At Appknox, I performed 200+ penetration tests across web, Android, iOS, and API targets, finding critical and high-severity vulnerabilities before release. I also reverse engineered Android apps and native libraries, and led remediation calls with client engineering teams.
I’m now building LLM agents that find and verify mobile vulnerabilities on real devices. My xcalibur project combines agent-generated hypotheses with deterministic device checks, and I’ve contributed Android security test cases to OWASP MASTG.

