JC

Justin Cappos

Professor of Computer Science and Engineering at NYU Tandon School of Engineering
On the record
Represented by:
Share profile 
Link:
Bio
Edit

Justin Cappos is a Professor of Computer Science & Engineering and Director of the Secure Systems Laboratory at NYU Tandon School of Engineering, as well as a member of the NYU Center for Cybersecurity. He is also the creator of compromise-resilient software update frameworks The Update Framework (TUF) and Uptane. Justin's research philosophy focuses on improving real world systems, often by addressing issues that arise in practical deployments. His dissertation work was on Stork, the first package manager designed for environments that use operating system virtualization, such as cloud computing. Improvements in Stork, particularly relating to security, have been widely adopted and are used on the majority of Linux systems via integrations into Apt, YUM, YaST, and Pacman. His later research advances have been adopted into production use by companies including Microsoft, IBM, VMware, Cloudflare, Docker, RedHat, ControlPlane, Datadog, and git, as well as a substantial percentage of automobiles.

Employment
Sign up to view all
Recent Quotes
Sign up to view all
  • The answer is yes, you've been hacked. Your data, and everyone else's, is probably out there from one data breach or another… there's really nothing you can do once [your data] gets out. While various members of Congress have proposed consumer data protection laws, Cappos explains that “legally, a lot of things have to change to make a really meaningful improvement in this area, and when you have companies like Facebook and Google that would be very strongly opposed to this, you can see why it's very unlikely that legislation of this sort would get passed. My goal with my research is really that I don’t want people to die from an attack through a software update, which I think is actually quite likely with a lot of the current designs that people were using. So [compromise-resilient software update framework] Uptane is trying to prevent that from occurring to the extent possible.

Headshots