https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/a02dc2fd-ece5-4418-b19b-d50a43fa7b94.png

theboiledcorn

Security Researcher

Contact Me

High

8

Total

Medium

11

Total

$2.53K

Total Earnings

#1133 All Time

17x

Payouts

gold

1x

1st Places

regular

4x

Top 10

regular

7x

Top 25

All

Sherlock

Code4rena

Cantina

CodeHawks

Immunefi

Mar '26

Audit Comp | Folks Finance: Staking Contracts

Audit Comp | Folks Finance: Staking Contracts

340 USDC • 1 total finding • Immunefi • theboiledcorn

#31

medium

Finding not yet public.

Jan '26

OpenCover Insured Vaults

OpenCover Insured Vaults

78.23 USDC • Sherlock • theboiledcorn

#26

Dec '25

Panoptic: Next Core

Panoptic: Next Core

14.79 USDC • 1 total finding • Code4rena • theboiledcorn

#31

medium

Incorrect `UPPER_118BITS_MASK` Mask in `OraclePackLibrary` Causes Unexpected Clearing of `EMAs` and `lockMode` in `OraclePack`

Nov '25

stNXM by EaseDeFi

stNXM by EaseDeFi

4.24 USDC • 3 total findings • Sherlock • theboiledcorn

#37

medium

Lack of Slippage Protection and Ineffective Deadline in Uniswap Integrations

medium

Insolvency Risk due to Asset Double-Counting during Position Top-Ups

medium

Permanent Asset Undervaluation due to Stale Tranche Records in `extendDeposit`

Audit Comp | Firelight

Audit Comp | Firelight

16 USDC • 1 total finding • Immunefi • theboiledcorn

#23

medium

Finding not yet public.

Oct '25

Audit Comp | Alchemix V3

Audit Comp | Alchemix V3

13 USDC • 1 total finding • Immunefi • theboiledcorn

#117

medium

Finding not yet public.

Sep '25

Summer.fi - governance v2

Summer.fi - governance v2

9.82 USDC • 1 total finding • Sherlock • theboiledcorn

#8

medium

Precision Loss in Reward Distribution for High-Value, Low-Decimal Tokens

Rezerve Money

Rezerve Money

13.70 USDC • Sherlock • theboiledcorn

#83

Findings not publicly available for private contests.

Aug '25

USG - Tangent

USG - Tangent

447.58 USDC • 2 total findings • Sherlock • theboiledcorn

#23

high

Unauthorized Debt Erasure in migrateFrom Function

high

Incorrect Post-Expiry Price Calculation in `OraclePendlePT`

Neutrl Protocol

Neutrl Protocol

941.02 USDC • 1 total finding • Sherlock • theboiledcorn

gold

medium

FULL_RESTRICTED users will bypass deposit restrictions affecting protocol security controls

Jul '25

Mellow Flexible Vaults

Mellow Flexible Vaults

163.25 USDC • 1 total finding • Sherlock • theboiledcorn

#30

high

## Incorrect Liquid Asset Calculation Will Prevent Redemptions for Users

Jun '25

DODO Cross-Chain DEX

DODO Cross-Chain DEX

483.62 USDC • 2 total findings • Sherlock • theboiledcorn

#13

high

Token Mismatch in `withdrawToNativeChain` Leading to Refund Drain

high

Insufficient `msg.value` Check in `withdrawToNativeChain` Leads to Low-Cost ERC20 Refund Draining

May '25

LEND

LEND

0.07 USDC • 1 total finding • Sherlock • theboiledcorn

#112

medium

Incorrect Global Debt Scaling Allows Unfair Liquidation of Solvent Borrowers

Apr '25

mighty-contracts

mighty-contracts

0.23 USDC • 2 total findings • Cantina • theboiledcorn

#93

high

Finding not yet public.

high

Finding not yet public.

Mar '25

Forte: Float128 Solidity Library

Forte: Float128 Solidity Library

5.37 USDC • 1 total finding • Code4rena • theboiledcorn

#27

high

Natural Logarithm Function Silently Accepts Invalid Non-Positive Inputs

Feb '25

THORWallet

THORWallet

0 USDC • 1 total finding • Code4rena • theboiledcorn

#9

medium

Improper Transfer Restrictions on Non-Bridged Tokens Due to Boolean Bridged Token Tracking, Allowing a DoS Attack Vector

Jan '25

Aave DIVA Wrapper

Aave DIVA Wrapper

0.04 usdc • 1 total finding • CodeHawks • theboiledcorn

#9

low

Incorrect sequence of AaveDIVAWrapper constructor parameters