> I'm a CS PhD student at Northwestern.
> I love hacking techniques, and my research is developing new attacks for real-world target. I'm also interested in AI for hacking.
> Awards and Fundings:
Google Ph.D. Fellow in Pivacy, Safety, and Security, $170K
DARPA AIxCC Finalist Award, top 7 worldwide, $2M
DARPA AIxCC Proposal Award (small business), $1M
DEF CON CTF finalist, twice (2021,2022).
> Selected Papers (those I think interesting):
Cross Container Attacks: The Bewildered {eBPF} on Clouds
co-first author, USENIX 2023.
Integrated into eBPF Security Threat Model by Linux Foundation.
Take a step further: understanding page spray in linux kernel exploitation
first author, USENIX 2024.
Page spray attack received novel exploitation award in Google kCTF; Hacked Google Pixel 6 and Samsung Galaxy S22.
PatchAgent: A Practical Program Repair Agent Mimicking Human Expertise
second author, USENIX 2025.
CSAW Applied Research Competition, Winners in Technical Impact (2 out of 189)
DARPA AI Cyber Challenge (AIxCC), Finalist Award (top 7 worldwide)
Breaking the Bulkhead: Demystifying Cross-Namespace Reference Vulnerabilities in Kubernetes Operators
corresponding author & second author, NDSS 2026.
Hacked multiple AI infra products, e.g., NVIDIA KAI-scheduler, k8sGPT and etc.