Agentic security
Long-horizon agents that investigate complex targets, form hypotheses, and produce verifiable security artifacts.
cat research_statement.md
Hwiwon Lee is a Computer Science PhD student at UIUC, advised by Lingming Zhang. His work develops realistic agents, benchmarks, and systems for long-horizon software security tasks.
cat research_areas.yml
I study security agents as complete systems: how they reason, how they operate on real software, and how we can evaluate their progress with evidence rather than toy success metrics.
Long-horizon agents that investigate complex targets, form hypotheses, and produce verifiable security artifacts.
Infrastructure for reproducible experiments, realistic tool use, and dependable security engineering workflows.
Methods grounded in real binaries and failure modes, with outcomes that matter to researchers and practitioners.
tail -n 3 news.log
New releases and recognition from the research log.
SEC-bench Pro released on arXiv.
Agentic Vulnerability Reasoning on COTS Binaries released on arXiv.
Recognized as a Microsoft Most Valuable Security Researcher, 2026 Q1.
ls papers/ --selected
Research spanning autonomous vulnerability reasoning, realistic agent evaluation, and software root-cause analysis.