https://sherlock-files.ams3.digitaloceanspaces.com/profile_images/1c6dd1aa-723c-49ca-9ba0-29a065a4bbcc.png

ubl4nk

@lirezArAzAvi

Interested in Security, Reverse-Engineering & Electronics.

Contact Me

High

16

Total

Medium

8

Total

$598.00

Total Earnings

#1544 All Time

19x

Payouts

regular

2x

Top 10

regular

7x

Top 25

regular

11x

Top 50

All

Sherlock

Code4rena

Sep '25

Ammplify

Ammplify

23.18 USDC • 1 total finding • Sherlock • ubl4nk

#67

medium

DoS via `adjustMaker` reverting for below-range (X-only) positions

Jan '25

Next Generation

Next Generation

3.65 USDC • 1 total finding • Code4rena • ubl4nk

#14

high

Cross-Chain Signature Replay Attack Due to User-Supplied `domainSeparator` and Missing Deadline Check

Jul '24

MakerDAO Endgame

MakerDAO Endgame

155.96 USDC • Sherlock • ubl4nk

#93

Jun '24

Size

Size

6.17 USDC • 1 total finding • Code4rena • ubl4nk

#58

medium

Fragmentation fee is not taken if user compensates with newly created position

Apr '24

TITLES Publishing Protocol

TITLES Publishing Protocol

27.18 USDC • 3 total findings • Sherlock • ubl4nk

#35

high

User can mint all the maxSupply through Edition::mintBatch

medium

_refundExcess doesn't work as expected in the protocol

medium

_setAcknowledged is not implemented correctly

DYAD

DYAD

0.02 USDC • 1 total finding • Code4rena • ubl4nk

#114

high

Attacker can make 0 value deposit() calls to deny user from redeeming or withdrawing collateral

Panoptic

Panoptic

32.96 USDC • Code4rena • lirezArAzAvi

#18

Mar '24

vVv Vesting & Staking

vVv Vesting & Staking

12.66 USDC • Sherlock • ubl4nk

#34

Feb '24

AI Arena

AI Arena

68.23 USDC • 6 total findings • Code4rena • ubl4nk

#72

high

Malicious user can stake an amount which causes zero curStakeAtRisk on a loss but equal rewardPoints to a fair user on a win

high

A locked fighter can be transferred; leads to game server unable to commit transactions, and unstoppable fighters

high

Since you can reroll with a different fighterType than the NFT you own, you can reroll bypassing maxRerollsAllowed and reroll attributes based on a different fighterType

high

Player can mint more fighter NFTs during claim of rewards by leveraging reentrancy on the `claimRewards() function `

high

Fighters cannot be minted after the initial generation due to uninitialized `numElements` mapping

high

Non-transferable `GameItems` can be transferred with `GameItems::safeBatchTransferFrom(...)`

Jan '24

Telcoin Platform Audit

Telcoin Platform Audit

2.64 USDC • 1 total finding • Sherlock • ubl4nk

#9

high

CouncilMember::burn is not correctly implemented

Curves

Curves

1.11 USDC • 3 total findings • Code4rena • ubl4nk

#128

high

Unauthorized Access to setCurves Function

medium

Curves::_buyCurvesToken(), Excess of Eth received is not refunded back to the user.

medium

If a user sets their curve token symbol as the default one plus the next token counter instance it will render the whole default naming functionality obsolete

Truflation

Truflation

90.28 USDC • 1 total finding • Sherlock • ubl4nk

#9

high

User can claim the `initialReleasePct` multiple times until the `cliff` is not passed

SYMM IO

SYMM IO

12.50 USDC • Sherlock • ubl4nk

#25

Nov '23

Kelp DAO | rsETH

Kelp DAO | rsETH

7.42 USDC • 1 total finding • Code4rena • ubl4nk

#51

high

The price of rsEHT could be manipulated by the first staker

Oct '23

NextGen

NextGen

11.12 USDC • 2 total findings • Code4rena • ubl4nk

#93

high

Attacker can reenter to mint all the collection supply

medium

Bidder Funds Can Become Unrecoverable Due to 1 second Overlap in `participateToAuction()` and `claimAuction()`

Aug '23

Cooler Update

Cooler Update

19.16 USDC • 1 total finding • Sherlock • ubl4nk

#19

medium

`rollLoan` is vulnerable to front-running

Jul '23

Beam

Beam

28.59 USDC • Sherlock • ubl4nk

#27

Apr '23

Teller

Teller

66.19 USDC • 2 total findings • Sherlock • ubl4nk

#38

high

Borrower may pay more collateral than expected

high

lenderAcceptBid can be front-runned

Mar '23

Neo Tokyo contest

Neo Tokyo contest

29.67 USDC • Code4rena • ubl4nk

#21