How it worksCompetitionsReviewsGuildsBountiesPortfolioBlog
Sign in

gjaldon

Guild icon

jsr

@gjaldon
gjaldongjaldon
Get a quote

Biography

Prior to shifting to web3 security, I was a software engineer for ~10 years and worked with languages like Golang, Elixir, Ruby, JS, to name a few. My interest in distributed systems and cryptocurrency led me to study smart contract development and then web3 security.

Since working as a web3 security researcher, I have helped secure ~$3 Billion worth of TVL across all the chains and protocols I've audited.

As a security researcher, I am particularly interested in the following:

  • L2s (have audited Optimism with Trust Security, Blast on Cantina, and zkSync on Code4rena)
  • Cross-chain Messaging (LayerZero, Wormhole, Chainlink's CCIP)
  • DeFi (stablecoins, integrations with other DeFi protocols, token-wrapping, yields, and vaults)
  • Liquid Staking Tokens (Eigenlayer, Lido)

I've done private audits as part of a team in the following protocols:

  • Optimism
  • Reserve Protocol
  • Timeswap

I am currently affiliated with the following exclusive auditing firms:

  • Trust Security - https://trust-security.xyz/
  • Spearbit - https://spearbit.com/

Security portfolio

Name
Description

Notional Update #5 Contest on Sherlock - Top 3

I won top 3 in the contest with 2 solo Medium findings. I participated as eol. Notional is a mature Lending protocol deployed to both Ethereum and Arbitrum. It has support for both fixed-rate and variable-rate. The contest scope was on the wfCash vault and version 3 of Notional.

Read more

Redacted ModeETH - Spearbit

ModeETH is a yield token in Mode that gets its yield from the PirexEth LST on Mainnet.

Read more

Popcorn Contest on Code4rena - Top 2

I won top 2 in the 2nd audit contest I've joined with 5 Highs and 3 Mediums. 1 High was unique and 4 of my reports were selected for the final report. Popcorn is a permissionless yield aggregator with rewards, vaults, and integrations with other yield-aggregation protocols. https://x.com/code4rena/status/1633593301340393472

Read more

Vaultcraft Private Audit - Pendle Adapters

Read more

Rio Network Contest on Sherlock - Top 4

Rio is a Liquid Restaking Token that is deeply integrated with Eigenlayer. It relies on Eigenlayer's Strategies and ETH staking for its yield.

Read more

Ethos Reserve Contest on Code4rena - Top 5

I got 5th place in the 3rd audit contest I've participated in. I had 1 High and 1 solo Medium finding. Ethos Reserve is a fork of Liquity that is deployed to Optimism. It has a few features unique to it which include: - Support for multiple collateral assets which include BTC - Rehypothecation - a portion of deposited collateral are reinvested for higher yield

Read more

Cantina Judge - Optimism Safe Extensions

Read more

Cantina Judge - Eigenlayer

Read more

Optimism Audit - Bedrock Upgrade - Trust Security

I teamed up with Trust on this under Trust Security. The audit scope was on a new Pause functionality that was added to their L1 and L2 contracts. We were able to identify a High finding in one of the inherited contracts that was missed in previous audits.

Read more

Timeswap V2 Audit - Trust Security

This audit was done as part of Trust Security and I teamed up with @jeiwan. Timeswap is a fixed-rate lending protocol with a unique 3-variable constant product AMM. Its code is largely influenced by UniswapV3 and makes heavy use of storage packing and binary fixed-point arithmetic.

Read more

Findings count

Medium Risk

4

Low Risk

7

Informational

3

The first marketplace for web3 security. We've aggregated the security talent and solutions so you don't have to.

Services

CompetitionsReviewsBountiesGuilds

© 2024 Cantina. All rights reserved.