Welcome to 55AA Security Lab. We work on full lifecycle system security, cybersecurity LLMs, AI agents, and benchmarks, meta-science, turning our findings into courses, tools, and services.

News

The 55AA Security Lab website is now live!

Courses

No published courses yet.

Projects

100 Hypervisor Security SoK

Engineering · Master's capstone · Hiring for 2026-2027

This master's capstone project studies hypervisors from three connected angles: hypervisors used as security mechanisms, the security of hypervisors themselves, and the risks introduced by insecure hypervisor designs or deployments. The project aims to build a systematic knowledge base that clarifies threat models, isolation assumptions, vulnerability classes, measurement methods, and open research problems across commodity, cloud, embedded, and security-oriented virtualization systems.

103 Building a Recursive Self-Improvement Workflow for POC Generation

Engineering · Master's capstone · Hiring for 2026-2027

This master's engineering project builds a recursive self-improvement workflow for proof-of-concept generation. Based on Magma, ground-truth bug benchmarks, and a workflow DSL, the project designs and evaluates an agentic pipeline that can generate POCs, execute them against known vulnerable targets, diagnose failures, revise its workflow, and accumulate reusable strategies over time. The goal is to turn benchmark-backed POC generation into a measurable engineering loop for studying how LLM-based security agents improve through execution feedback.

203 Defense in Depth for Sandboxes

Research · PhD project · Hiring for 2026-2027

This PhD research project studies defense-in-depth architectures for process-based and VM-based sandboxes. The project investigates how sandbox escapes and policy bypasses emerge across system-call interfaces, shared resources, runtime services, and hardware boundaries, then develops layered defenses that combine behavioral monitoring at security-relevant interfaces, exploit prevention, and compartmentalization. It further explores techniques such as pattern matching, hardware-assisted enforcement, and hardware-software co-design to make sandboxed execution more resilient against both known attack patterns and previously unseen exploitation strategies.

Tools

firmguide GitHubAccess: GitHub

FirmGuide: Boosting the Capability of Rehosting Embedded Linux Kernels through Model-Guided Kernel Execution

ViDeZZo GitHubAccess: GitHub

ViDeZZo source code.

Consultation

We welcome inquiries about system security, software security, security research, and related engineering work. Please describe your question, context, and expected outcome when contacting us.

Research Direction Planning

1 hourBooking: contact us

Paper Writing Guidance

1 hour, multiple sessionsBooking: contact us
Profile image of Qiang Liu

Qiang Liu

Principal Investigator

System Security · AI Agents · Meta-science

100 Hypervisor Security SoK

Engineering · Master's capstone · Hiring for 2026-2027

This master's capstone project studies hypervisors from three connected angles: hypervisors used as security mechanisms, the security of hypervisors themselves, and the risks introduced by insecure hypervisor designs or deployments. The project aims to build a systematic knowledge base that clarifies threat models, isolation assumptions, vulnerability classes, measurement methods, and open research problems across commodity, cloud, embedded, and security-oriented virtualization systems.

103 Building a Recursive Self-Improvement Workflow for POC Generation

Engineering · Master's capstone · Hiring for 2026-2027

This master's engineering project builds a recursive self-improvement workflow for proof-of-concept generation. Based on Magma, ground-truth bug benchmarks, and a workflow DSL, the project designs and evaluates an agentic pipeline that can generate POCs, execute them against known vulnerable targets, diagnose failures, revise its workflow, and accumulate reusable strategies over time. The goal is to turn benchmark-backed POC generation into a measurable engineering loop for studying how LLM-based security agents improve through execution feedback.

203 Defense in Depth for Sandboxes

Research · PhD project · Hiring for 2026-2027

This PhD research project studies defense-in-depth architectures for process-based and VM-based sandboxes. The project investigates how sandbox escapes and policy bypasses emerge across system-call interfaces, shared resources, runtime services, and hardware boundaries, then develops layered defenses that combine behavioral monitoring at security-relevant interfaces, exploit prevention, and compartmentalization. It further explores techniques such as pattern matching, hardware-assisted enforcement, and hardware-software co-design to make sandboxed execution more resilient against both known attack patterns and previously unseen exploitation strategies.

firmguide GitHub

FirmGuide: Boosting the Capability of Rehosting Embedded Linux Kernels through Model-Guided Kernel Execution

computing-genealogy-project GitHub

Explore computer science academic genealogy: PhD advisors, students, institutions, and lineage networks.

No published courses yet.

We welcome inquiries about system security, software security, security research, and related engineering work. Please describe your question, context, and expected outcome when contacting us.

Research Direction Planning

1 hour

Paper Writing Guidance

1 hour, multiple sessions

No blog yet.

We welcome different forms of sponsorship, including gifts, research grants, equipment donations, cloud and infrastructure credits, and support for student projects and open-source development. Sponsorship helps improve student support, build durable security research infrastructure, and keep our work and artifacts open to the community. Sponsors receive transparent updates on how funds are used and, with their permission, are acknowledged by name on our homepage.

Sponsors

No sponsors yet.