gandu9595

gandu9595

@gandu2918

55

apprentice

Public earnings

$1,023.59

425th


Public findings

3


Achievements

Biography

Highlights

  • Completed 24 paid bug bounties, including 9 through Immunefi and 16 through direct contact with projects.
  • Submitted critical bugs in move language
  • Reached in top #50 on Sherlock's leaderboard
  • Cantina Fellowship
  • Immunefi Top #30 during the June - July 2024

Bug Bounties

ProtocolPlatformCategorySeverityFindings 🔎
Lyra Protocol V1ImmunefiOption AMM protcolCriticalIdentified a miscalculation in base assets and quote assets, leading to a liquidity token rebase
Lyra Protocol V2Directly ReachoutOption AMM protcolHighGriefing Attack due to Permit
Panoptic ProtocolDirectly ReachoutOption Protocol on Uni v3CriticalInternal accounting fee accumulation could create bad debt in the protocol.
AlchemixImmunefiSelf-Repaying LoansHighA single token holder could reset the token price to 1:1.
Sonne Finance Directly ReachoutCompound forkCriticalShare inflation on empty vaults escalated to a Hundred Finance-type attack.
Sovryn Finance ImmunefiBitcoin trading and lendingCriticalDiscovered that dust amounts could mutilate the share token price.
Gains Network Immunefitrading platform on crypto, forex, and commoditiesCriticalManipulation of mintToken Leading to First Deposit Loss
BeanStalk Immunefistablecoin protocolMediumAttack due to permit
Onyx ProtocolDirectly Reachoutfinancial grade applications ProtocolCriticalShare inflation on empty vaults escalated to a Hundred Finance-type attack.
AcrossProtocolDirectly ReachoutCross chain ProtocolCriticalDeposits in the bridge contract are internally inflated, leading to the loss of user funds.
KogeCoinImmunefiFarming vaultsCriticalInflation Attack due to rounding Error
2 PI network Directly Reachoutautomated vault strategyCriticalEvery Pools first deposit can be stolen
Claystack Directly ReachoutLST protcolMediumTimelock Centralisation Vulnerability
ANTFARM Directly ReachoutRebalancing protcolMediumPast proposals become executable due to a lack of quorum in Governor

Aptos and Sui Move Bug

ProtocolCategorySeverity
ScallopLending borrowing on suiCritical
Aries MarketLeverage Trading On AptosCritical
Merkle TradePerp On AptosMedium

Private Audits

ProjectFeatureFinding 🔎
saffronZero-coupon swap1H, 1M, 4L
Maga TrumpTax token to tax free token swap1L

Bug Content/ Twitter thread

Top competitions

View all
Contest
Position
Date
Payout
infrared-contracts

infrared-contracts

32

/ 377

January 2025$1,024

Public earnings

$1,023.59

425th


Public findings

3


Achievements