0x73696d616f (@0xsimao) 's Twitter Profile
0x73696d616f

@0xsimao

Founding Researcher @blackthornxyz
#2 @sherlockdefi 2025 audits.sherlock.xyz/watson/0x73696…
22 Top-3 Finishes & 30+ Private Audits
DM for audits

ID: 1571497481686360064

linkhttps://www.0xsimao.com/ calendar_today18-09-2022 13:52:56

702 Tweet

2,2K Followers

585 Following

0x73696d616f (@0xsimao) 's Twitter Profile Photo

Don't underestimate the importance of extensive testing. More often than not I end up finding bugs when doing so. Especially when there aren't existing tests. Even if there is no bug found, it gives some hands on experience in the codebase at hand. Highly recommend.

SHERLOCK (@sherlockdefi) 's Twitter Profile Photo

🏆 Extra Finance Audit Contest Results 🏆 Congrats to: 1. 0xSimao - 56,092 OP 🥇 2. jennifer37 - 8,546 OP 🥈 3. Bigsam - 3,804 OP 🥉 88,400 OP rewards ➡️ $15.1M+ paid out in rewards.

0x73696d616f (@0xsimao) 's Twitter Profile Photo

I like to listen to the same song on repeat. I figured the best music for auditing is not so much dependent on lyrics, but rather familiarity. After hearing the song enough times, I don't lose focus and it keeps me concentrated. After 1 month I get bored and find another one.

0x73696d616f (@0xsimao) 's Twitter Profile Photo

Here's how you can audit any type of proof checking contract in 1 minute: 1. Go to the test with the generated root, leaf and proof; 2. Change 1 hex character of one of the elements of the proof; 3. If the test passes you found a crit

0x73696d616f (@0xsimao) 's Twitter Profile Photo

As a LSW on Sherlock, the biggest fear is finding that one simple bug that you know will have 50 dups and there is no other bug in the codebase, sending your points to 0

0x73696d616f (@0xsimao) 's Twitter Profile Photo

For 2 times recently in contests I was doing human fuzzing as per usual when I encounter a cool way to make a flow revert due to 2/3 rounding up / down inconsistencies. Unfortunately neither of them ended up being valid meds as they were extremely unlikely to happen.

0x73696d616f (@0xsimao) 's Twitter Profile Photo

Another amazing win! 1st place in the Extra Finance XLend contest on SHERLOCK This also deepened my knowledge of Aave V3, win-win-win Congrats to all participants and gl to Extra Finance!

Another amazing win! 1st place in the <a href="/ExtraFi_io/">Extra Finance</a> XLend contest on <a href="/sherlockdefi/">SHERLOCK</a>

This also deepened my knowledge of Aave V3, win-win-win

Congrats to all participants and gl to <a href="/ExtraFi_io/">Extra Finance</a>!
SHERLOCK (@sherlockdefi) 's Twitter Profile Photo

🏆 superfluid.eth Audit Contest Results 🏆 Congrats to: 1. 0xSimao - $11,485 🥇 2. newspace - $2,863 🥈 3. illoy_sci - $960 🥉 $25,000 rewards ➡️ $15.5M+ paid out in rewards.

0x73696d616f (@0xsimao) 's Twitter Profile Photo

Excited to announce my 1st place win in the superfluid.eth audit on SHERLOCK! Managed to get excellent coverage again, missing only 2 borderline med/low issues. Onto the next one 🚀

Excited to announce my 1st place win in the <a href="/Superfluid_HQ/">superfluid.eth</a> audit on <a href="/sherlockdefi/">SHERLOCK</a>!

Managed to get excellent coverage again, missing only 2 borderline med/low issues.

Onto the next one 🚀
0x73696d616f (@0xsimao) 's Twitter Profile Photo

Here's how u can be worth 2x ur current level. 1. Do a full audit of the codebase. 2. Wipe your temporal lobe data (don't do it at home). 3. Do a second audit of the codebase. Due to time constraints it's usually not possible to do this more than 2x, but it works really well.

SHERLOCK (@sherlockdefi) 's Twitter Profile Photo

🏆 ZetaChain 🟩 Audit Contest Results 🏆 Congrats to: 1. g - $93,612 + 35,000 ZETA 🥇 2. BΞrnd - $41,431 +20,000 ZETA 🥈 3. 0xSimao - $9,440 + 10,000 ZETA 🥉 $200,000 rewards ➡️ $15.8M+ paid out in rewards.

0x73696d616f (@0xsimao) 's Twitter Profile Photo

Got 3rd place in the ZetaChain 🟩 contest on SHERLOCK 🥳 Pretty cool given that it was my first time auditing Zetachain and also on Move, Ton code. Congrats g, BΞrnd, impressive work!

Got 3rd place in the <a href="/zetablockchain/">ZetaChain 🟩</a> contest on <a href="/sherlockdefi/">SHERLOCK</a> 🥳

Pretty cool given that it was my first time auditing Zetachain and also on Move, Ton code.

Congrats <a href="/gjaldon/">g</a>, <a href="/bernd_eth/">BΞrnd</a>, impressive work!
0x73696d616f (@0xsimao) 's Twitter Profile Photo

This just happened to me recently, luckily I did find the attack vector, some pieces of code just smell really bad and u know it has issues