Minjae Gwon

Experiences

ML Lab

  • M.S. Candidate
  • 1/1/2024 - Ongoing

Security Patch Generation

  • LLM
  • Transformers
  • Poetry
  • PyTorch

Leading a project utilizing Large Language Models (LLMs) to autonomously generate security patches. Through extensive training on datasets of vulnerable code and its patch, the system produces functional code while mitigating common security vulnerabilities.

CompSec Lab

  • M.S. Candidate
  • 2/13/2024 - Ongoing

Security Patch Generation

  • LLM
  • Transformers
  • Poetry
  • PyTorch

Leading a project utilizing Large Language Models (LLMs) to autonomously generate security patches. Through extensive training on datasets of vulnerable code and its patch, the system produces functional code while mitigating common security vulnerabilities.

Theori

  • Software Engineer
  • 6/20/2022 - 12/31/2023

Developing Trustless Oracle

  • ZK
  • Web3
  • Ethereum
  • Typescript
  • React
  • Next.js
  • Vue
  • Nuxt
  • Python
  • Docker

Contributed to developing the Relic Protocol, which is the industry's first trustless and provably secure on-chain historical data source utilizing Zero-Knowledge Proofs (ZKP). Implemented user-friendly frontend applications, conducted reviews and analyses of smart contracts and SDK. Created practical in-house tools, such as wiki-to-markdown conversion scripts, to enhance team productivity and collaboration.

Developing Web3 Project Risk Monitoring System

  • Web3
  • Ethereum
  • Python
  • Rust
  • Docker

Contributed to developing ChainLight DART, a groundbreaking product for autonomously analyzing and monitoring potential threats within Web3 projects. Utilized a robust Rust-based analysis core that harnessed smart contract source codes and on-chain data. Led the development of DART's engine, skillfully integrating various components for continuous data processing. Also played a key role in promoting an innovative culture, encouraging practices such as monorepo management, code quality enhancement, and the seamless incorporation of a robust type system.

Theori

  • Research Intern
  • 6/21/2021 - 8/20/2021

Security Audit

  • REDACTED

Analyzed the client's source code and discovered critical logical vulnerabilities.

Security Training Content

  • Jira
  • Confluence
  • Docker
  • Flask

Created and reviewed content for Dreamhack Enterprise, which included exercises aimed at improving understanding of HTTP and file management. Also developed a problem for Dreamhack CTF that required knowledge of UUID1 and SSTI.

Sellerhub

  • Outsourcing
  • 11/1/2020 - 1/4/2021

Security Audit

  • REDACTED

Conducted a thorough analysis of Sellerhub's vulnerabilities and discovered the largest number of vulnerabilities in our team.

Research Projects

  • Lead
  • 2/1/2022 - 6/1/2022

MOTD: Modular Two-pass Defense Network against Adversarial Example

  • Tensorflow
  • Adversarial Attack

Tested a model that minimizes the effects of adversarial attacks by building upon existing research, such as MagNet and SHIELD.

POSTECH Online Hacking & Security Camp

  • Mentor, Media Director
  • 6/21/2020 - 2/20/2022

Mentor

  • Docker
  • Django
  • Flask
  • React
  • Next.js
  • XSS
  • CORS
  • Prototype Pollution
  • SQLi

Instructed high school students on various techniques, ranging from basic to advanced levels, in the field of web hacking. Built an attack and defense system to facilitate student practice. Developed multiple challenges for CTF competitions.

Media Director

  • OBS
  • After Effect
  • Premiere Pro
  • Photoshop
  • Illustrator

As a media director, not only created artworks but also managed live broadcasting systems for seminars.

PLUS

  • Member
  • 4/1/2019 - Ongoing

Hacker

  • Web Hacking

Not only participated in CTF as a member of the hacking team, but also shared my knowledge through seminars.

Infrastructure Maintainer

  • Linux
  • Github Actions
  • Docker
  • Django
  • Flask
  • React
  • Vue

In charge of maintaining PLUS's infrastructure, from bug fixes to developing new features, and increased development productivity by introducing a CI/CD pipeline.

PBS

  • President
  • 2/1/2019 - 2/1/2022

Establish the Task Pipeline

  • Agile
  • Notion
  • Google Groups
  • Google Calendar

Built a pipeline for content creation inspired by Agile, successfully adopted an Agile culture, and implemented collaboration tools among team members.

Infrastructure Maintainer

  • Linux
  • RTMP
  • React
  • Filming

Managed filming equipment, studios, and servers. Constructed an RTMP-based two-way live broadcasting system for POSTECH-KAIST Science War.

Creator

  • Color Grading
  • OBS
  • After Effect
  • Premiere Pro
  • Photoshop
  • Illustrator

As a video creator, participated in many video productions.

Certifications & Awards

Undergraduate Group Research Program

  • Team Leader
  • 4/1/2020 - 12/1/2020

Payment System using Blockchain

  • React
  • Node
  • Smart Contract
  • Docker

Developed a payment system using blockchain and won 1st prize. Participated in front-end development and led the beta testing. This project was selected for the ICON Foundation Grant Program.

CTFs

2020 Balsn CTF

8th PLUS

2020 Codegate CTF Preliminary

8th MINUS

2020 CONFidence CTF Teaser

1st DDP

2020 DEF CON CTF Qualifier

7th koreanbadass

2020 DEF CON CTF

12th koreanbadass

2020 Plaid CTF

4th koreanbadass

2020 SECCON CTF

8th Disaster-level Hacker Laboratory

2020 UIUCTF

6th PLUS

2021 LINE CTF

13th K-Students

2021 POSTECH-KAIST SCIENCE WAR

2nd PLUS

2021 zer0pts CTF

2nd K-Students

2022 Codegate CTF Final

5th PLUS

2022 Codegate CTF Preliminary

5th PLUS

2022 HITCON CTF

8th The Duck

2022 UIUCTF

6th PLUS

2022 zer0pts CTF

5th PLUS

2023 Codegate CTF Final

3rd PLUS

2023 Codegate CTF Preliminary

3rd PLUS

2023 DEF CON CTF Qualifier

2nd MMM

2023 DEF CON CTF

1st MMM

2023 HITCON CTF

4th 프로그램털모찌

2023 SSTF

1st The Duck

Education

POSTECH

  • Master, Computer Science and Engineering
  • 2/16/2024 - Ongoing

POSTECH

  • Bachelor, Computer Science and Engineering
  • 2/1/2019 - 2/1/2024

Contact

betarixm [email protected] PGP Key