The Bug Is Known.
Can You Break It?

Open-book exploit challenges·Automated validation·No excuses

CHALLENGE #042
LIVE
TRACK 1 · HACK REPLAYPosition-based scoring
Euler Finance
Euler Finance
Lending Protocol · Ethereum Mainnet
POINTS ON THE LINE
1st500
2nd350
3rd250
4th150
5th100
6th+50
LendingFlash LoanCritical~1.2k nSolcEthereum
VULNERABILITY

The donateToReserves() function allowed creating undercollateralised debt without repaying a flash loan, enabling an attacker to extract protocol reserves and cause $197M in losses.

OBJECTIVE

Fork Ethereum at block 16,818,056. Reproduce the exploit: take a flash loan, abuse donateToReserves(), and prove profit > 8,900,000 DAI.

Difficulty
Hard
Block
16,818,056
Solves
847
Chain
Ethereum
Compiler
solc 0.8.19
Race
Open
Challenge Documentation
exploit_poc.t.sol
[EULER_FINANCE]
1
TERMINAL
CHALLENGES FROM REAL-WORLD EXPLOITS & AUDITS
Euler Finance
Aave
Uniswap
Curve Finance
Balancer
Kyber Network
PancakeSwap
Venus
Euler Finance
Aave
Uniswap
Curve Finance
Balancer
Kyber Network
PancakeSwap
Venus
Euler Finance
Aave
Uniswap
Curve Finance
Balancer
Kyber Network
PancakeSwap
Venus
0+
Challenges
Real hacks & audit findings
0
Protocol Categories
Lending, DEX, Bridge, Vault & more
0
Vulnerability Types
Reentrancy, Oracle, Access Control & more
HOW IT WORKS

Four Steps. Real Skill.

From challenge selection to validated exploit. No hand-holding, no multiple choice.

01
Pick a Challenge

Browse hack replay or audit PoC tracks. Filter by protocol type, difficulty, or vulnerability class.

02
Study the Codebase

Read the audit report or exploit details. Understand the vulnerable code. Everything is open book.

03
Write Your PoC

Write a Foundry fork test that triggers the vulnerability. Real Solidity, not a markdown writeup.

04
Get Instant Results

Your PoC runs against hidden checks automatically. Points awarded based on track. Skill profile updated instantly.

TWO TRACKS

Pick Your Arena

Every challenge belongs to one track. Each track has its own point logic. Know what you're competing for before you submit.

TRACK 1

Hack Replay

Challenges based on real DeFi hacks. It's a race: whoever submits a valid PoC first gets the most points. Rankings are locked by submission timestamp, not validation time.

POINT LADDER
1st place
0
pts
2nd place
0
pts
3rd place
0
pts
4th place
0
pts
5th place
0
pts
6th+ place
0
pts
TRACK 2

Audit PoC

Challenges based on real audit reports with no existing public PoC. There is no race. Everyone who submits a valid PoC gets the same flat points. What matters is the severity of the finding.

SEVERITY & POINTS
Critical
0
pts
High
0
pts
Medium
0
pts
COMING SOON
RESEARCHER PROFILE

Your Skill Profile is Your Resume

Every solved challenge builds verifiable proof of what you can actually exploit.

app.sherlockvarm.com/sr/sherlock.eth
SR
sherlock.eth
#1
rank
2,840
points
SUBMISSIONS
79% accepted
Accepted147
Submitted186
Rejected39
PROTOCOL STRENGTH
Lending dominant
LendingDEXBridgeVaultOracleFlash Loan
VULNERABILITY STRENGTH
Reentrancy specialist
ReentrancyOracleAccess CtrlFlash LoanLogic
DAILY ACTIVITY
Aug
Sep
Oct
Nov
Dec
Jan
Feb
Mar
Apr
May
Jun
Jul
Mon
Wed
Fri
Less
More
CURRENT STREAK12days
LONGEST STREAK28days
ACTIVE DAYS94this year
BEST MONTHApr22 submissions
RECENT SUBMISSIONS
StatusChallengeTypeDatePoints
// no submissions yet
LIVE

Researchers Submitting Right Now

Every dot is a PoC submission. Green lands. Red gets rejected.

WHY POC ARENA

Built for Researchers Who Ship Real Exploits

Reading Post-Mortems Isn't Enough

Understanding how an exploit worked in theory doesn't mean you can reproduce it. PoC Arena forces you to write working code. The only real proof of understanding.

Verifiable Proof of Skill

Your profile shows exactly which protocol categories and vulnerability types you can exploit. No self-reported skills, no resume padding. Just on-chain-verifiable proof.

Anti-Cheat by Design

Hidden validation checks test for real behavior: balance changes, storage mutations, event emissions. You can't fake a passing Foundry test.

ExploitPoC.sol
$ forge test --match testExploit -vvv
Compiling 1 file with solc 0.8.19
Compiler run successful
 
Running 1 test for EulerPoC.sol
 
[PASS] testExploit() (gas: 892,341)
Logs:
Attacker profit: 197,021,343 DAI
 
Test result: ok. 1 passed; 0 failed
PASSED+500 pts · Critical finding
THE BUILDER

Built by a Researcher, for Researchers

Anmol Dhiman
Anmol Dhiman
@sherlockvarm

Reads bytecode like poetry. Breaks protocols for sport. Built PoC Arena because the best way to defend a system is to learn exactly how it bleeds.

Builder & Auditor