Page cover image

@bahurum

Top 100 on Immunefi

Words of Wisdom


Cover

"Go for the kill"

For time efficiency while hunting, concentrate on critical paths and assets, while leaving aside secondary assets. Understand the risk model of the project to decide where to focus. This will help you find the right attack vectors.

Cover

"Turn copper into gold"

Often the impact of a bug is not immediately identified. Make sure to understand the project in detail before submitting a report. With the right context, or combining the bug found with another bug, the severity level could be raised. Always double check to make sure you are not underestimating a bug's impact, and tune the PoC for maximum impact.

Cover

"Multiply the effect of your efforts"

Sometimes you'll find a bug general enough that it could exist on other projects. Check all other similar projects where you could find it as well. Look through BBPs, repos, onchain contracts. While doing this, think of the possible variants of the bug as well. With some luck you could capitalize on the original bug and get some extra rewards.

Last updated