- 'When Secure Isn't: Assessing the Security of Machine Learning Model Sharing' (2025)
- 'Poster: libdebug, Build Your Own Debugger for a Better (Hello) World' (2024)
- 'Tarallo: Evading Behavioral Malware Detectors in the Problem Space' (2024)
- Vulnerabilities found:
- Keras (CVE-2025-9905, CVE-2025-1550)
- Google Messages (CVE-2025-12080)
- Android
- skops
- Redis
- Bounties and public CVE advisories
- Media coverage: Forbes, Android Authority, Android Police
Research Experience
- Security Research Intern, IBM Research GmbH
- CTF team member: Tower of Hanoi (since 2021) and mhackeroni (since 2022)
- Maintainer of the libdebug project
- Participated in Hack-A-Sat 4, DEF CON 31, 32, and 33 Finals
- Co-organizer of Ctrl+Space CTF with mhackeroni
- Co-organizer of ToH CTF 2025 with Tower of Hanoi
Education
PhD candidate, Politecnico di Milano
Background
Computer Engineer with a strong interest in cybersecurity, PhD candidate at Politecnico di Milano. Currently a Security Research Intern at IBM Research GmbH.
Miscellany
Interests include CTF competitions, bug hunting, and maintaining the libdebug project