Research
Confused Deputy Risks in RAG-based LLMs (ConfusedPilot)
Jan 2024 – Aug 2025
Explores confused-deputy risks in production RAG (e.g., Copilot for M365) and shows how malicious docs can steer retrieval/grounding. Presented at Defcon 32 AI Village
Learning-based Detection of Microarchitectural Attacks
Jan 2024 – Apr 2024
SoK + RL prototypes for detecting microarchitectural attacks; presented at ASPLOS '24 workshop & ACE Symposium.
Experience
- Red-team framework for assessing LLM robustness to indirect prompt injection & jailbreaks.
- Pentesting agentic AI across Copilot for M365, ChatGPT, Cursor, Salesforce.
- Red-teamed AI agents for privacy/knowledge-integrity issues.
- Built activation-based jailbreak classifiers (LR/XGBoost/NN/CNN) pluggable at inference-time.
- Red-teamed Copilot for M365 & Copilot Studio Agents focusing on data exfil/privacy.
- Contributed to PowerPwn & an open GenAI Security Matrix.
- Infra for RAG with sparse retrieval on AWS; routing vs non-routing perf study for OpenSearch.
- Built secure BFF (C# + AWS) and Copilot tool for Rally artifacts with Purview + AAD governance.
- Automated bug-fix pipeline via AWS IoT, middleware, and OpenAI API for triage suggestions.
- Prototyped network appliance management features in Cloud One; KMS-integrated Lambda flows.
Projects
Web Application Security Lab
Recon (nmap/Wireshark), SYN flood (Scapy), Docker+K8s deploy, plus common web vulns & mitigations.
RSA & AES-128 (CTR) + DPA
C/C++ crypto from primitives; Python DPA on power traces to recover keys.
Lingobin
Code-switch translation helper using Whisper; auto-tests via Kaggle & HF datasets.
GSTAgri (Edge AI + IoT)
Satellite-connected asset monitoring to anticipate crop risk; edge alerts to save bandwidth/costs.
Meals on Wheels — Delivery App
React/JS/SQL backend + Salesforce integration for volunteer route logistics.
Education
University of Texas at Austin — MS ECE
Aug 2024 – May 2026- Track: Architecture, Computer Systems, Embedded Systems
- Thesis: Reliability & Security of Compound AI Systems
- TA: Enterprise Network Security · Software Engineering II · Multithreading Prog/Arch/Tools
University of Texas at Austin — BS ECE (w/ Business Minor)
—- Track: Software Engineering & Systems
- TA: Intro to Embedded Systems
Press
Dark Reading
Security Magazine
SecureWorld
Defcon 32 AI Village Talk [Research: ConfusedPilot]
ASPLOS '24 Talk [Research: LDMA]
Microsoft SLG Talk on Emerging Threats in AI
Heroes (for fun)
DC
Replace with your favorites.
Marvel
Replace with your favorites.