Skip to content

System & firmware security

Meng Wang

Ph.D. student at CISPA Helmholtz Center for Information Security advised by Dr. Ali Abbasi. My work focuses on system and firmware security. Previously, I worked with AWS Proactive Security on a web vulnerability scanner for AWS-owned websites.

System security · Firmware analysis · Fuzzing · Web security

Research

Program analysis tools for hard-to-detect threats

Uncovering evasive threats and hard-to-find business logic vulnerabilities.

Low-level firmware security

Finding bugs below the OS in firmware, bootloaders, system management mode, and hardware-adjacent stacks.

Scalable vulnerability discovery

Building automated systems that make deep security testing practical across large, real-world codebases.

News

  • PyFEX accepted to CCS 2026.
  • Anota accepted to NDSS 2026.
  • SmuFuzz accepted to IEEE S&P 2026.
  • Two papers accepted to NDSS 2025 on video acceleration stacks and bootloader memory safety.