • Code4rena • itsmeSTYJ

#8

medium

Unlock: free UDT arbitrage opportunity

Oct '21

Union Finance contest

Union Finance contest

5,859.84 ETH • 3 total findings • Code4rena • itsmeSTYJ

#4

medium

debtWriteOff updates totalFrozen immaturely, thereby losing staker rewards

medium

UserManager: totalStaked ≥ totalFrozen should be checked before and after totalFrozen is updated

medium

Wrong implementation of `CreditLimitByMedian.sol#getLockedAmount()` will lock a much bigger total amount of staked tokens than expected

Sep '21

Swivel contest

Swivel contest

10,766.37 ETH • 3 total findings • Code4rena • itsmeSTYJ

bronze

high

Swivel: Taker is charged fees twice in exitVaultFillingVaultInitiate

medium

Swivel: implementation for initiateZcTokenFillingZcTokenExit is incorrect

medium

Previously created markets can be overwritten

Wild Credit contest

Wild Credit contest

1,546.32 USDC • Code4rena • itsmeSTYJ

#5

Kuiper contest

Kuiper contest

4,130.84 USDC • 6 total findings • Code4rena • itsmeSTYJ

#5

high

Reentrancy in settleAuction(): malicious publisher can bypass index timelock mechanism, inject malicious index, and rug the basket

medium

licenseFee can be greater than BASE

medium

Fee calculation is potentially incorrect

medium

Use safeTransfer instead of transfer

medium

Fee on transfer tokens can lead to incorrect approval

medium

Unsafe approve would halt the auction and burn the bond

Sushi Miso contest

Sushi Miso contest

821.53 USDC • Code4rena • itsmeSTYJ

#9

yAxis contest

yAxis contest

624.28 tokens) • 1 total finding • Code4rena • itsmeSTYJ

#8

high

Vault treats all tokens exactly the same that creates (huge) arbitrage opportunities.