https://sherlock-files.ams3.digitaloceanspaces.com/twitter_images/5444676c-03c3-43e0-9063-5734f96610c2.jpg

kankodu

Security Researcher

Whitehat ranked #17 @immunefi, Security Resercher @SpearbitDAO

Contact Me

High

8

Total

Medium

3

Total

$26.38K

Total Earnings

#310 All Time

12x

Payouts

silver

1x

2nd Places

bronze

1x

3rd Places

regular

3x

Top 10

All

Sherlock

Code4rena

Cantina

Jul '24

MakerDAO Endgame

MakerDAO Endgame

3,500 USDC • Sherlock • kankodu

#123

Apr '24

Exactly Protocol

Exactly Protocol

2,978.20 USDC • 1 total finding • Sherlock • kankodu

#5

high

Inflation Attack through stealth donation

Feb '24

curvance

curvance

565.78 USDC • 1 total finding • Cantina • kankodu

#36

medium

Finding not yet public.

Nov '23

morpho-blue

morpho-blue

1,243.18 USDC • 1 total finding • Cantina • kankodu

#15

high

Finding not yet public.

Jul '23

Moonwell

Moonwell

7,526.15 USDC • 2 total findings • Code4rena • kankodu

bronze

medium

borrowRateMaxMantissa should be specific to the chain protocol is being deployed to

medium

Borrowing donated tokens to grief and then steal all the tokens in the protocol

Jun '23

Lybra Finance

Lybra Finance

143.49 USDC • 1 total finding • Code4rena • kankodu

#50

high

There is a vulnerability in the executeFlashloan function of the PeUSDMainnet contract. Hackers can use this vulnerability to burn other people's eUSD token balance without permission

Jan '23

Biconomy - Smart Contract Wallet contest

Biconomy - Smart Contract Wallet contest

148.23 USDC • 2 total findings • Code4rena • kankodu

#41

high

Arbitrary transactions possible due to insufficient signature validation

high

Destruction of the `SmartAccount` implementation

UXD Protocol

UXD Protocol

51.94 USDC • 1 total finding • Sherlock • kankodu

#26

high

amount equal to NegativePnl can be forced from any account that has approved tokens to PerpDepository.sol

Nov '22

ParaSpace contest

ParaSpace contest

103.92 USDC • Code4rena • kankodu

#51

Aug '22

Sentiment

Sentiment

533.47 USDC • 1 total finding • Sherlock • kankodu

#17

high

Loss of Precision Bug

Rigor Protocol contest

Rigor Protocol contest

165.63 USDC • 1 total finding • Code4rena • kankodu

#36

high

Builder can call `Community.escrow` again to reduce debt further using same signatures

Jul '22

Golom contest

Golom contest

9,423.59 USDC • Code4rena • kankodu

silver