https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/defaults/default_avatar_6.png

natzuu

Security Researcher

Contact Me

High

3

Total

Medium

7

Total

$2.30K

Total Earnings

#1017 All Time

18x

Payouts

regular

3x

Top 25

regular

6x

Top 50

All

Code4rena

CodeHawks

Aug '24

Fjord Token Staking

Fjord Token Staking

0.19 USDC • 1 total finding • CodeHawks • Ward

#20

medium

[H-01] Auction tokens will be lost forever when auction ends without bids

Tadle

Tadle

0.09 USDC • 3 total findings • CodeHawks • Ward

#153

high

Native token withdrawal fails until manually approved

medium

Unnecessary balance checks and precision issues in TokenManager::_transfer

low

[Low-01] Missing Access Control in `CapitalPool::approve()` Function Allows any User to call it to set Allowance Amount `TokenContract` to `type(uint256).max`.

Jul '24

TraitForge

TraitForge

0 USDC • 1 total finding • Code4rena • Ward

#89

medium

Pause and unpause functions are inaccessible

Jan '24

Salty.IO

Salty.IO

62.25 USDC • 2 total findings • Code4rena • Ward

#84

medium

Chainlink price feed uses BTC, not WBTC. In case of depegging, oracles will become easier to manipulate.

medium

Adversary can prevent updating price feed addresses by creating poisonous proposals ending in `_confirm`

reNFT

reNFT

5.79 USDC • Code4rena • Ward

#64

Dec '23

The Standard

The Standard

0.00 USDC • 1 total finding • CodeHawks • Ward

#105

high

Looping over unbounded `pendingStakes` array can lead to permanent DoS and frozen funds

Revolution Protocol

Revolution Protocol

304.35 USDC • 1 total finding • Code4rena • Ward

#21

high

Malicious delegatees can block delegators from redelegating and from sending their NFTs

Ethereum Credit Guild

Ethereum Credit Guild

1,477.2 USDC • 1 total finding • Code4rena • Ward

#12

medium

No check for sequencer uptime can lead to dutch auctions failing or executing at bad prices

Jul '23

Foundry DeFi Stablecoin CodeHawks Audit Contest

Foundry DeFi Stablecoin CodeHawks Audit Contest

0.14 USDC • 1 total finding • CodeHawks • natzuu

#153

medium

staleCheckLatestRoundData() does not check the status of the Arbitrum sequencer in Chainlink feeds.

Sep '22

QuickSwap and StellaSwap contest

QuickSwap and StellaSwap contest

76.06 USDC • Code4rena • natzuu

#46

Frax Ether Liquid Staking contest

Frax Ether Liquid Staking contest

40.83 USDC • Code4rena • natzuu

#64

VTVL contest

VTVL contest

27.95 USDC • Code4rena • natzuu

#71

PartyDAO contest

PartyDAO contest

35.35 USDC • Code4rena • natzuu

#67

Aug '22

Olympus DAO contest

Olympus DAO contest

86.89 USDC • Code4rena • natzuu

#78

Nouns DAO contest

Nouns DAO contest

52.1 USDC • Code4rena • natzuu

#38

FIAT DAO veFDT contest

FIAT DAO veFDT contest

44.84 USDC • Code4rena • natzuu

#62

Mimo August 2022 contest

Mimo August 2022 contest

67.73 USDC • Code4rena • natzuu

#39

Jun '22

Putty contest

Putty contest

21.17 USDC • Code4rena • natzuu

#86