My research is in the field of Information Security. Specifically, I am interested in host-based attack, intrusion, and misuse prevention/detection, as well as the design and construction of audit sources that can supply information for the detection/prevention of the same. I am also interested in computer forensics and the application of machine learning techniques to the analysis of audit information.

Current projects include:


An interposable library to generate audit information from existing applications.

Building tailored audit sources to supply information directed towards one or more of attack, intrusion, or misuse detection.

SmashGuard A hardware modification to detect and prevent attacks on saved return address pointers (buffer overflow or "stack smashing" attacks).


