https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/defaults/default_avatar_5.png

janbro

Security Researcher

Contact Me

High

2

Total

Medium

2

Total

$15.33K

Total Earnings

#445 All Time

4x

Payouts

bronze

1x

3rd Places

regular

4x

Top 10

regular

4x

Top 25

All

Code4rena

May '21

NFTX contest

NFTX contest

9,390.65 USDC • 4 total findings • Code4rena • janbro

bronze

high

_sendForReceiver is vulnerable to reentrancy. This enables a receiver to drain the remaining fees to distribute.

high

An attacker can cause an overflow in the flashLoan function

medium

A malicious receiver can cause another receiver to lose out on distributed fees by returning `false` for `tokensReceived` when receiveRewards is called on their receiver contract.

medium

The direct redeem fee can be circumvented

Apr '21

Maple Finance contest

Maple Finance contest

3,711.79 USDC • Code4rena • janbro

#5

Feb '21

ElasticDAO contest

ElasticDAO contest

1,116.77 ETH • Code4rena • janbro

#7

Slingshot Finance contest

Slingshot Finance contest

1,115.35 USDC • Code4rena • janbro

#8