Security Researcher
Web3 security | EVM and Cosmos | Solidity/Yul, Rust | My blog: https://t.co/977jUVI6sg
High
Total
Medium
Total Earnings
#945 All Time
Payouts
Top 10
Top 25
Top 50
All
Code4rena
Apr '23
846.91 USDC • 2 total findings • Code4rena • teddav
#10
high
PrivatePool owner can steal all ERC20 and NFT from user via arbitrary execution
Royalty receiver can drain a private pool
0.26 USDC • 2 total findings • Code4rena • teddav
#124
Reward accounting is incorrect in BathBuddy contract
medium
Calling `Position._marketBuy` and `Position._marketSell` functions that calculate `_fee` by dividing by `10000` can cause incorrect calculations
Mar '23
0.14 USDC • 1 total finding • Code4rena • teddav
#126
Staking, unstaking and rebalanceToWeight can be sandwiched (Mainly rETH deposit )
Aug '22
224.5 USDC • 1 total finding • Code4rena • teddav
#20
Malicious targets can manipulate MIMOProxy permissions
21.72 USDC • Code4rena • teddav
#73
Jul '22
362.48 USDC • Code4rena • teddav
#35
May '22
153.59 USDC • Code4rena • teddav
#36
891.81 USDC • 1 total finding • Code4rena • teddav
#14
Contract may not have enough fund to cover refund