Projects

A selection of research projects and technical work.

FuzzUEr: UEFI Firmware Fuzzer

A fuzzing framework for UEFI firmware interfaces on EDK-2, with firmware-adapted sanitizers, discovering 20 zero-day vulnerabilities. Published at NDSS 2025.

Checked C for UEFI Firmware

Compiler-based vulnerability prevention for firmware: extending 3C to bring automated spatial memory safety to EDK II. Published at ISSTA 2025.

Kernel CVE Analysis

Collaborative research on Linux/Android kernel vulnerability analysis, exploit adaptation, and crash reproduction.