https://sherlock-files.ams3.digitaloceanspaces.com/twitter_images/d64176c6-7b0d-4840-8d3a-89ae262954fa.jpg

ltyu

Security Researcher

Contact Me

High

14

Total

Medium

11

Total

$11.29K

Total Earnings

#507 All Time

11x

Payouts

regular

2x

Top 10

regular

6x

Top 25

regular

7x

Top 50

All

Sherlock

Code4rena

Aug '23

Chainlink Staking v0.2

Chainlink Staking v0.2

44.97 USDC • Code4rena • ltyu

#56

veRWA

veRWA

192.42 USDC • 3 total findings • Code4rena • ltyu

#21

high

Delegated votes are locked when owner lock is expired

high

Voters from VotingEscrow can vote infinite times in vote_for_gauge_weights() of GaugeController

high

If governance removes a gauge, user's voting power for that gauge will be lost.

Jul '23

Tapioca DAO

Tapioca DAO

251.45 USDC • 4 total findings • Code4rena • ltyu

#63

high

Ability to steal user funds and increase collateral share infinitely in BigBang and Singularity

medium

BigBang and Singularity should not pause repay() and liquidate()

medium

all deposit and withdraw function in Convex and Curve nativeLP Strategy, apply slippage on internal pricing; which call real-time on chain price from Curve directly and subject to MEV

medium

Option brokers don't handle oracle decimals correctly when calculating payment amounts

May '23

Maia DAO Ecosystem

Maia DAO Ecosystem

4,852.79 USDC • 5 total findings • Code4rena • ltyu

#14

high

Multiple issues with decimal scaling will cause incorrect accounting of hTokens and underlying tokens

high

setWeight() Logic error

high

Cross-chain messaging via Anycall will fail

medium

Improper array initialization causes index out of bounds error

medium

VirtualAccount cannot directly send native tokens

Apr '23

Frankencoin

Frankencoin

56.43 USDC • 1 total finding • Code4rena • ltyu

#55

medium

Challengers and bidders can collude together to restrict the minting of position owner

Mar '23

Gitcoin

Gitcoin

470.96 USDC • Sherlock • ltyu

#7

Y2K

Y2K

857.43 USDC • 6 total findings • Sherlock • ltyu

#18

high

Incorrect rollover logic allows modification of other user rollovers

high

Deposit in queue can be blocked

high

Rollover delisting causes underflow

medium

Sequencer grace period may exceed epoch end time

medium

End epoch can be triggered when null epoch

medium

Carousel vaults without any deposits will lose emissions

Feb '23

Ethos Reserve contest

Ethos Reserve contest

2,697.69 USDC • 1 total finding • Code4rena • ltyu

#14

medium

Last Trove may be prevented from redeeming

OpenQ

OpenQ

1,840.82 USDC • 4 total findings • Sherlock • ltyu

#8

high

Deposits can be refunded after closing

high

Refunds can be blocked by deposits

high

ERC721 can be deposits as ERC20

medium

Partial refunds can cause the rest of the deposit to be lost

Jan '23

Cooler

Cooler

0.30 USDC • 1 total finding • Sherlock • ltyu

#30

high

Cooler does not handle all token transfers

Aug '22

Fraxlend (Frax Finance) contest

Fraxlend (Frax Finance) contest

21.17 USDC • Code4rena • ltyu

#70