About me

I am a PhD candidate in Computer Science at Purdue University, USA. I am interested in web and system security using program analysis techniques. In particular, my current research focus is finding security vulnerabilities in JavaScript web applications using static and dynamic analysis.

Email: kim1634 .at. purdue.edu

Publications

Security and Program Analysis
  1. Finding Client-side Business Flow Tampering VulnerabilitiesICSE'20
  2. I Luk Kim, Yunhui Zheng, Hogun Park, Weihang Wang, Wei You, Yousra Aafer, Xiangyu Zhang
    The 42nd International Conference on Software Engineering, 2020
  3. AdJust: Runtime Mitigation of Resource Abusing Third-Party Online AdsICSE'19
  4. Weihang Wang, I Luk Kim, Yunhui Zheng
    The 41st International Conference on Software Engineering, 2019
  5. An improved anonymous authentication scheme for distributed mobile cloud computing services
  6. Shehzad Ashraf Chaudhry, I Luk Kim, Seungmin Rho, Mohammad Sabzinejad Farash, Taeshik Shon
    Cluster Computing, 2019
  7. AdBudgetKiller: Online Advertising Budget Draining AttackWWW'18
  8. I Luk Kim, Weihang Wang, Yonghwi Kwon, Yunhui Zheng, Yousra Aafer, Weijie Meng, Xiangyu Zhang
    2018 World Wide Web Conference on World Wide Web, 2018
  9. PAD: Programming third-party web advertisement censorshipASE'17
  10. Weihang Wang, Yonghwi Kwon, Yunhui Zheng, Yousra Aafer, I Luk Kim, Wen-Chuan Lee, Yingqi Liu, Weijie Meng, Xiangyu Zhang, Patrick Eugster
    32nd IEEE/ACM International Conference on Automated Software Engineering, 2017
  11. J-force: Forced execution on javascriptWWW'17
  12. Kyungtae Kim, I Luk Kim, Chung Hwan Kim, Yonghwi Kwon, Yunhui Zheng, Xiangyu Zhang, Dongyan Xu
    26th international conference on World Wide Web, 2017
  13. Design and Implementation of Fuzzing Framework Based on IoT Applications
  14. Tewodros Legesse Munea, I Luk Kim, Taeshik Shon
    Wireless Personal Communications, 2017
  15. A2c: Self destructing exploit executions via input perturbationNDSS'17
  16. Yonghwi Kwon, Brendan Saltaformaggio, I Luk Kim, Kyu Hyung Lee, Xiangyu Zhang, Dongyan Xu
    24th Network and Distributed System Security Symposium, 2017
  17. Apex: automatic programming assignment error explanationOOPSLA'16
  18. Dohyeong Kim, Yonghwi Kwon, Peng Liu, I Luk Kim, David Mitchel Perry, Xiangyu Zhang, Gustavo Rodriguez-Rivera
    ACM SIGPLAN International Conference on Object-Oriented Programming, Systems, Languages, and Applications, 2016
  19. A novel approach to detection of mobile rogue access points
  20. I Luk Kim, Jungtaek Seo, Taeshik Shon, Jongsub Moon
    Security and Communication Networks, 2014
    Cyber-physical systems for geospatial data
  21. MyGeoHub - A sustainable and evolving geospatial science gateway
  22. Rajesh Kalyanam, Lan Zhao, Carol Song, Larry Biehl, Derrick Kearney, I Luk Kim, Jaewoo Shin, Nelson Villoria, Venkatesh Merwade
    Future Generation Computer Systems, 2019
  23. Bridging the gap between remotely sensed big data and watershed hydrologic models
  24. Lan Zhao, Adnan Rajib, Venkatesh Merwade, Jaewoo Shin, I Luk Kim, Carol X Song, Heather E Golden, Charles Lane
    AGU Fall Meeting, 2018
  25. MyGeoHub Geospatial Gateway
  26. Rajesh Kalyanam, Lan Zhao, Rob Campbell, Derrick Kearney, I Luk Kim, Jaewoo Shin, Larry Biehl, Wei Wan, CX Song
    Demo at Gateways 2017 conference, Ann Arbor, MI, 2017
  27. GABBs-Reusable Geospatial Data Analysis Building Blocks for Science GatewaysIWSG'17
  28. Lan Zhao, Carol Song, Rajesh Kalyanam, Larry Biehl, Robert Campbell, Leif Delgass, Derrick Kearney, Wei Wan, Jaewoo Shin, I Luk Kim, Carolyn Ellis
    9th International Workshop for Science Gateways, 2017
  29. Bridging Hydroinformatics Services Between HydroShare and SWATShare
  30. V Merwade, L Zhao, CX Song, DG Tarboton, JL Goodall, M Stealey, A Rajib, MM Morsy, PK Dash, B Miles, I Luk Kim
    AGU Fall Meeting Abstracts, 2016
  31. SWATShare - A web platform for collaborative research and education through online sharing, simulation and visualization of SWAT models
  32. Mohammad Adnan Rajib, Venkatesh Merwade, I Luk Kim, Lan Zhao, Carol Song, Shandian Zhe
    Environmental Modelling & Software, 2016
  33. SWATShare - A Platform for Collaborative Hydrology Research and Education with Cyber-enabled Sharing, Running and Visualization of SWAT Models
  34. MA Rajib, Venkatesh Merwade, C Song, Lan Zhao, I Luk Kim, Shandian Zhe
    AGU Fall Meeting Abstracts, 2014

Work Experience

Aug 2014 - Present

Purdue University

Research Assistant
  • Perform research in the area of web & system security using program analysis, and online advertisement eco-system
  • Designed an online advertising budget draining attack
  • Developed forced JavaScript execution engine using Chrome V8
  • 7 publications in top-tier conferences (2 ICSE, OOPSLA, 2 WWW, NDSS, ASE)
Aug 2013 - Present

Rosen Center for Advanced Computing (RCAC), Purdue University

Graduate Assistant, Developer
  • SWATShare : Designed and developed an online platform that enables users to self-publish, share hydrologic models, and provides computing clusters for intensive calibration work
  • SWATFlow : Designed and developed a visualization platform providing high resolution river flow information
  • HydroGlobe : Designed and developed a Notebook-based application providing post-processing and visualization for earth observation datasets
  • 7 publications in conferences and journals
Aug 2012 - Aug 2016

Information Communication Security (ICS) Lab, Ajou University

Research Assistant
  • Performed research in the area of secure communication system for mobile and IoT applications
  • 2 publications in journals
Aug 2012 - May 2013

Center for Information Security Technology (CIST), Korea University

Research Assistant
  • Implemented a file system forensic analysis tool
  • Performed research of cyber-attack classification method for abnormality alarm based on whitelist
  • Performed research of security technique for platform, contents and service on open mobile environment based on Android
Sep 2010 - Aug 2012

System & Network Security Lab, Korea University

Research Assistant
  • Developed a network simulation tool for virtual cyber-attack and defense mechanism
  • Researched a study on incapacitation algorithm for automatic analysis of packed malware with machine learning technique
  • Designed secured cloud computing architecture layer
  • Researched a detection mechanism of mobile rogue access point with machine learning technique
  • 1 publication in journal
Mar 2011 - Jun 2012

Graduate School of Information Security, Korea University

System & Network Administrator
  • Managed web and data servers

Education

Aug 2013 - Present

Purdue University, West Lafayette, IN, USA

Ph.D. Candidate in Computer Science
Advisor: Prof. Xiangyu Zhang
Sep 2010 - Aug 2012

Korea University, Seoul, Korea

M.E. with High Honors in Information Security
Advisor: Prof. Jongsub Moon
Mar 2003 - Feb 2010

Kwangwoon University, Seoul, Korea

B.E. in Computer Software

Awards

  SIGSOFT CAPS Award, 2020

  Korea University President’s Award, 2012

Graduate with High Honors

  Korea University Scholarship, 2012

Merit-based scholarship

  Brain Korea (BK) 21 Scholarship, 2012

Competitive research and merit-based scholarship

  Information Technology Research Center (ITRC) Scholarship, 2011

Competitive research and merit-based scholarship from renowned national research institution

  Kwangwoon University Scholarship, 2004, 2008, 2009

Merit-based scholarship for 5 semesters

  Bronze Prize, 1999

The Information Olympiad, Seoul Seongbuk District Office of Education

  Bronze Prize, 1998

The 9th Korea Computer Competition, Korea Association of Hakwon & Soongsil University