https://sherlock-files.ams3.digitaloceanspaces.com/twitter_images/84b3a20d-d538-4171-b083-ba78da87464f.jpg

patitonar

Web3 Security Researcher

prev 5+ years Senior Solidity Developer

Contact Me

High

11

Total

Medium

8

Total

$2.37K

Total Earnings

#965 All Time

13x

Payouts

bronze

1x

3rd Places

regular

5x

Top 10

regular

8x

Top 25

All

Sherlock

Code4rena

Cantina

Mar '25

Forte: Float128 Solidity Library

Forte: Float128 Solidity Library

345.88 USDC • 1 total finding • Code4rena • patitonar

#19

high

Unwrapping while equating inside the `eq` function fails to account for the set `L_MATISSA_FLAG`

PinLink: RWA-Tokenized DePIN Marketplace

PinLink: RWA-Tokenized DePIN Marketplace

9.86 USDC • Sherlock • patitonar

#51

Crestal Network

Crestal Network

101.35 USDC • 4 total findings • Sherlock • patitonar

bronze

high

Missing authorization check in `Payment::payWithERC20()` allows unauthorized token transfers

medium

Missing worker deployment timeout mechanism leads to permanently stuck deployments

medium

Missing signature invalidation in `BlueprintCore::updateWorkerDeploymentConfigWithSig()` allows token balance draining and configuration update replay

medium

Incomplete whitelist implementation in `BlueprintCore` allows bypass of agent creation restrictions

badger-ebtc-bsm

badger-ebtc-bsm

14.85 USDC • 1 total finding • Cantina • patitonar

#31

high

Finding not yet public.

Feb '25

Yieldoor

Yieldoor

11.40 USDC • 1 total finding • Sherlock • patitonar

#27

medium

Inconsistent negative modulo handling causes incorrect tick calculations for secondary positions

THORWallet

THORWallet

0 USDC • 1 total finding • Code4rena • patitonar

#10

medium

Improper Transfer Restrictions on Non-Bridged Tokens Due to Boolean Bridged Token Tracking, Allowing a DoS Attack Vector

Jan '25

Next Generation

Next Generation

337.9 USDC • 2 total findings • Code4rena • patitonar

#5

high

Cross-Chain Signature Replay Attack Due to User-Supplied `domainSeparator` and Missing Deadline Check

medium

Lack of deadline check in forwarded request

daao-contracts

daao-contracts

113.55 USDC • 7 total findings • Cantina • patitonar

#34

high

Finding not yet public.

high

Finding not yet public.

high

Finding not yet public.

high

Finding not yet public.

high

Finding not yet public.

high

Finding not yet public.

medium

Finding not yet public.

May '23

Ajna Protocol

Ajna Protocol

327.76 USDC • 2 total findings • Code4rena • patitonar

#26

high

Claiming accumulated rewards while the contract is underfunded can lead to a loss of rewards

medium

Potential unfair distribution of Rewards due to MEV in updateBucketExchangeRatesAndClaim

Sep '21

bveCVX by BadgerDAO contest

bveCVX by BadgerDAO contest

264.71 tokens) • Code4rena • patitonar

#7

Aug '21

Gravity Bridge contest

Gravity Bridge contest

95.63 USDC • Code4rena • patitonar

#11

Float Capital contest

Float Capital contest

24.58 USDC • Code4rena • patitonar

#14

Jul '21

Sherlock contest

Sherlock contest

720.12 USDC • Code4rena • patitonar

#10