https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/defaults/default_avatar_9.png

sakshamguruji

Security Researcher

Contact Me

High

26

Total

Medium

18

Total

$34.31K

Total Earnings

#251 All Time

31x

Payouts

gold

2x

1st Places

bronze

1x

3rd Places

regular

9x

Top 10

All

Sherlock

Code4rena

Cantina

Dec '24

story-protocol

story-protocol

4,450.42 USDC • 3 total findings • Cantina • sakshamguruji

#39

high

Finding not yet public.

high

Finding not yet public.

high

Finding not yet public.

Oct '24

Covalent - EWM Light Client

Covalent - EWM Light Client

2,182.79 USDC • Sherlock • sakshamguruji

gold

Findings not publicly available for private contests.

Sep '24

infinitypools

infinitypools

11,102.4 USDC • 1 total finding • Cantina • sakshamguruji

#5

high

Finding not yet public.

Boost Core Incentive Protocol

Boost Core Incentive Protocol

2,978.88 USDC • 5 total findings • Sherlock • sakshamguruji

#4

high

Authorization Issues With The Budget Owner

medium

Allocation Of Budget Would Be Incorrect Under A Certain Edge Case

medium

claimIncentiveFor Might Lead To Loss Of Funds For CGDA Incentive

medium

Protocol Fee Can Be 0

medium

On Chain Randomness PrevRandao Used In ERC20 Raffle Is Manipulatable

Aug '24

Cork Protocol

Cork Protocol

2,707.51 USDC • 8 total findings • Sherlock • sakshamguruji

bronze

high

emptyReserve Returns 0 Instead Of The Total Reserves

high

Incorrect redeemAmount Is Accounted Due To Not Accounting For The Exchange Rate

high

While Redeeming Early User Might Receive Way Lesser RA Than Expected

high

stagnated PA Is Locked Forever

high

raBalance and paBalance Not Decremented When Redeeming Excess

high

Locked RA Not Incremented In Repurchase Leads To Lesser Accrued Ra For CT Redemptions

medium

Not The Entire Token Amounts Provided To AMM Might Get Consumed Leading To Incorrect Accounting Of LV Tokens

medium

Attacker Can Decide The Initialization Ratio Of The AMM Pair

zetachain-protocol

zetachain-protocol

140.73 USDC • 3 total findings • Cantina • sakshamguruji

#61

medium

Finding not yet public.

medium

Finding not yet public.

medium

Finding not yet public.

Winnables Raffles

Winnables Raffles

8.99 USDC • 3 total findings • Sherlock • sakshamguruji

#26

high

Attacker Can Cancel The Raffle By FrontRunning A Create Raffle Call

high

lockedETH Is Not Updated When Users Are Refunded

high

Attacker Can Break The Entire Winner Logic Via propagateRaffleWinner

Jul '24

Exactly Protocol Update - Staking Contract

Exactly Protocol Update - Staking Contract

310.62 USDC • 1 total finding • Sherlock • sakshamguruji

#4

medium

Rewards Can Be Harvested Even When Distribution Is Marked As Finished

Jun '24

dHEDGE

dHEDGE

2,454.03 USDC • Sherlock • sakshamguruji

#7

Findings not publicly available for private contests.

Apr '24

Zivoe

Zivoe

48.27 USDC • 3 total findings • Sherlock • sakshamguruji

#47

high

Attacker Can Reduce Reward Yield Using 0 Deposits

high

totalSupplycheckpoints Is Updated Incorrectly

high

Users Can Still Vote After Their Vest Is Revoked

Mar '24

vVv Vesting & Staking

vVv Vesting & Staking

54.72 USDC • Sherlock • sakshamguruji

#20

Mento

Mento

3,571.42 USDC • 1 total finding • Sherlock • sakshamguruji

gold

medium

User Can Vote Even When They Have 0 Locked Mento (Edge Case)

Feb '24

Rio Network

Rio Network

86.78 USDC • 3 total findings • Sherlock • sakshamguruji

#27

high

currentEpochsByAsset Must Increase In queueCurrentEpochSettlement

medium

User Able To Request A Withdrawal Even If The Withdrawal Queue Has Insufficient Funds To Settle

medium

Fixed Amount of Gas Sent in Call May Be Insufficient

Jan '24

Avail

Avail

97.87 USDC • Sherlock • sakshamguruji

#17

Telcoin Platform Audit

Telcoin Platform Audit

371.15 USDC • 2 total findings • Sherlock • sakshamguruji

#6

high

Incorrect topUp Mechanism

high

Incorrect Balance Is Popped While Burn

Nov '23

Kelp DAO | rsETH

Kelp DAO | rsETH

101.28 USDC • Code4rena • sakshamguruji

#37

Jul '23

Amphora Protocol

Amphora Protocol

9.43 USDC • Code4rena • sakshamguruji

#23

May '23

USSD - Autonomous Secure Dollar

USSD - Autonomous Secure Dollar

2.85 USDC • 5 total findings • Sherlock • sakshamguruji

#75

high

StableOracleWBTC Uses ETH/USD Pricefeed Address Instead Of BTC/USD

high

Protocol Can Experience Large Slippage As amountOutMinimum Is Set To 0

high

DAI to sell would be calculated way more if there is no path to sell (no swaps)

medium

Oracle Data Feed Can Be Outdated Yet Used Anyways Which Will Impact Ussd Mints

medium

Remove Collateral Logic Is Incorrect

Ajna Protocol

Ajna Protocol

85.84 USDC • 2 total findings • Code4rena • sakshamguruji

#42

high

Claiming accumulated rewards while the contract is underfunded can lead to a loss of rewards

high

Position NFT can be spammed with insignificant positions by anyone until rewards DoS

Mar '23

Polynomial Protocol contest

Polynomial Protocol contest

105.15 USDC • Code4rena • sakshamguruji

#28

Wenwin contest

Wenwin contest

21.7 USDC • Code4rena • sakshamguruji

#26

Aragon Protocol contest

Aragon Protocol contest

72.43 USDC • Code4rena • sakshamguruji

#14

Feb '23

Blueberry

Blueberry

418.38 USDC • 2 total findings • Sherlock • sakshamguruji

#26

medium

getPrice MIGHT GIVE INCORRECT RESULT DUE TO NO DECIMAL CHECK

medium

Protocol's usability becomes very limited when access to Chainlink oracle data feed is blocked

Jan '23

RabbitHole Quest Protocol contest

RabbitHole Quest Protocol contest

19.79 USDC • 1 total finding • Code4rena • sakshamguruji

#70

high

Bad implementation in minter access control for `RabbitHoleReceipt` and `RabbitHoleTickets` contracts

Astaria contest

Astaria contest

51.32 USDC • Code4rena • sakshamguruji

#52

Dec '22

Escher contest

Escher contest

66.18 USDC • Code4rena • sakshamguruji

#44

Maverick contest

Maverick contest

119.07 USDC • Code4rena • sakshamguruji

#12

Nov '22

Redacted Cartel contest

Redacted Cartel contest

93.14 USDC • Code4rena • sakshamguruji

#40

Oct '22

Inverse Finance contest

Inverse Finance contest

55.74 USDC • Code4rena • sakshamguruji

#41

Holograph contest

Holograph contest

55.67 USDC • Code4rena • sakshamguruji

#37

Blur Exchange contest

Blur Exchange contest

2,470.46 USDC • 1 total finding • Code4rena • sakshamguruji

#10

medium

Protocol can be easily rug-pulled by the owner