Home

Awesome

Kiki's Security Reviews, Bounties and Contributions

Currently operating as a Security Researcher. My work includes performing security reviews with one of the top firms, Guardian Audits, working directly with protocols via private audits, and finding bugs in live contracts through bug bounties. For inquiries, you can reach me through Twitter or Telegram.

Guardian Audits

ReportDate
Undisclosed - Perpetual for Gas PricesSeptember 2024
GMX V2 GLV - GM Token VaultSeptember 2024
Undisclosed - GMX V2 Integration Gamma StrategyAugust 2024
Undisclosed - Token LaunchJuly 2024
Undisclosed - Pyth integrationJuly 2024
Undisclosed - Sythetics Perpetual ExchangeJuly 2024
Undisclosed - Decentralized Spot and Perpetual ExchangeMay 2024
Undisclosed - GMX V2 Backed StablecoinApril 2024
Undisclosed - Staking and Token MigrationMarch 2024
Undisclosed - GMX V1 Backed StablecoinMarch 2024
Rest - Liquid Restaking EigenLayer IntegrationJanuary 2024
Umami - GMX V2 Market IndexDecember 2023
Ambit - Borrowing & LendingNovember 2023
Dolomite - GMX V2 ModuleNovember 2023
Parifi - Decentralized Synthetics Perpetuals ExchangeOctober 2023
Orderly - Perpetuals With Off-Chain Order Book October 2023
IVX - OptionsSeptember 2023
Poolshark - Directional AMM Limit PoolJuly 2023
GMX V2 - Synthetics Perpetual ExchangeMay 2023

Bug Bounties

VulnerabilityDateProtocol TypeSeverity
Attacker Can Liquidate All Healthy PositionsFebruary 2024PerpetualCritical
Attacker Can lock all fundsFebruary 2024PerpetualMedium
Reward tokens are locked if no claimers at any point during the periodJanuary 2024Yield Aggregator and LSTMedium
Attacker Can Brick Operations In and Out of GMXJanuary 2024Lending & BorrowingMedium
First Depositor Can Steal Funds From VaultNovember 2023Derivatives protocolMedium
Attacker Can Steal From Options WritersAugust 2023Options ExchangeHigh
Attacker Can DoS the Settlement of OptionsAugust 2023Options ExchangeHigh
Attacker Can Buy Option for 0 PremiumAugust 2023Options ExchangeHigh
Attacker Can Steal and/or Lock Funds With Elastic Supply TokensJune 2023Staking LaunchpadLow
Duplicates :(

Other Engagements

Guardian Defender Audits

ReportDate
Poodl - Dividend Paying TokenMarch 2023
Raisin Labs - Peer to Peer FundraiserFebuary 2023

Contest

ContestDatePlatformMy findings
USSDMay 2023Sherlock8H, 3M
FootiumApril 2023Sherlock1H, 2M
CaviarApril 2023Code4rena3M
OlympusFebruary 2023Sherlock1M
OpenQFebruary 2023Sherlock1H, 2M
SurgeFebruary 2023Sherlock1M
CoolerJanuary 2023Sherlock1H, 1M
CaviarDecember 2022Code4rena1M
GogoPoolDecember 2022Code4rena1M
EscherDecember 2022Code4rena1H, 1M

Contributions