👋 I’m a second-year Ph.D. student in Computer Science at Columbia University, currently focusing on Zero Knowledge Proofs.
- zkFuzz: ZK circuit fuzzer (60+ confirmed bugs)
- AIJack: Security risk simulator for machine learning (400+ stars on GitHub, 10K+ downloads, referenced in 10+ papers)
- rhoevm: Symbolic EVM execution engine written in Rust to uncover Ethereum smart contract vulnerabilities
- MyZKP: Tutorial e-book to implement zero-knowledge proofs from scratch using Rust and CUDA.
I’ve discovered and responsibly reported 70+ vulnerabilities in real-world ZK projects. Some confirmed and fixed cases include:
- lita-xyz/valida-vm#16
- lita-xyz/valida-vm#13
- aptos-labs/keyless-zk-proofs#50
- siv-org/verifiable-private-overrides#13
- rarimo/passport-zk-circuits#60
- [IEEE S&P '26] 0️⃣: zkFuzz: Foundation and Framework for Effective Fuzzing of Zero-Knowledge Circuits
- [AAMAS '24] 🚗: On the Transit Obfuscation Problem
- [CVPR '23] 🎥: Breaching FedMD, Image Recovery via Paired-Logits Inversion Attack
View my full list on Google Scholar.




