Experience
Relevant work.
Fifteen years in mobile security, payment hardware, firmware, secure boot, attestation, and vulnerability research.
Embedded card-reader security
Named inventor on a U.S. patent for keeping card numbers and PIN entry apart. One design removes PAN data from the merchant device before requesting a PIN. Another separates them across trusted execution environments and payment components.
Product security
Mobile threat signals and payment hardware at Square, mobile red-team work at Visa, and low-level security work at Root Labs and SourceDNA, later acquired by Apple.
Firmware research
Independently found and fully exploited a pre-auth U-Boot NFS client overflow. The finding collided with a private report filed one month earlier; patches and the public exploit chain are upstream.
Hardware wallets
Voltage fault injection against STM32F2 read-out protection, with key-material extraction from Trezor One and Model T.