I'm a Program Manager at Brave and a cybersecurity and privacy researcher. I build open-source security tools and write practical guides for understanding how software handles data. I hold an MS in Cybersecurity from Northeastern University.
Website · Research · Google Scholar · LinkedIn
| Project | What it does |
|---|---|
| Site Behavior Lab | Records website behavior during automated browser visits, including requests, cookies, storage, and consent behavior. Reports connect findings to observations and describe what the scan covered. |
| Trace | Uses Rust and WebAssembly to check iPhone sysdiagnose archives for known spyware indicators in the browser. Its coverage is limited; a scan cannot establish that a device is free of compromise. |
| Metadata Remover | Inspects and removes structural metadata from supported images, documents, audio, and video in the browser. It does not remove sensitive information visible in the content itself. |
| QRWarden | A pre-release QR inspector that shows decoded content and URL properties before opening a destination. It does not certify that a link is safe. |
I write and curate practical security resources, including an iOS hardening guide, a GrapheneOS guide, and a GitHub hardening guide. More work is collected on my projects page.
Some examples of my accepted contributions to other projects:
- SimpleX Chat: Independently reproduced the v6.3.1 server release build; acknowledged in the official release with a published checksum signature (March 2025).
- Hush Line: privacy-policy additions and clarifications, merged March 2024.
- Ente PrivacyPack: response-header hardening and runtime updates, catalog validation and browser tests, multiple privacy alternatives per category, and mobile builder/export layout improvements, integrated in April–May 2026. I also contributed security-policy wording and formatting improvements to Ente in 2024.
- Kagi: added Ente Auth to its two-factor authentication documentation, merged March 2024.
I coauthored three conference papers: two indexed in IEEE Xplore and one published in Springer conference proceedings.
- Quantum-Resilient Zero-Trust Architectures in Edge Computing Networks: Theoretical Foundations and Complexity Bounds — ICCA 2025; added to Xplore in March 2026.
- Lightweight Multi-Tenant Security Isolation for Resource-Constrained Edge Computing Platforms: A Theoretical Framework — EdgeCom 2025; added to Xplore in January 2026.
- Adaptive Fuzzy Logic Framework for Context-Aware Blockchain Security — CISCom 2025; Computational Intelligence and Soft Computing, CCIS volume 2853, pp. 191–199; first online in March 2026.
My research on the privacy of fitness wearables received grant support from the Ludlow Institute through Timechain Consulting, beginning in 2025.
Clubic covered my analysis of Microsoft Edge's network privacy feature, PiunikaWeb covered my critique of X Chat's security architecture, AIM quoted me on AI-enabled voice phishing, and Bitwarden featured my security guide. The Hush Line draft whitepaper acknowledges my DevSecOps contribution.
I previously served as founder and Chapter Lead / President of null NEU (November 2022–December 2024), then as an advisor (January–August 2025), organizing cybersecurity education and community activities.
For public, non-sensitive questions about my work, mention @iAnonymous3000 on X. For private security reports, use the routes on my contact page.
If you find my work useful and want to support it, I accept donations via privacy-preserving cryptocurrencies:
Monero (XMR)
882aSLEXeL19CnSsJ3icFWirV4Q2riEmr9sv7rLu21yLBphjMXc4zCViMmW1NTFjSuKtyNSQjkCrR6e9FqhKV399Muj6gs6




