Security Researcher
Medium
Total
Total Earnings
#1669 All Time
Payouts
Top 25
Top 50
All
Sherlock
Code4rena
CodeHawks
Jul '25
46.52 USDC • Sherlock • sheep
#45
Jun '25
8.32 USDC • 2 total findings • Sherlock • sheep
#59
medium
Slippage is not effective
Refund can be stolen due to refundInfo being overwritten
May '25
9.87 USDC • 1 total finding • Sherlock • sheep
#86
liquidators will have no incentive to liquidate small borrow positions
Aug '24
12.11 USDC • 1 total finding • Sherlock • sheep
#43
Wrong stale price check in `PoolGetters::getAssetPrice`
118.15 USDC • 2 total findings • Sherlock • sheep
#30
`ASSET.approve` will revert for non-standard tokens like `USDT`
Jul '24
16.48 USDC • 2 total findings • Code4rena • 0xINFINITY
#49
DOS attack to SwapAction.transferAndSwap() when using an ERC20 permit transferFrom.
`PendleLPOracle::_fetchAndValidate` uses Chainlink's deprecated `answeredInRound`
30.16 USDC • 1 total finding • CodeHawks • sheep
#18
low
Create account from `RegistryFactory` contract reverts due to unsorted external `attesters[]`
31.60 USDC • 2 total findings • Sherlock • sheep
#47
`MasterchefV2` does not support non-standard ERC20 tokens.
Lack of parameter in `MlumStaking::renewLockPosition` leads to lack of change in `IMlumStaking::StakingPosition` which results in loss of rewards for stakers