Hi, Welcome! I am an assistant professor of computer science at Singapore Management University. Before SMU, I was a Gladwin Development Chair Assistant Professor at Illinois Institute of Technology. I had the postdoctoral training at Cornell University and University of Utah, working with Prof. Elaine Shi & Prof. Mu Zhang, and obtained my PhD in Computer Science from UC Riverside in 2019, advised by Prof. Heng Yin. My research interests mainly lie in different aspects of Computer Security, including mobile security, system security, software testing, blockchain security and AI security. I enjoy solving emerging security problems by leveraging program analysis techniques and deep learning.
One postdoc position (co-advise with Prof. Debin Gao) available!
I am actively looking for motivated students (including PhD students and visiting students) to join my research group at SMU. Please make sure you have seriously read some of my recent papers and have strong interest in software security research. More details can be found here. I highly recommend that you read through these great suggestions before sending emails.
[Jun 2025] Serving as an Associate Editor for IEEE Transactions on Dependable and Secure Computing (TDSC).
[May 2025] Our paper "COLLISIONREPAIR: First-Aid and Automated Patching for Storage Collision Vulnerabilities in Smart Contracts" is accepted in USENIX Security'25.
[Apr 2025] Our paper "DeepVMUnProtect: Neural Network-Based Recovery of VM-Protected Android Apps for Semantics-Aware Malware Detection" is accepted in TIFS.
[Jan 2025] Our paper "SigScope: Detecting and Understanding Off-Chain Message Signing-related Vulnerabilities in Decentralized Applications" is accepted in WWW'25. Congrats to Sajad and Hugo!
[Oct 2024] Visited multiple universities and gave talks at NUS, HKPolyU, ZJU and NJU.
[Aug 2024] Checkout the media report on our USENIX Secrutiy'24 paper about poisoning attack on code completion LLMs!
[Aug 2024] Serving on the TPCs of USENIX Security'25, CCS'25.
[Jun 2024] Our paper "An LLM-Assisted Easy-to-Trigger Poisoning Attack on Code Completion Models: Injecting Disguised Vulnerabilities against Strong Detection" is accepted in USENIX Security'24. Congrats to Shenao and Shen!
[Dec 2023] Serving on the TPC of ICDCS'24, ACSAC'24, RAID'24, ISSRE'24 and CCS'24.
[Aug 2023] Our paper "Marco: A Stochastic Asynchronous Concolic Explorer" is accepted in ICSE'24. Congrats to Jie!
[Aug 2023] Serving on the TPC of FC'24.
[Jul 2023] Our paper "SigmaDiff: Semantics-Aware Deep Graph Matching for Pseudocode Diffing" is accepted in NDSS'24. Congrats to Lian, Yu, and Sheng!
[Apr 2023] I am honored to be awarded the Excellence in Teaching Award from IIT College of Computing!
[Apr 2023] I will join Singapore Management University starting this Fall!
[Mar 2023] Serving on the TPCs of ICDCS'23, RAID'23, DSC'23, ISSRE'23 and ACSAC'23.
[Feb 2023] Our paper "Proxy Hunting: Understanding and Characterizing Proxy-based Upgradeable Smart Contracts in Blockchains" has been accepted in USENIX Security'23! Congrats to Bill and Sajad!
[Jan 2023] Received the CISE Research Initiation Initiative (CRII) Award from NSF! Thanks NSF!