https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/defaults/default_avatar_3.png

spyrosonic10

Security Researcher

Contact Me

High

5

Total

Medium

2

Solo

13

Total

$14.14K

Total Earnings

#465 All Time

7x

Payouts

gold

1x

1st Places

silver

1x

2nd Places

regular

4x

Top 10

All

Sherlock

Jul '24

MakerDAO Endgame

MakerDAO Endgame

200.54 USDC • Sherlock • spyrosonic10

#90

Apr '23

Teller

Teller

596.36 USDC • 3 total findings • Sherlock • spyrosonic10

#16

high

Incorrect accounting of deposit assets may lead to loss of fund

medium

Collateral deposit will fail for fee-on-transfer tokens

medium

Owner can set high protocolFee and can get almost all principal as protocolFee

Mar '23

Sense Update #1

Sense Update #1

9,430.57 USDC • 3 total findings • Sherlock • spyrosonic10

gold

medium

sponsorSeries() method fails when user want to swap for stake token using

medium

Remaining quote.sellToken are not being returned to caller

medium

Refund of protocol fee is being to wrong user

Telcoin Update

Telcoin Update

560.65 USDC • 2 total findings • Sherlock • spyrosonic10

silver

medium

FeeBuyback.submit() method may fail if all allowance is not used by referral contract

medium

Withdraw delay can be bypassed

Y2K

Y2K

524.35 USDC • 4 total findings • Sherlock • spyrosonic10

#26

high

Wrong assignment to `ownerToRollOverQueueIndex` will lead catastrophic impact

high

mintRollovers() may skip some items of rolloverQueue if some user delistInRollover

medium

Lack of `proof of depeg` will results in premium vault losing assets

medium

Wrong treasury is being set for vaults from vaultFactory

Taurus

Taurus

1,059.56 USDC • 1 total finding • Sherlock • spyrosonic10

#7

medium

Account can not be liquidated when price fall by 99%.

Feb '23

Derby

Derby

1,771.21 USDC • 5 total findings • Sherlock • spyrosonic10

#7

high

State update is not handled properly during rebalance

high

Possible loss of fund in YearnProvider

medium

Wrong calculation of `balanceBefore` and `balanceAfter` in deposit method

medium

Impossible to pull funds from providers

medium

Should not blacklist protocol when totalUnderlying is not withdrawn.