News
This section covers the noteworthy news specifically about me, such as awards, publications and research related outreach activities.
Publications
- Computer Security Top-Tier Venues
- S&P IEEE Symposium on Security and Privacy , USENIX USENIX Security Symposium , CCS ACM Conference on Computer and Communications Security , and NDSS ISOC Network and Distributed Systems Security Symposium
- Software Engineering Top-Tier Venues
- ICSE International Conference on Software Engineering, ESEC/FSE European Software Engineering Conference/ACM SIGSOFT Symposium on the Foundations of Software Engineering, and ASE Automated Software Engineering Conference
- Premier Journals
- TOPS ACM Transactions on Privacy & Security, TOSEM ACM Transactions on Software Engineering and Methodology
(Check Publications page for accessing paper-specific bibliography, pre-print, artifact, and more!)
- (02/2026) TOPS Mutation-Based Evaluation of Cryptographic API Misuse Detectors has been accepted!
- (03/2025)Privacy Enhancing Technologies Symposium (PETS/PoPETS 2025) - “Free WiFi is not ultimately free”: Privacy Perceptions of Users in the US regarding City-wide WiFi Services has been accepted!
- (03/2025) S&P “We can’t allow IoT vendors to pass off all such liability to the consumer” - Investigating the U.S. Legal Perspectives on Liability for IoT Product Security has been accepted!
- (08/2023) USENIX “Belt and suspenders” or “just red tape”?: Investigating Early Artifacts and User Perceptions of IoT App Security Certification has been accepted!
- (07/2023) S&P “False negative - that one is going to kill you”: Understanding Industry Perspectives of Static Analysis based Security Testing has been accepted!
- (07/2023) ESEC/FSE MASC: A Tool for Mutation-based Evaluation of Static Crypto-API Misuse Detectors has been accepted to the tool demo track!
- (07/2023) S&P Why Crypto-detectors Fail: A Systematic Evaluation of Cryptographic Misuse Detection Techniques accepted!
- (01/2021) S&P μSE: Mutation-based Evaluation of Security-focused Static Analysis Tools for Android accepted!
- (11/2020) TOPS Systematic Mutation-based Evaluation of the Soundness of Security-focused Android Static Analysis Techniques accepted!
Awards
- (05/2025)[🏆 Stephen K Park Graduate Research Award] of the Year from William & Mary for my Dissertation!
- (05/2024)🏆 [Distinguished Paper] S&P for the paper “‘False negative - that one is going to kill you’ - Understanding Industry Perspectives of Static Analysis based Security Testing”
- (04/2024)[🏆 International Student Achievement Award] from William & Mary!
- (11/2023)[🏆 Best-Poster] At the William & Mary CS Symposium 2023!
- (04/2022) S&P [Travel-Award]
- (03/2022) NDSS [Travel-Award]
- (04/2022)[Policy-Fellowship] To work as a 2022 Commonwealth of Virginia Engineering and Science (COVES) Fellow at the Joint Commission on Technology and Science, Virginia!
- (06/2021)[Fellowship] Coastal Virginia Center for Cyber Innovation - COVA CCI - Cybersecurity Dissertation Fellowship!
- (07/2019)[Fellowship] Continuation of Graduate Studies and Research Fellowship Award of William & Mary
- (08/2018)[Fellowship] Graduate Studies and Research Fellowship of William & Mary - sponsored by Arts and Sciences Graduate Studies Advisory Board
Invited Talks/Panels
- (11/2025)[Panelist] IEEE DISTILL 2025 Workshop on Distributed, Secure, and Trustworthy Intelligence with LLMs, co-located with IEEE TPS, CIC and CogMI
- (05/2024) S&P [Paper-Talk] “False negative - that one is going to kill you” - Understanding Industry Perspectives of Static Analysis based Security Testing
- (01/2024)[ESSEC] Presented a poster on False Negatives Kill at the ESSEC’24 at W&M!
- (12/2023) ESEC/FSE [Doctoral Symposium] Presented Systematically Evaluating Static Analysis-Based Security Testing Tools - The Gaps within Design and Practice at the ACM Joint European Software Engineering Conference and Symposium on the Foundations of Software Engineering (ESEC/FSE) 2023!
- (12/2023) ESEC/FSE [Paper-ESEC/FSE] Presented MASC: A Tool for Mutation-based Evaluation of Static Crypto-API Misuse Detectors at the tool demo track at the ACM Joint European Software Engineering Conference and Symposium on the Foundations of Software Engineering (ESEC/FSE) 2023!
- (11/2023)[Graduate Panelist] of 2023 W&M CS Symposium
- (10/2022)[Cybersecurity-Policy] at the Joint Commission on Technology and Science (JCOTS), Virginia Meeting, presided by Delegate C.E. Cliff Hayes, Jr. to suggest Cybersecurity Policies for the Commonwealth of Virginia
- (05/2022) S&P [Paper-Talk-S&P] Why Crypto-detectors Fail: A Systematic Evaluation of Cryptographic Misuse Detection Techniques
- (11/2021)[Invited Talk-Stamford] At Stamford University, Bangladesh on Higher Studies: Getting started from Undergrad
- (10/2021)[Invited Talk-GMU] Software Engineering Seminar Series at George Mason University on “Why Crypto-detectors Fail: A Systematic Evaluation of Cryptographic Misuse Detection Techniques”
- (11/2021)[Invited Lecture-W&M] Why Crypto-detectors Fail at Mobile Applications Security (CSci 445) course at William & Mary
- (10/2020)[Guest Lecture] on Soundiness at William & Mary
- (07/2020)[Invited Talk] Higher Studies and Research at Daffodil International University, Bangladesh
Posters
- (02/2024) NDSS [Poster] for “False negative - that one is going to kill you” - Understanding Industry Perspectives of Static Analysis based Security Testing accepted!
- (01/2024)[ESSEC] Poster False Negatives Kill accepted at the ESSEC’24 at W&M!
- (02/2022) NDSS [Poster] for Why Crypto-detectors Fail: A Systematic Evaluation of Cryptographic Misuse Detection Techniques accepted!
Activities/Others
- (01/2026) Was invited to the CRA Career Mentoring Workshop!
- (12/2025) Was invited to the NSF SaTC Aspiring PI workshop!
- (08/2025) Joined the Bellini College of AI, Cybersecurity and Computing, University of South Florida as an Assistant Professor!
- (08/2023) Working as Instructor of Record at W&M to teach Programming for Data Science!
- (05/2023) Guest lectured class at W&M on Security of IoT/Software and Compliance!
- (12/2022) Conducted Vulnerability Analysis Tutorial & Workshop at William & Mary
- (10/2022) Invited to speak at the Joint Commission on Technology and Science (JCOTS), Virginia Meeting, presided by Delegate C.E. Cliff Hayes, Jr. to suggest Cybersecurity Policies for the Commonwealth of Virginia
- (10/2022) Web Chair and Graduate Panelist at the W&M CS Symposium
- (09/2022) Featured by W&M NEWS for leading research on Crypto-detectors and False sense of data security
- (08/2022) Attended 31st USENIX Security Symposium
- (05/2022) Attended CACTUS/P at WSU
- (11/2021) Attended ACM CCS 2021 and workshops!
- (08/2021) Attended USENIX Security’21 and SOUPS 2021!
- (05/2021) Received Student Registration Grant and attending IEEE S&P’21!
- (02/2021) Received Student Travel Grant and attended NDSS’21!
- (01/2021) Attended UVA Science Policy BootCamp organized by University of Virginia
- (10/2020) Conducted Vulnerability Analysis Tutorial & Workshop at William & Mary
- (09/2020) Mentee at ACM CCS Individualized Cybersecurity Research Mentoring (iMentor) Workshop
- (08/2020) Attended USENIX Security’20