https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/defaults/default_avatar_4.png

ronnyx2017

Security Researcher

Contact Me

High

6

Total

Medium

8

Total

$109.42K

Total Earnings

#99 All Time

13x

Payouts

gold

1x

1st Places

bronze

3x

3rd Places

regular

8x

Top 10

All

Code4rena

May '23

Chainlink Cross-Chain Services: CCIP and ARM Network

Chainlink Cross-Chain Services: CCIP and ARM Network

10,060.6 USDC • Code4rena • ronnyx2017

#5

Mar '23

zkSync Era System Contracts contest

zkSync Era System Contracts contest

71,748.21 USDC • 2 total findings • Code4rena • ronnyx2017

gold

high

The call to MsgValueSimulator with non zero msg.value will call to sender itself which will bypass the onlySelf check

medium

User transactions can call system contracts directly

Feb '23

Ethos Reserve contest

Ethos Reserve contest

61.26 USDC • Code4rena • ronnyx2017

#33

Nov '22

ParaSpace contest

ParaSpace contest

103.92 USDC • Code4rena • ronnyx2017

#50

Canto contest

Canto contest

4,057.68 CANTO • Code4rena • ronnyx2017

bronze
LSD Network - Stakehouse contest

LSD Network - Stakehouse contest

2,931.93 USDC • 4 total findings • Code4rena • ronnyx2017

#8

high

GiantLP with a transferHookProcessor cant be burned, users' funds will be stuck in the Giant Pool

high

function withdrawETH from GiantMevAndFeesPool can steal most of eth because of idleETH is reduced before burning token

high

GiantMevAndFeesPool.bringUnusedETHBackIntoGiantPool function loses the addition of the idleETH which allows attackers to steal most of eth from the Giant Pool

high

Giant pools can be drained due to weak vault authenticity check

LooksRare Aggregator contest

LooksRare Aggregator contest

4,875.78 USDC • 1 total finding • Code4rena • ronnyx2017

bronze

medium

Users can avoid paying any fees when using ERC20EnabledLooksRareAggregator for Seaport

SIZE contest

SIZE contest

4,640.15 USDC • 1 total finding • Code4rena • ronnyx2017

bronze

medium

Auction created by ERC777 Tokens with tax can be stolen by re-entrancy attack

Chainlink Staking contest

Chainlink Staking contest

7,667.55 USDC • Code4rena • ronnyx2017

#4

Sep '22

Frax Ether Liquid Staking contest

Frax Ether Liquid Staking contest

752.07 USDC • 2 total findings • Code4rena • ronnyx2017

#7

medium

Rewards delay release could cause yields steal and loss

medium

Withheld ETH shoud not be sent back to the frxETHMinter contract itself

Art Gobblers contest

Art Gobblers contest

1,913.41 USDC • 1 total finding • Code4rena • ronnyx2017

#11

high

Can Recover Gobblers Burnt In Legendary Mint

Jul '22

Swivel v3 contest

Swivel v3 contest

155.43 USDC • 2 total findings • Code4rena • ronnyx2017

#20

medium

Error in allowance logic

medium

Interface definition error

ENS contest

ENS contest

455.49 USDC • 1 total finding • Code4rena • ronnyx2017

#20

medium

Users can create extra ENS records at no cost