https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/a02dc2fd-ece5-4418-b19b-d50a43fa7b94.png

theboiledcorn

Security Researcher

Contact Me

High

8

Total

Medium

9

Total

$2.10K

Total Earnings

#1176 All Time

14x

Payouts

gold

1x

1st Places

regular

4x

Top 10

regular

7x

Top 25

All

Sherlock

Code4rena

Cantina

CodeHawks

Immunefi

Nov '25

stNXM by EaseDeFi

stNXM by EaseDeFi

4.24 USDC • 3 total findings • Sherlock • theboiledcorn

#37

medium

Lack of Slippage Protection and Ineffective Deadline in Uniswap Integrations

medium

Insolvency Risk due to Asset Double-Counting during Position Top-Ups

medium

Permanent Asset Undervaluation due to Stale Tranche Records in `extendDeposit`

Audit Comp | Firelight

Audit Comp | Firelight

16 USDC • 1 total finding • Immunefi • theboiledcorn

#23

medium

Finding not yet public.

Oct '25

Audit Comp | Alchemix V3

Audit Comp | Alchemix V3

13 USDC • 1 total finding • Immunefi • theboiledcorn

#117

medium

Finding not yet public.

Sep '25

Summer.fi - governance v2

Summer.fi - governance v2

9.82 USDC • 1 total finding • Sherlock • theboiledcorn

#8

medium

Precision Loss in Reward Distribution for High-Value, Low-Decimal Tokens

Rezerve Money

Rezerve Money

13.70 USDC • Sherlock • theboiledcorn

#83

Findings not publicly available for private contests.

Aug '25

USG - Tangent

USG - Tangent

447.58 USDC • 2 total findings • Sherlock • theboiledcorn

#23

high

Unauthorized Debt Erasure in migrateFrom Function

high

Incorrect Post-Expiry Price Calculation in `OraclePendlePT`

Neutrl Protocol

Neutrl Protocol

941.02 USDC • 1 total finding • Sherlock • theboiledcorn

gold

medium

FULL_RESTRICTED users will bypass deposit restrictions affecting protocol security controls

Jul '25

Mellow Flexible Vaults

Mellow Flexible Vaults

163.25 USDC • 1 total finding • Sherlock • theboiledcorn

#30

high

## Incorrect Liquid Asset Calculation Will Prevent Redemptions for Users

Jun '25

DODO Cross-Chain DEX

DODO Cross-Chain DEX

483.62 USDC • 2 total findings • Sherlock • theboiledcorn

#13

high

Token Mismatch in `withdrawToNativeChain` Leading to Refund Drain

high

Insufficient `msg.value` Check in `withdrawToNativeChain` Leads to Low-Cost ERC20 Refund Draining

May '25

LEND

LEND

0.07 USDC • 1 total finding • Sherlock • theboiledcorn

#112

medium

Incorrect Global Debt Scaling Allows Unfair Liquidation of Solvent Borrowers

Apr '25

mighty-contracts

mighty-contracts

0.23 USDC • 2 total findings • Cantina • theboiledcorn

#93

high

Finding not yet public.

high

Finding not yet public.

Mar '25

Forte: Float128 Solidity Library

Forte: Float128 Solidity Library

5.37 USDC • 1 total finding • Code4rena • theboiledcorn

#27

high

Natural Logarithm Function Silently Accepts Invalid Non-Positive Inputs

Feb '25

THORWallet

THORWallet

0 USDC • 1 total finding • Code4rena • theboiledcorn

#10

medium

Improper Transfer Restrictions on Non-Bridged Tokens Due to Boolean Bridged Token Tracking, Allowing a DoS Attack Vector

Jan '25

Aave DIVA Wrapper

Aave DIVA Wrapper

0.04 usdc • 1 total finding • CodeHawks • theboiledcorn

#9

low

Incorrect sequence of AaveDIVAWrapper constructor parameters