holydevoti0n Profile Banner
holydevoti0n Profile
holydevoti0n

@HolyDevoti0n

538
Followers
359
Following
13
Media
148
Statuses

Security Researcher. Active on Code4rena | CodeHawks | Immunefi

Joined August 2023
Don't wanna be here? Send us removal request.
Pinned Tweet
@HolyDevoti0n
holydevoti0n
4 months
Am I really doing it? I can't believe in a few months I could come this far. After my 1st 5 digits payout from @immunefi I managed to get 1st place in the CodeHaws @beanstalkmoney contest. Let's keep it up! 👨🏻‍💻
@CodeHawks
Cyfrin CodeHawks
4 months
Awards have been announced for the Beanstalk Part 1 contest🤝 Top 5: 🥇 @HolyDevoti0n - $24,148.11 🥈 @golanger85 - $21,798.57 🥉 @0xInAllHonesty - $18,274.25 🏅 @0xbeastboy - $11,825.65 🏅 @ZealynxSecurity - $8,223.41 (1/2)
5
2
63
18
3
138
@HolyDevoti0n
holydevoti0n
4 months
Just a few months ago, I began my journey as a security researcher. Today, I received my biggest reward yet, and I'm overflowing with emotions. The start wasn't easy... so many challenges, so many tries without a single find. But here we are. Never stop trying, never give up!
Tweet media one
6
5
125
@HolyDevoti0n
holydevoti0n
5 months
What a day!!! I've got my first finding confirmed on @immunefi . Hard work pays off! Let's go 🚀 #web3security
Tweet media one
10
3
110
@HolyDevoti0n
holydevoti0n
4 months
Retrospective: Q4 2023 - Finished SCH from @RealJohnnyTime Q4 2023 - Participated in my first contest on @code4rena and found 1M 🥳 Q1 2024 - Contests (Found 1H, 4M, 4L) Q1 2024 - received 5 digits $$ from a finding on @immunefi Q2 2024 - WIP (bug bounties) 👨🏻‍💻 Let's go 🚀
7
4
71
@HolyDevoti0n
holydevoti0n
3 months
3rd contest in the top 5. Main reasons? - My family! 👨‍👩‍👧 - The passion to make web3 safer. 🥷 Thank you, @CodeHawks !
@CodeHawks
Cyfrin CodeHawks
3 months
Awards have been announced for the Beanstalk Part 2 contest🤝 Top 5: 🥇 Team BARW: BenRai & @albertwhite_ - $14188.93 🥈 @bauchibred - $6962.17 🥉 @bladesec - $5345.23 🏅 @HolyDevoti0n - $1203.67 🏅 @_Kite_Web3 - $1048.27 (1/2)
3
3
35
4
0
39
@HolyDevoti0n
holydevoti0n
4 months
Plan of the week(end): - Finish Beanstalk contest part 2 🫛 - Start a new chapter of my journey hunting for bugs on @immunefi I'm already feeling some goosebumps and adrenaline in my veins. Let's go 🫡
0
3
38
@HolyDevoti0n
holydevoti0n
2 months
I'm going all in in this contest. I'm expecting good results as I've been working on Beanstalk codebase for some time now. Excited for this one, let's go! @CodeHawks @beanstalkmoney
@CodeHawks
Cyfrin CodeHawks
2 months
🌱 The Beanstalk is growing ... Don't miss out on tomorrow's Beanstalk: The Finale competitive audit by @BeanstalkFarms with a prize pool now at $250,000. nSLOC: ~12,000 Start date: May 30, 2024 Noon UTC Duration: 5.5 Weeks Total rewards: $250,000 💰 (1/2)
Tweet media one
4
6
31
7
0
31
@HolyDevoti0n
holydevoti0n
4 months
This one aged well. 🫡
@HolyDevoti0n
holydevoti0n
6 months
14th place on the stake link contest from @CodeHawks . It is so rewarding to see that my experience is increasing and I'm performing better in the audits. The next goal is to become top 5! Let's go! #web3sec #defi
Tweet media one
0
0
5
3
0
29
@HolyDevoti0n
holydevoti0n
6 months
Security Researchers... be aware of this scam( @crankibugatti ). This guy will approach you to ask for a private audit but in the end, he wants you to download a keylogger/trojan. I noticed several folks are already following him like @xb0g0 @Seecoalba @CrystAlline_K42 .
Tweet media one
Tweet media two
Tweet media three
Tweet media four
7
7
22
@HolyDevoti0n
holydevoti0n
5 months
I'm starting my 3rd month as a full-time SR. My portfolio: - 1H - 3M - 2L My highest rank was in 14th place on CodeHawks(stake link contest) 👨🏻‍💻 This month, I want to get my first 1st unique high and be in the top 5 of the Beanstalk contest. Let's go! 🚀 #web3sec
Tweet media one
Tweet media two
2
0
21
@HolyDevoti0n
holydevoti0n
3 months
Nice tip to perform like a king during a contest: - Finish the day with a short HIT workout(20-40min) - Eat whole foods rich in vitamin/minerals/protein(i.e: fish and vegetables) - No screen before going to bed. Next day you're gonna kill it. Talking by experience! 💥
1
0
20
@HolyDevoti0n
holydevoti0n
2 months
Thanks a lot, @RealJohnnyTime ! I really enjoyed our chat. The SCH course opened so many doors in Web3 for me. Excited for our interview to come out! 😊
@RealJohnnyTime
JohnnyTime 🤓🔥
2 months
Just had an amazing conversation with one of the SCH graduates who is killing it in the Web3 space! @HolyDevoti0n 🔝 SCH Community livestream and recorded interview coming soon! Stay tuned 😊
0
0
11
1
1
17
@HolyDevoti0n
holydevoti0n
5 months
In security research, your 'why' powers your success. Mine? Breaking free from 9-to-5 and boosting my family's quality of life. These reasons motivate me daily. Don't give up! 👨🏻‍💻🚀 #web3sec
1
0
13
@HolyDevoti0n
holydevoti0n
5 months
Spent the whole day with my loved one. Now I'm fully rested to start my auditing again. Getting close to the end of @beanstalkmoney contest. Gonna start working at 10pm tonight. The plan is to spend 4~5 hours building some PoCs. Let's go 🚀
Tweet media one
1
0
8
@HolyDevoti0n
holydevoti0n
5 months
Great tip when auditing: 🌟 Challenge the function docs/comments. Many times we might miss bugs due to the confirmation bias by believing that the developer knew what he was doing and he "reinforced" that with the docs. 🥷 Always verify!
1
0
7
@HolyDevoti0n
holydevoti0n
5 months
I was so confident about my findings on the Salty contest. @code4rena published the results and I got surprised... I'm in the (top 5).reversed(). I can already guarantee my flight ticket 1st class to the Bahamas next week. 🏝️ #web3sec #code4rena
Tweet media one
3
0
7
@HolyDevoti0n
holydevoti0n
5 months
@RealJohnnyTime @ksaitor @CryptoJobsList @VitalikButerin Two amazing ppl who have been contributing a lot to web3 🫡
1
0
5
@HolyDevoti0n
holydevoti0n
3 months
Is there a better IDE than VS Studio for Solidity? 🤔 Thinking about trying out something different that can make the experience better when navigating through the project.
2
0
7
@HolyDevoti0n
holydevoti0n
7 months
Finished the auditing of @stakedotlink with a few findings. Now heading back to @code4rena so I can join the @renftlabs contest. I'm very excited for this one! 👨🏻‍💻 #web3 #audit #solidity
Tweet media one
1
1
5
@HolyDevoti0n
holydevoti0n
3 months
@PatrickAlphaC I already identify myself as a farmer 👨🏻‍🌾 🫛
0
0
5
@HolyDevoti0n
holydevoti0n
4 months
🫡
@immunefi
Immunefi
4 months
The BadgerDAO ( @eBTCprotocol ) Boost is finished, whitehats are paid, and the leaderboard results are live! Fantastic job to everyone who participated. The top three whitehats are: 🥇 Stormy 🥈 moonsimon 🥉 @HolyDevoti0n See results here:
9
7
40
1
0
6
@HolyDevoti0n
holydevoti0n
6 months
14th place on the stake link contest from @CodeHawks . It is so rewarding to see that my experience is increasing and I'm performing better in the audits. The next goal is to become top 5! Let's go! #web3sec #defi
Tweet media one
0
0
5
@HolyDevoti0n
holydevoti0n
9 months
Starting today, I'm embarking on a continuous journey of growth and learning as a Web3 Security Engineer. I'll be documenting and sharing my daily progress and experiences about my development in this exciting field. Day 1: Diving into the @SenecaUSD contest on @sherlockdefi .
2
0
4
@HolyDevoti0n
holydevoti0n
4 months
@giovannidisiena @immunefi @beanstalkmoney Thank you @giovannidisiena . Btw, excellent work with the judging. I really liked the insights from the appealing period. 🫡
1
0
4
@HolyDevoti0n
holydevoti0n
4 months
1
0
4
@HolyDevoti0n
holydevoti0n
9 months
🚀 Just placed in my first @open_dollar contest! It's a small step in my web3 security journey, but a big leap in learning and growth. To everyone just starting out, keep going! Your first win, big or small, is just around the corner. Thanks, @code4rena !
Tweet media one
0
0
4
@HolyDevoti0n
holydevoti0n
3 months
@0xjuaan @0xOwenThurm Excellent video, @0xjuaan ! This is golden content!!!
0
0
4
@HolyDevoti0n
holydevoti0n
6 months
A new finding was added to the portfolio. Let's go! If things are hard, get better. If they are still hard, do the same again. 👨🏻‍💻 @code4rena #web3sec #DeFi
Tweet media one
0
0
3
@HolyDevoti0n
holydevoti0n
3 months
@0xTimofey @stormy0998 dude is super cool
0
0
3
@HolyDevoti0n
holydevoti0n
4 months
@osmanozdemir1 @cantinaxyz Great job, buddy!!! 🚀
1
0
3
@HolyDevoti0n
holydevoti0n
6 months
@0xOwenThurm When I participated in the Ethena labs contest from @code4rena . 0 critical/highs.
0
0
3
@HolyDevoti0n
holydevoti0n
4 months
@OddlySpecivik Thanks, Oddly! I'm sure with @immunefi on my side, I will find great 🥷🐞 out there!
0
0
2
@HolyDevoti0n
holydevoti0n
4 months
@TheBlockChainer @CodeHawks @TheBlockChainer congrats, you guys did amazing!!! Did you have more than 1 finding validated?
1
0
2
@HolyDevoti0n
holydevoti0n
3 months
@0xAdra @pxng0lin You got me with this one. I already made the switch. Thank you!
0
0
2
@HolyDevoti0n
holydevoti0n
7 months
Goals for 2024 as a web3 security engineer: - Audit 50+ projects - Make $100,000
0
0
2
@HolyDevoti0n
holydevoti0n
6 months
@xb0g0 In my case just an expresso please ☕️
Tweet media one
1
0
2
@HolyDevoti0n
holydevoti0n
5 months
@RealJohnnyTime Thanks, @RealJohnnyTime . Your course was the most important and helpful resource for me to switch from web2 to web3. 💪
0
0
2
@HolyDevoti0n
holydevoti0n
5 months
@code4rena Btw, I found 1H and 1M. Very happy about it!!!
1
0
2
@HolyDevoti0n
holydevoti0n
3 months
@J4X_98 @cantinaxyz @code4rena You're killing it, buddy! 💥
1
0
2
@HolyDevoti0n
holydevoti0n
3 months
@RealJohnnyTime All of the above. 💥
1
0
2
@HolyDevoti0n
holydevoti0n
2 months
0
0
2
@HolyDevoti0n
holydevoti0n
5 months
@pxng0lin @code4rena definitely it did ser, made me even more motivated 🫡
0
0
1
@HolyDevoti0n
holydevoti0n
9 months
Thrilled to submit my latest findings to @sherlockdefi ! This journey's been challenging, but I'm committed to unlocking new achievements. Consistency is key, and I'm ready to climb to new heights. Let's do this! 💪 #Web3Security #ContinuousLearning #DefiChallenges
Tweet media one
0
0
2
@HolyDevoti0n
holydevoti0n
9 months
@MarinaPironeva @cantinaxyz I'm on it 🙋🏻‍♂️
0
0
2
@HolyDevoti0n
holydevoti0n
2 months
@nmirchev8 @EgisSec Impressive results, guys! 💥
0
0
2
@HolyDevoti0n
holydevoti0n
3 months
@PatrickAlphaC @Sablier @CyfrinUpdraft Can't wait for this one! 🫡
0
0
2
@HolyDevoti0n
holydevoti0n
4 months
0
0
1
@HolyDevoti0n
holydevoti0n
2 months
@trust__90 He disclosed it as "informational". So no need to fix it...
0
0
1
@HolyDevoti0n
holydevoti0n
1 month
@zzebra83 alpha 🔥
0
0
1
@HolyDevoti0n
holydevoti0n
9 months
@MarinaPironeva gym/spend time with my loved one.
0
0
0
@HolyDevoti0n
holydevoti0n
2 months
@0K_Security "I'm a freelancer. My job is to review software's code and suggests improvements." No way to go wrong with this :D
1
0
1
@HolyDevoti0n
holydevoti0n
6 months
@0xMackenzieM Does it distribute the rewards proportionally to everyone or do auditors who already have some experience on Immunefi(or are ranked high on the leaderboard) get more rewards?
1
0
1
@HolyDevoti0n
holydevoti0n
2 months
@0jovi0 @code4rena Amazing results, mate! You're killing it 💥
0
0
1
@HolyDevoti0n
holydevoti0n
4 months
@xb0g0 @0xjuaan Insane results. Congrats, bogo!
1
0
1
@HolyDevoti0n
holydevoti0n
9 months
@bytes032 Too much centralization. When MultiSig is the owner of the main contracts.
0
0
0
@HolyDevoti0n
holydevoti0n
6 months
@0K_Security @immunefi Congrats... btw, when you say the "codebase was private" you mean the contracts weren't verified?
1
0
1
@HolyDevoti0n
holydevoti0n
1 month
0
0
1
@HolyDevoti0n
holydevoti0n
1 month
@0xSimao @code4rena @sherlockdefi @HatsFinance @immunefi @cantina @CodeHawks Wouldn't you say that BBs should be on the "yes" side? I mean, you will need much more time to find something when compared to auditing contests.
1
0
1
@HolyDevoti0n
holydevoti0n
2 months
0
0
1
@HolyDevoti0n
holydevoti0n
3 months
@0K_Security Impressive... so you managed to get a BB before working on Alchemix but then you also found bugs there too? You're not kidding, mate. 💥
1
0
1
@HolyDevoti0n
holydevoti0n
9 months
Hi @SenecaUSD , I'm sorry for the situation on @sherlockdefi . I was working on the contest and I found two critical vulnerabilities in your contracts. As I saw you will deploy it anyway, I wonder how you will handle this situation? Will you deploy without an audit?
0
0
0
@HolyDevoti0n
holydevoti0n
2 months
@RealJohnnyTime smooth. wen token launch?
0
0
1
@HolyDevoti0n
holydevoti0n
4 months
@quirksham @quirksham thanks, buddy! Let's go!!! 🚀
0
0
1
@HolyDevoti0n
holydevoti0n
9 months
@0xKbl I would say reducing the working hours on your full time job could be an option. What do you think? I'm also struggling with it and that is the call I made.
0
0
1
@HolyDevoti0n
holydevoti0n
4 months
@evokidSoc wgmi, ser! 🫡
0
0
1
@HolyDevoti0n
holydevoti0n
4 months
@vancelotx @immunefi @beanstalkmoney Thanks, ser. This time I paid more attention to the docs. 🫡
0
0
1
@HolyDevoti0n
holydevoti0n
5 months
@stormy0998 @immunefi well done, Stormy 🫡
0
0
1
@HolyDevoti0n
holydevoti0n
9 months
Thrilled to have participated in my first audit contest on @code4rena ! 🚀 Submitted some key findings and learned a ton. Can't wait for the next one! 🛡️🔍 #Web3Security #AuditContest #AlwaysLearning
1
0
1
@HolyDevoti0n
holydevoti0n
2 months
@zzebra83 shall we ser?
0
0
0
@HolyDevoti0n
holydevoti0n
7 months
Auditing on @code4rena : - reNFT ✅ - - starting tomorrow 👨🏻‍💻🫡
1
0
1
@HolyDevoti0n
holydevoti0n
7 months
@radev_eth Interesting tip. I'm trying to add more time to test invariants/fuzzing for critical functions. Also planning to run formal verification. Currently, doing 70% manual review and 30% dedicated to fuzzing/invariants.
1
0
1
@HolyDevoti0n
holydevoti0n
2 months
@quirksham Amazing bro. Soon you will be destroying in the contests. Keep it up!!! 💪
1
0
1
@HolyDevoti0n
holydevoti0n
2 months
0
0
1
@HolyDevoti0n
holydevoti0n
3 months
@PatrickAlphaC you're trying to reach brain fatigue faster than the physical one 😅
0
0
1
@HolyDevoti0n
holydevoti0n
1 month
0
0
1
@HolyDevoti0n
holydevoti0n
5 months
@hunter_w3b @yAcademyDAO Congrats!!!! I wonder if you could share your journey to get into the yAcademy so you can also help other SRs too? 🚀
0
0
1
@HolyDevoti0n
holydevoti0n
3 months
@ISniperWildI hmm thanks for the tip @ISniperWildI . I'm gonna give it a shot!
1
0
1
@HolyDevoti0n
holydevoti0n
5 months
Well, this one aged really well. @SenecaUSD canceled an ongoing contest and completely ignored my findings and my warnings. Protocol rekt.
@HolyDevoti0n
holydevoti0n
9 months
Hi @SenecaUSD , I'm sorry for the situation on @sherlockdefi . I was working on the contest and I found two critical vulnerabilities in your contracts. As I saw you will deploy it anyway, I wonder how you will handle this situation? Will you deploy without an audit?
0
0
0
0
0
1
@HolyDevoti0n
holydevoti0n
5 months
@0xkato @immunefi thanks ser 🫡
0
0
1
@HolyDevoti0n
holydevoti0n
4 months
0
0
1
@HolyDevoti0n
holydevoti0n
6 months
@14si20 I started auditing in Oct and the same happened to me several times, including in the last contest: 5 of 5 findings that I submitted got rejected and the strange part is: they seem to be valid. We're on this together. Btw: congrats anyway for the findings on ECG.
1
0
1
@HolyDevoti0n
holydevoti0n
6 months
@v0000000000l @14si20 @v0000000000l you are right. I always try to submit my findings with PoC, but a few I don't because they are pretty clear, like this one here: . As you can see on my appeal, I submitted a step-by-step about the price calculated.
0
0
1
@HolyDevoti0n
holydevoti0n
6 months
@RightNowIn Excellent post, Zaevlad. Please, keep up with the daily content, it has been quite helpful and I'm learning a lot with you. Thank you so much!!!
1
0
1