
معرفی
Drew Davidson serves as Associate Professor in the Department of Electrical Engineering and Computer Science at the University of Kansas, where he joined the faculty in August 2018 as Assistant Professor. His research program centers on computer security and privacy, with current projects focused on automatic security policy generation for web applications and privilege separation architectures for modern server environments. Davidson maintains active industry engagement through co-founding Tala Security, a security startup addressing DevOps security challenges.
Davidson completed his PhD in December 2016 with dissertation research titled "Enhancing Mobile Security through App Splitting" under advisor Somesh Jha. His doctoral committee included Thomas Reps, Aws Albarghouthi, Mihai Christodorescu, and Xinyu Zhang. This foundational work established his expertise in mobile security mechanisms and application isolation techniques.
His research spans critical security domains including mobile platform security, web application vulnerabilities, UAV sensor spoofing, and software ecosystem risks. Davidson's work bridges theoretical security models with practical system implementations, particularly in containerization, microservice architectures, and package manager ecosystems. He has made significant contributions to understanding language-based software security issues and developing deployable countermeasures against supply chain attacks.
Analysis of his recent publications reveals concentrated focus on emerging threats in modern software development practices. His 2020-2024 work demonstrates deep investigation into npm package vulnerabilities (typosquatting, package confusion, install-time attacks), microservice security challenges (service mesh vulnerabilities, multi-hop network enforcement), and practical UAV defense mechanisms. This research trajectory shows consistent evolution from mobile security foundations toward contemporary cloud-native and software supply chain security challenges.
Scientific recognition includes:
- NSF SBIR Phase I award (2017) for Tala Security's "Automated Security for the DevOps World" proposal
Davidson contributes to academic training through courses including EECS 665 (Compiler Construction) and EECS 700 (Mobile Security). His research program integrates teaching with practical security solutions development, evidenced by student-involved projects in mobile security and compiler techniques. The NSF-funded Tala Security initiative represents significant industry-academia technology transfer.
As co-founder of Tala Security, Davidson leads research translating academic insights into commercial security products. The startup focuses on automated security policy generation for DevOps environments, building directly on his publication record in application splitting and container security. Current work explores scan-impeding delays for web deployments and multi-hop network connection enforcement in microservice architectures.


