Involved in multiple cybersecurity-related research projects, including request smuggling and browser privacy protection.
Research Experience
As a Research Assistant at Systems Security Lab (SecLab), responsibilities included developing and implementing automated fuzzing techniques to mutate and smuggle HTTP requests, effectively bypassing Web Application Firewalls (WAFs); enhancing user privacy using automatic isolated profiles in browsers by adding an extra layer of security to prevent re-targeted ads; conducting research on browser fingerprinting and implementing cookie syncing prevention measures; analyzing open source software vulnerability trends by examining Common Vulnerabilities and Exposures (CVEs) and Common Weakness Enumerations (CWEs).
Education
PhD in Computer Science, 2019 - present, Northeastern University; MSc in Computer Science, 2024, Northeastern University; BSc in Computer Engineering, 2014 - 2019, University of Tehran.
Background
Research Interests: Web Security and Privacy, Request Smuggling, Open Source Supply Chain Security, Machine Learning and Generative AI (LLMs), Browser Security, Privacy, Cloud Security. Professional Field: Cybersecurity, Software Engineering. Background: PhD candidate at Northeastern University, serving as a Research Assistant under the supervision of Professor Engin Kirda, focusing on mutating HTTP requests to bypass Web Application Firewalls (WAFs) using fuzzing techniques.
Miscellany
Interests: Beyond research, brings four years of industry experience as a DevOps and Software Engineer, and co-founded a startup during undergraduate studies, building a strong foundation in technical problem-solving and agile development in different teams.