https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/2804183e-c788-498e-a676-245d5847721d.jpg

typicalHuman

Security Researcher

Fullstack Web3 Developer Doing audits as a hobby https://www.typicalhuman.tech/

Contact Me

High

14

Total

Medium

14

Total

$4.76K

Total Earnings

#759 All Time

15x

Payouts

bronze

1x

3rd Places

regular

3x

Top 10

regular

6x

Top 25

All

Sherlock

Code4rena

Cantina

CodeHawks

Mar '25

badger-ebtc-bsm

badger-ebtc-bsm

740.19 USDC • 1 total finding • Cantina • typicalHuman

#10

medium

Finding not yet public.

Feb '25

Liquidity Management

Liquidity Management

74.97 usdc • 2 total findings • CodeHawks • typical_human

#37

high

Wrong refundExecutionFee in _handleReturn

low

Cancelling a Flow after a Position Is Created Might Result in Inflation/Deflation of Shares

Jan '25

Liquid Ron

Liquid Ron

0 USDC • 1 total finding • Code4rena • typicalHuman

#12

medium

Incorrect Logic in onlyOperator Modifier Leading to Denial-of-Service for Authorized Operators Across Critical Functions

napier-v2

napier-v2

2,592.28 USDC • 1 total finding • Cantina • typicalHuman

bronze

medium

Finding not yet public.

farcasterattestation-monorepo

farcasterattestation-monorepo

572.39 OP • 3 total findings • Cantina • typicalHuman

#23

high

Finding not yet public.

high

Finding not yet public.

medium

Finding not yet public.

Dec '24

Tally ARB Staker

Tally ARB Staker

0.01 USDC • Sherlock • typicalHuman

#48

SecondSwap

SecondSwap

103.86 USDC • 2 total findings • Code4rena • typicalHuman

#26

medium

`buyFee` And `sellFee` Should Be Known Before Purchase

medium

maxSellPercent can be buypassed by selling previously bought vestings at a later time

Lambo.win

Lambo.win

0.3 USDC • 2 total findings • Code4rena • typicalHuman

#35

high

Minting zero tokens when underlyingToken is not Ether in cashIn()

medium

Since the cost of launching a new pool is minimal, an attacker can maliciously consume VirtualTokens.

Nov '24

Nouns DAO - Auction Streams

Nouns DAO - Auction Streams

0.01 USDC • Sherlock • typicalHuman

#71

Oct '24

stakeup-bloomv2

stakeup-bloomv2

200.22 USDC • 5 total findings • Cantina • typicalHuman

#41

high

Finding not yet public.

high

Finding not yet public.

high

Finding not yet public.

medium

Finding not yet public.

medium

Finding not yet public.

Aug '24

Phi

Phi

30.12 USDC • 3 total findings • Code4rena • typicalHuman

#33

high

`shareBalance` bloating eventually blocks curator rewards distribution

medium

Refunds sent to incorrect addresses in certain cases

medium

Attacker can DOS user from selling shares of a credId

Tadle

Tadle

0.00 USDC • 2 total findings • CodeHawks • typical_human

#173

high

Incorrect set up and logic of `referralInfoMap` in `SystemConfig::updateReferrerInfo` function

high

TokenManager - Unlimited withdraw

Jul '24

Munchables

Munchables

447.06 USDC • 3 total findings • Code4rena • typicalHuman

#8

high

Failure to Update Dirty Flag in transferToUnoccupiedPlot Prevents Reward Accumulation On Valid Plot

high

in `farmPlots()` an underflow in edge case leading to freeze of funds (NFT)

medium

Missing disapproval check in `LockManager.sol::approveUSDPrice` allows simultaneous approval and disapproval of a price proposal

MagicSea - the native DEX on the IotaEVM

MagicSea - the native DEX on the IotaEVM

0.08 USDC • 1 total finding • Sherlock • typicalHuman

#64

medium

Fee on transfer tokens are not supported

May '24

Munchables

Munchables

0.01 USDC • 3 total findings • Code4rena • typicalHuman

#16

high

Failure to Update Dirty Flag in transferToUnoccupiedPlot Prevents Reward Accumulation On Valid Plot

high

in `farmPlots()` an underflow in edge case leading to freeze of funds (NFT)

medium

Missing disapproval check in `LockManager.sol::approveUSDPrice` allows simultaneous approval and disapproval of a price proposal