Skip to content
View flackoon's full-sized avatar
❗️
❗️

Block or report flackoon

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
flackoon/README.md

Hi 👋,

I'm flacko and I've been in the blockchain security space since the beginning of 2023. What first started out as a hobby led to me leaving the web2 space after a 7 years long career as a dev in it in September 2023 and dedicating to questioning the security of smart contracts and blockchains of any kind full-time. I've always had an itch about hacking and I've always found it fascinating, and here I am now doing it for a living.

I have a love for code, math, philosophy and finances. I love learning new stuff and actually applying them in practice. My ultimate goal for the future is to eventually do more research and write articles around blockchain security. I'm also interested in operational security as we all know - it's a dangerous web we surf in 👻.

Skills

Area Details
Solidity / EVM I've now audited a handful of Solidity projects of various types. I don't have a favourite category yet and I'm open to exploring codebases of any type and size.
Cosmos SDK / Go Having audited a few Cosmos SDK based applications now, I feel confident in tackling such projects. Would say I'm just shy of the "intermediate" level here but I discovered I have a knack for Go codebases, so improvements here are imminent and around the corner actually.

Stats

In total I've found 15 High Severity issues (1 of which unique) and 16 Medium Severity issues (1 of which unique) across 8 different audits.

Results

Bug bounties

Date Protocol Severity Report Type Platform
1 Dec 2024 Undisclosed (soon) Medium - - HackenProof

Contests

These are my results from competitions I've participated in either solo or as a part of a team, accounting only for my contributions.

Date Protocol Findings Report Type Platform
8 Oct 2024 Omni High - 2, Medium - 1 Undisclosed Cosmos SDK Cantina
7 Sep 2024 Symbiotic Medium - 1 Undisclosed Restaking Cantina
6 Sep 2024 Flayer High - 3, Medium - 1 (1) Link NFT Sherlock
5 Jun 2024 Velocimeter Medium - 2 Link DEX Sherlock
4 Jun 2024 Size High - 1, Medium - 2 Link Credit marketplace Code4rena
3 Apr 2024 Noya High - 7 (1), Medium - 7 Undisclosed Yield optimization Code4rena
2 Apr 2024 Zivoe High - 1, Medium - 1 Link RWA Credit Sherlock
1 Mar 2024 AxisFinance High - 1, Medium - 1 Link Auction Sherlock

Research

Here's a compilation of some of the more interesting research I've done myself and have written articles about or have tweeted about.

  1. Dynamic sized arrays in Solidity
  2. Understanding the math behind gas safety checks around the 63/64 rule
  3. A walkthrough of the HYPR bridge hack

Pinned Loading

  1. dotfiles dotfiles Public

    my uninteresting environment config files

    JavaScript