https://sherlock-files.ams3.digitaloceanspaces.com/twitter_images/23175ffd-463a-42d5-bbee-900b8fcdc409.jpg

underdog

Security Researcher

Contact Me

High

5

Total

Medium

6

Total

$6.13K

Total Earnings

#693 All Time

5x

Payouts

regular

3x

Top 10

regular

4x

Top 25

regular

4x

Top 50

All

Sherlock

Code4rena

Nov '24

Ethos Network Financial Contracts

Ethos Network Financial Contracts

74.58 USDC • 2 total findings • Sherlock • underdog

#24

high

Users could overpay fees when buying votes

medium

Missing slippage checks allows users to receive less funds than expected when selling votes

Sep '24

MorphL2

MorphL2

3,188.58 USDC • 2 total findings • Sherlock • underdog

#9

medium

Unclaimed commissions from removed L2 stakers will remain locked forever in the Distribute contract

medium

Malicious sequencer can DoS proposal execution by inflating the amount of proposals to be pruned

May '24

Sophon Farming Contracts

Sophon Farming Contracts

16.89 USDC • 1 total finding • Sherlock • underdog

#5

medium

Pool’s point computation will be wrong because `setStartBlock` does not update pool’s `lastRewardBlock`

Apr '24

Renzo

Renzo

0.45 USDC • 2 total findings • Code4rena • underdog

#55

high

Withdrawals logic allows MEV exploits of TVL changes and zero-slippage zero-fee swaps

medium

Deposits will always revert if the amount being deposited is less than the bufferToFill value

Mar '24

Axis Finance

Axis Finance

2,852.51 USDC • 4 total findings • Sherlock • underdog

#5

high

An incorrect `lotId` value is used to update routing data in `auction()`

high

Unclear auction state definition when `block.timestamp` == `lot.conclusion` can lead to funds stuck forever

high

It is possible to DoS batch auctions by submitting invalid AltBn128 points when bidding

medium

Malicious batch auction creators can DoS the auction process by not submitting the auction’s private key