https://sherlock-files.ams3.digitaloceanspaces.com/twitter_images/2c2f40d4-ef31-41b3-93ab-ac9a187f2c87.jpg

prapandey031

Security Researcher

Love hacking Solidity 🧑‍💻 | Sharing insights into the EVM

Contact Me

High

12

Total

Medium

11

Total

$5.24K

Total Earnings

#818 All Time

8x

Payouts

regular

2x

Top 10

regular

6x

Top 25

regular

6x

Top 50

All

Code4rena

Dec '24

Lambo.win

Lambo.win

262.77 USDC • 3 total findings • Code4rena • prapandey031

#13

high

Minting zero tokens when underlyingToken is not Ether in cashIn()

medium

Since the cost of launching a new pool is minimal, an attacker can maliciously consume VirtualTokens.

medium

LP for v3 pool of underlying tokens with decimals != 18 would have incorrect NFT metadata

Aug '24

Superposition

Superposition

2,417.73 USDC • 6 total findings • Code4rena • prapandey031

#4

high

Missing `lower<upper` check in `mint_position`

high

update_emergency_council_7_D_0_C_1_C_58() updates nft manager instead of emergency council

medium

swap_2 implementation will randomly revert due to improper check, root cause for failed test ethers_suite_uniswap_orchestrated_uniswap_two

medium

Users can't remove liquidity while a pool is disabled

medium

Wrong liquidity formula used

medium

No related function to set fee_protocol

Jul '24

Munchables

Munchables

346.28 USDC • 6 total findings • Code4rena • prapandey031

#19

high

Invalid validation allows users to unlock early

high

Single plot can be occupied by multiple renters

high

[H-01] Miscalculation in `_farmPlots` function could lead to a user unable to unstake all NFTs

high

Invalid validation in _farmPlots function allowing a malicious user repeated farming without locked funds

medium

Missing disapproval check in `LockManager.sol::approveUSDPrice` allows simultaneous approval and disapproval of a price proposal

medium

Users can farm on zero-tax land if the landlord locked tokens before the LandManager deployment

Jun '24

Size

Size

4.46 USDC • 1 total finding • Code4rena • prapandey031

#59

medium

Multicall does not work as intended

May '24

Munchables

Munchables

0.02 USDC • 6 total findings • Code4rena • prapandey031

#15

high

Invalid validation allows users to unlock early

high

Single plot can be occupied by multiple renters

high

[H-01] Miscalculation in `_farmPlots` function could lead to a user unable to unstake all NFTs

high

Invalid validation in _farmPlots function allowing a malicious user repeated farming without locked funds

medium

Missing disapproval check in `LockManager.sol::approveUSDPrice` allows simultaneous approval and disapproval of a price proposal

medium

Users can farm on zero-tax land if the landlord locked tokens before the LandManager deployment

Oct '23

Badger eBTC Audit + Certora Formal Verification Competition

Badger eBTC Audit + Certora Formal Verification Competition

117.51 USDC • Code4rena • prapandey031

#15

Aug '23

Shell Protocol

Shell Protocol

2,030.84 USDC • 1 total finding • Code4rena • prapandey031

#4

high

Lack of Balance Validation

Tangible Caviar

Tangible Caviar

61.21 USDC • Code4rena • prapandey031

#57