I hunt bugs on/off-chain. Mostly EVM (Solidity), Cosmos SDK cosmwasm, Rust, Go, Move,..

Joined November 2008
179 Photos and videos
Pinned Tweet
12 Mar 2025
Hattrick has been achieved! 3 Cosmos SDK contest wins in a row 🥇 Years of grinding Cosmos audits paid off. Success does not (always) come overnight, guys. Shoutout to @code4rena, the amazing contest sponsors, and everyone involved! Especially the amazingly skilled @3DOCsec, who volunteered to partner up with me. Thanks!
11 Mar 2025
The results of the $80,000 Initia Cosmos competitive audit are in! Congratulations to everyone who submitted valid findings, especially to @bernd_eth for securing over half of the total prize pool along with 7 solo high-risk findings submitted! Much respect to @initia for their unwavering commitment to the highest security outcomes. Full list of winners in thread 👇
32
4
170
11,325
200 🐐s securing this space! I'm proud to be selected as one of them. Let's get to work - duty calls.
The final 100 ETHSecurity Badge holders are in! That brings us to 200 security experts, guiding how TheDAO allocates its funds and also coordinating behind the scenes to make Ethereum safer. Big thanks to everyone who engaged with the process and helped shape it, and to @bonfiresai for building the tooling that made it possible.
5
37
1,142
23 Dec 2025
Happy to end 2025 in 3rd place on the @code4rena leaderboard!
22 Dec 2025
Replying to @code4rena
1,206. That’s how many awards were distributed to C4 Wardens in 2025. Thank you to all of the Wardens who committed their time each day to making C4 the place where the best researchers compete. And a special shoutout to the Wardens who finished in the top 10 on the C4 Leaderboard over the past 365 days!
1
49
2,422
3 Dec 2025
Happy Fusaka!
10
527
5 Nov 2025
It is @SecurityOak who brought me into this industry, gave me a chance to prove myself, and trusted my abilities from the very first audit. Thank you! It's great to see how things have grown and matured, and I'm proud to work alongside 50 chad auditors. Cheers to the future!
We’ve had a glowup! Since 2017, we have conducted over 600 audits. Today, we offer everything from protocol design to operational security, training, economic advisory, and pentesting. New look, new services. The same uncompromising quality! Book. Secure. Relax.
2
1
27
3,076
28 Oct 2025
~8B MON Thanks @cantinaxyz and @monad for retiring me and all my family's future generations
7
53
4,846
12 Aug 2025
Don't trust your validators, always verify! One of my 17 HMs in the recent @zetachain contest on @sherlockdefi made it into the spotlight 🎉
11 Aug 2025
Welcome back to Sherlock's Vulnerability Spotlight, where we highlight an impactful vulnerability uncovered during a Sherlock audit. This week, we have Deposit Spoofing. It was uncovered by @0xalpharush & @bernd_eth on the @zetachain Cross-Chain Contest. 🧵
2
2
56
2,786
BΞrnd retweeted
And another $40,000 for @bernd_eth! Study Universal Blockchain.
10 Jul 2025
Let's go! Happy to have placed 2nd 🥈 in the recent @zetachain contest, hosted by @sherlockdefi Although my streak of 4 consecutive Cosmos SDK audit contest wins has ended, I'm still proud to help improve the security of this ecosystem. On to the next challenge!
17
12
97
8,354
10 Jul 2025
Let's go! Happy to have placed 2nd 🥈 in the recent @zetachain contest, hosted by @sherlockdefi Although my streak of 4 consecutive Cosmos SDK audit contest wins has ended, I'm still proud to help improve the security of this ecosystem. On to the next challenge!
8 Jul 2025
🏆 @zetachain Audit Contest Results 🏆 Congrats to: 1. @gjaldon - $93,612 35,000 ZETA 🥇 2. @bernd_eth - $41,431 20,000 ZETA 🥈 3. @0xSimao - $9,440 10,000 ZETA 🥉 $200,000 rewards ➡️ $15.8M paid out in rewards.
25
1
145
13,523
9 Jul 2025
IQ arithmetic overflow! It was awesome to hang out with all those chads! Until next time!
9 Jul 2025
SR-Boat Cannes edition A full day of touching water and finally getting some sun with @amyyy_g_ @heavyw8t_ @MartinMarchev @mattaereal @n4nika_ @bitbugshar @MarioPoneder @eugenioclrc @bernd_eth @p_misirov @BazziBazzani @HickupH @kamensec @rotcivegaf @gorgut_ @0xWeisss
29
1,649
BΞrnd retweeted
9 Jul 2025
It was fun to see 2 of the best Cosmos-SDK auditors in the industry battling it out in the @zetachain competition. Congrats to @gjaldon and @bernd_eth for the results. With this 🥈medal @bernd_eth has finally joined the elite LSW club; it was a long time coming.
8 Jul 2025
🏆 @zetachain Audit Contest Results 🏆 Congrats to: 1. @gjaldon - $93,612 35,000 ZETA 🥇 2. @bernd_eth - $41,431 20,000 ZETA 🥈 3. @0xSimao - $9,440 10,000 ZETA 🥉 $200,000 rewards ➡️ $15.8M paid out in rewards.
2
1
21
1,584
BΞrnd retweeted
6 May 2025
0/ the biggest ethereum upgrade since the merge is coming. and this time, you’ll feel it. it’s called pectra and here’s why it matters a guest thread by @binji_x
677
2,406
11,071
1,321,113
6 May 2025
I'm SO bullish on GTA VI. Can't wait to play it in 2030
4
26
1,522
18 Mar 2025
Can we please stop bragging about how little time was spent on a contest while earning big bucks? Thank you
23
2
165
10,872
BΞrnd retweeted
Introducing ETH Strategy A permissionless onchain protocol reimagining Michael Saylor’s MSTR strategy within a DeFi-native framework for ETH. Coming Soon. ethstrat.xyz

61
177
939
146,819
21 Jan 2025
1
1
31
1,421
13 Jan 2025
👋
13 Jan 2025
hello world computer
5
1,186
23 Dec 2024
What a year! 🔥 Proud to be part of TrustSec, bringing excellent quality to our clients and going the extra mile. Here's to an even better 2025! 🥂
2024 was another amazing year for TrustSec! Super proud of the impact the team has made year-round. We've done a bit of everything: - Solo audits - Team audits - Public contests - Bounties - Bounty coaching - Retainer services - Consultation - Mathematical modelling - Gas audit - Test audit - R&D outsourcing - Emergency services - Judging - In-house contests Total revenue for the year is $4,646,000, with ~$1,450,000 paid to other members for their exceptional work. This is a serious step up⬆️. We thank our clients for trusting us with their most sensitive assets in an increasingly competitive security landscape. We express our gratitude through the quality we bring to each and every engagement 🙏. Below are some of the projects that we directly impacted in 2024, we want to name them as they are now part of the TrustSec family tree, each in their own way. - @aave - Bounty - @zksync - Audit - @Uniswap - C4 Contest top #3, Bounty - @Optimism - Audit, Sherlock contest top #1, bounty - @reserveprotocol - Strategic retainer & audits - @Curvance - Strategic retainer, contest judging - @Juice_Finance - Strategic retainer, audits, R&D, in-house contest - @graphprotocol - Audit - @StoryProtocol - Strategic retainer & audits - @AbstractChain - Audits - @MIM_Spell - C4 Contest top #1 - @THORChain - Audit, contest judging - @withAUSD - Audit - @OlympusDAO - Audits - @0xSplits - Bounty - @StakeDAOHQ - Audits - @perpprotocol - Bounty - @AgoraGovernance - Audits - @linkpoolio - Audits - @HookProtocol - Audit - @zerolendxyz - Immunefi Contest top #1 - @heylunchbreak - Audit - @LairFinance - Audit - @CloberDEX - Audits - @dHedgeOrg - Audit - @BaselineMarkets - Audit - @3_finance_ - Audit - @sentimentxyz - Bounty - @hypercerts - Audit - @onchainheroes - Audit - @squeeze_dot_it - Audit - @sigmatrading - Audit - @Mozaic_Fi - Audits - @prtyDAO - Audit - @sommfinance - Bounty - @PhenomPokerApp - Audit - @KAYEN_Protocol - Audits - @xeal_ai - Audit - @tenderize_me - Audit - @y2kfinance - Bounty - @degenexpress69 - Audit - @CashmereLabs - Mathematical modelling - @UniversalSwaps - Audit Throughout the year, we've kept looking for ways to optimize our team's processes and hive mind strategy, as that is one of the defining factors of a team audit's success. We've also searched for industry-wide soft spots, going at times where no one has stepped before. With the high demand, we've also strengthened our lines with rising stars, who swiftly proved their great skills. In 2025, we aim to strengthen our existing bonds with clients while expanding our network through new partnerships. We'll also try to find more ways of sharing our expertise with the community, something we did not allocate sufficient time to this year. So here’s to a New Year filled with growth, collaboration, and success - together, let’s make 2025 the most secure year yet!
1
30
2,132
18 Nov 2024
🐐🐐🐐🐐
18 Nov 2024
devcon may be over but these hackers are people of focus, commitment and sheer fucking will, they are just getting started. give them a follow 👇
18
1,175
14 Nov 2024
Max approval or not, it does not matter IMO. If anyone can exploit another user's spending allowance to their advantage, it's a pretty serious issue. As as regular defi user myself, I would never touch such a protocol if I were aware of this risk. Allowances should never be exploitable, at no point in the execution flow, and especially when requiring separate tx's! Preventing users from getting rekt via front end protections is almost like not having any protection. We have trustless contracts for a reason, so let's make us if it instead of relying on web2. Disclaimer: I don't know any details of the reported issue besides the public knowledge.
Since YOU have shared attack specifics, it is within my rights to respond and refute your incorrect assessment. Your argument: "Max approval to a router contract is a user error." - The attack doesn't require max approval. It can steal any approved funds. - Interaction with routers is generally approve(), then someSwap(). Between the two calls there will by definition be a window where attack can sandwich and steal the approved funds before being swapped (unless it's only ever used by contracts who do these atomically, which absolutely can't be inferred here). - Even if that's not the case, anyone with remote understanding of DeFi protocols knows theft of max approval is in scope unless there is a specific warning against it in the docs. A user would not be making a mistake by doing max approve. It is quite embarrassing to even see this line of defense being made in public. - We demonstrated live money at risk, if all that is not enough. Security platform judges, please comment with how this would be judged in your feed.
34
2,121