> I'm a CS PhD student at Northwestern, also visiting PhD student at MIT CSAIL, and I work on System Security and Hardware Security, especially those critical components in AI Infrastructure.
> I love hacking techniques, my research is developing new attacks for real-world target.
> Awards and Fundings:
Google PhD Fellowship in Pivacy, Safety, and Security, $170K
DARPA AIxCC Finalist Award and Proposal Award (small business), $3M
DEF CON CTF finalist, twice (2021,2022).
> Selected Papers (those I think interesting):
Breaking the Bulkhead: Demystifying Cross-Namespace Reference Vulnerabilities in Kubernetes Operators
corresponding author & second author, NDSS 2026.
Hacked multiple AI infra products, e.g., NVIDIA KAI-scheduler, k8sGPT and etc.
PatchAgent: A Practical Program Repair Agent Mimicking Human Expertise
second author, USENIX 2025.
CSAW Applied Research Competition, Winners in Technical Impact (2 out of 189)
DARPA AI Cyber Challenge (AIxCC), Finalist Award (top 7 worldwide)
Take a step further: understanding page spray in linux kernel exploitation
first author, USENIX 2024.
Page spray attack received novel exploitation award in Google kCTF; Hacked Google Pixel 6 and Samsung Galaxy S22.
Cross Container Attacks: The Bewildered {eBPF} on Clouds
co-first author, USENIX 2023.
Integrated into eBPF Security Threat Model by Linux Foundation, I use eBPF escaped Google Colab's container.