

Apenko 🦅💰(Ikechukwu Ezenwanne)
1.8K posts

@Apenko2
Smart contract dev & security researcher | Solidity · Foundry · DeFi | Building secure on-chain protocols | Ethereum & EVM chains






Smart Contract Security Day 24 Just completed my independent audit of the ThunderLoan protocol from Cyfrin Updraft. After finishing the course section, I challenged myself to audit the protocol completely on my own without looking at the official solution first. Findings discovered: ✅️Storage collision during upgradeability ✅️Flash loan repayment bypass using deposit() ✅️Oracle manipulation via AMM spot pricing ✅️Exchange rate inflation bug affecting LPs Writing the PoCs, validating the exploits, and documenting everything in a full audit report taught me a lot about: . Upgradeable contract risks . Flash loan attack surfaces . Oracle security . Protocol accounting invariants . Thinking like an attacker instead of just a developer This is probably one of the biggest moments in my smart contract security journey so far. Still learning. Still auditing. Still improving. Link to the report: github.com/Abdulmalik-svg… @_biggids @alexabelonix @code4rena @CyfrinUpdraft @rosaIhoney @Web3_Vinay @PatrickAlphaC
























