Kunal Mukherjee, Ph.D
I am an Applied Scientist at Zillow Group in Dallas, Texas, where I work on personalized ranking and recommendation, user-listing representation learning, explainable recommender systems, and LLM/multimodal methods for real-estate discovery. Previously, I was a Postdoctoral Associate at Virginia Tech, working with Dr. Murat Kantarcıoğlu. I received my M.S. and Ph.D. in Computer Science from The University of Texas at Dallas.
🔍 My current research focus is on adversarial robustness of graph learning and the governed, forensic use of LLMs in system provenance and security operations. I develop agentic, retrieval-augmented pipelines that transform threat reports into actionable signals, and I study how to make GNNs and LLMs trustworthy under real-world attacks and constraints.
- Agentic RAG for Threat Intel: Designed a retrieval-augmented pipeline where an LLM-based agent parses threat reports and extracts indicators of compromise (IOCs) and TTPs for downstream detection and hunt workflows.
- Adversarial Attacks on GNNs: Building realistic attack generators and evaluation suites for domains beyond system logs, including blockchain and social networks, to stress-test link/node classification and detection tasks.
- LLM-Guided Forensics & Governance: Developing methods for LLM-assisted provenance forensics (triage, explanation, evidence tracing) alongside policy and guardrails for reliable, auditable agent behavior in security settings.
- Provenance-Centered Detection: Advancing PIDS pipelines that fuse graph-structured system activity with LLM reasoning and GNN inference for robust anomaly detection and interpretable investigations.
Prior work (Ph.D., thesis): I expanded the scope of provenance-based intrusion detection systems (PIDS) to IoT settings, validated their robustness via an adversarial attack generation framework, and improved explainability for GNN-based PIDS. I also collaborated with industry partners (e.g., A*STAR Institute for Infocomm Research, Acronis, Inc., and Guardora) and applied GNNs to increase relevance and diversity in recommendation systems, including building an explanation framework for link-prediction during my time at Zillow Group.
He is currently in the academic job market for Fall '27 or applied scientist researcher positions.
Please contact him (kunmukh at gmail.com) if you would like to discuss potential collaborations.
Please find his
research statement,
teaching statement, and
community statement.
Recent News
- Invited to join the Technical Program Committee for USENIX '27.
- Our work Explaining Provenance-Based GNN Detectors with Graph Structural Features was accepted to IEEE PST 2026.
- ProvSEEK was selected as a poster for the Berkeley RDI Agentic AI Summit 2026 and featured in Research Across the Agent Stack.
- BOCLOAK and MoltGraph were featured in the 2026 Commonwealth Cyber Initiative Research Paper Showcase.
- Presented Human-Interpretable ML Explanations in High-Stakes Graph ML at the Applied Machine Learning Conference 2026.
- Presented LLM-driven Provenance Forensics for Threat Investigation and Detection at the DMV Security Workshop 2026 and the Commonwealth Cyber Initiative Symposium 2026.
- Joined Zillow Group as an Applied Scientist in March 2026, working on personalization, recommendation, explainability, and LLM/multimodal AI.
- Recognized with the Silver Reviewer Award for ICML 2026!
- Our paper BOCLOAK: Optimal Transport-Guided Adversarial Attacks on Graph Neural Network-Based Bot Detection got accepted to ICML 2026!
- Our paper MoltGraph: A Longitudinal Temporal Graph Dataset of Moltbook for Coordinated-Agent Detection got accepted to the 1st ACM Conference on AI and Agentic Systems (ACM CAIS)!
- Our paper Red-Teaming Claude Opus and ChatGPT-based Security Advisors for Trusted Execution Environments was accepted to AID-Wild @ ACM CAIS 2026.
- Invited as a Reviewer for IEEE Transactions on Dependable and Secure Computing (TDSC)!
- Invited as a Reviewer for IEEE Transactions on Information Forensics & Security (TIFS)!
- Invited to join the Technical Program Committee for USENIX '26, and CCS '26!
- Invited as a Reviewer for ICLR '26, SIGKDD '26, ICML '26, and NeurIPS '26!
- Invited to join the Technical Program Committee for PRISM Workshop '26 (co-located NDSS '26'), and Fourth Learning on Graphs Conference (LOG) '25!
- Our paper Z-REx: Human-Interpretable GNN Explanations for Real Estate Recommendations got accepted as oral to KDD 2025 Workshop on Machine Learning on Graphs (MLoG-GenAI)!
- Our paper ProvDP Differential Privacy for System Provenance Dataset got accepted to ACNS 2025!
- Invited to join the Artifact Evaluation Committee for CCS 2025!
- Invited as a Reviewer for KDD '25 and ICLR '25!
- ProvSEEK accepted to be presented at The University of Texas at Dallas inaugural Week of AI!
- Successfully defended his PhD thesis: IoT Integration, Adversarial Attacks, and Threat Explanations in Provenance-Based Intrusion Detection Systems!
- Invited as a Reviewer for ACM Transactions on Privacy and Security (TOPS)!
- Started as an Applied Scientist Intern at Zillow Group, Inc., focusing on Personalization AI with an emphasis on region recommendation and explainability!
- Our paper ProvIoT: Detecting Stealthy Attacks in IoT through Federated Edge-Cloud Security got accepted to ACNS 2024!
- Invited to join the Artifact Evaluation Committee for NDSS 2024 and USENIX 2024!
- Invited as a Reviewer for ACM Computing Surveys!
- Invited to join the Artifact Evaluation Committee for MLSys 2023, MobiSys 2023 and USENIX 2023!
- Our paper Evading Provenance-Based ML Detectors with Adversarial System Actions got accepted to USENIX 2023!
Security Research
- Degree: Doctorate
- City: Dallas, Texas
- Email:
kunmukh at gmail.com - Website: www.kunmukh.com
- Specialty: Graph Learning, Graph Privacy, Explainable AI, Malware and APT Threat Analysis
Research Interests
- Anomaly Detection and Malware Classification
- Explainable ML
- Adversarial ML
- Differential Privacy
- Security and Goverannce in LLMs
- Recommendation Systems
- Security of Agentic AI
- System and Network Security
Projects
Realizable Adversarial Attacks and Red Teaming LLMs
Develops reusable, realistic adversarial evaluations spanning system-action evasion against provenance-based IDS and red-teaming of LLM-based security advisors for trusted execution environments, [USENIX '23, AID-Wild @ ACM CAIS '26].
Adversarial Robustness of Graph Neural Networks
Designing realistic adversarial attacks on GNNs for social networks to evaluate and strengthen robustness of graph learning models, [ICML '26].
Explainability Framework for Graph Neural Networks
Ground truth-aware explanation framework for enhancing the interpretability of GNN, [KDD '25, PST '26].
LLM-driven Forencis and Intrusion Detection Agents
Built an LLM-based agent that mines and interprets threat reports, then queries provenance data sources to investigate reported attacks, [arXiv '25, Berkeley RDI Agentic AI Summit '26 Poster, Demo].
Agentic AI: Graph-Based Coordinated-Agent Detection
Developed a graph-based framework to collect, model, and analyze longitudinal interactions among autonomous AI agents to identify coordinated behaviors and emerging interaction patterns, [Paper, Code, Dataset].
Privacy-Preserving Federated Intrusion Detection for IoT
Federated IDS framework customized for IoT-specific constraints, integrating differential privacy to detect evasive attacks effectively, [ACNS '24].
Dissertation
Under-Submission
Publications
BOCLOAK: Optimal Transport-Guided Adversarial Attacks on Graph Neural Network-Based Bot Detection
Kunal Mukherjee, Zulfikar Alom, Tran Gia Bao Ngo, Cuneyt Gurcan Akcora, Murat Kantarcioglu.
Forty-third International Conference on Machine Learning (ICML). July, 2026.
ProvIoT: Detecting Stealthy Attacks in IoT through Federated Edge-Cloud Security
Kunal Mukherjee, Joshua Wiedemeier, Qi Wang, Junpei Kamimura, John Junghwan Rhee, James Wei, Zhichun Li, Xiao Yu, Lu-An Tang, Jiaping Gui, Kangkook Jee.
In Proceedings of 22nd International Conference on Applied Cryptography and Network Security. March, 2024.
Evading Provenance-Based ML Detectors with Adversarial System Actions
Kunal Mukherjee, Joshua Wiedemeier, Tianhao Wang, James Wei, Feng Chen, Muhyun Kim, Murat Kantarcioglu, and Kangkook Jee.
In Proceedings of Usenix Security. Aug, 2023.
Artifacts evaluated and badges awarded: Available, Functional, Reproducible.
Resume
Summary
Kunal Mukherjee
Postdoctoral Research Associate at Virginia Tech working with Dr. Murat Kantarcıoğlu on adversarial robustness of Graph Neural Networks (GNNs) and agentic AI for system provenance forensics. His research bridges graph learning and large language models (LLMs) to develop scalable, interpretable, and privacy-preserving solutions for cybersecurity. He designs frameworks that generate realistic adversarial attacks on GNNs, build RAG-based agent pipelines for automated threat intelligence extraction, and explore LLM-guided forensic analysis and governance for trustworthy adoption of AI in security operations.
His broader expertise spans Adversarial ML, Explainable ML, Anomaly Detection, and Privacy-preserving Generative AI, with a strong record of publishing at top-tier venues (e.g., USENIX Security, ACNS, KDD). He has also collaborated with industry leaders (e.g., Zillow Group) to apply GNNs to recommendation systems, resulting in impactful research and a patent filing.
Education
Doctorate and M.S, Computer Science
Aug 2019 - May 2025
University of Texas at Dallas, Dallas, TX
- Dissertation: Iot integration, Adversarial attacks, and Threat explanations in Provenance-based Intrusion Detection Systems
- Advisor: Dr. Kangkook Jee and Dr. Murat Kantarcioglu
- Qualification Exams: Machine Learning, Algorithms, and Database
Bachelor of Science, Computer Engineering
Aug 2016 - Jun 2019
University of Evansville, Evansville, IN
- Senior Thesis: Location Dependent Cryptosystem
- Advisor: Late Dr. Dick Blandford and Dr. Donald Roberts
- Minors: Computer Science and Engineering Management
Professional Experience
Applied Scientist
03/2026 - Present
Zillow Group, Inc., Dallas, TX
- Design personalized ranking and recommendation objectives for real-estate discovery.
- Develop user--listing representation learning models using behavioral and contextual signals.
- Build explainable recommender systems for transparent and fair personalized recommendations.
Postdoctoral Research Associate
08/2025 - 03/2026
Department of Computer Science, Virginia Tech, Blacksburg, VA
- Conducting research under Dr. Murat Kantarcıoğlu on adversarial robustness of GNNs and LLM adoption in system provenance.
- Implementing realistic adversarial attacks on GNNs across domains such as blockchain and social networks to evaluate detection robustness.
- Exploring LLM-guided forensics and AI governance for reliable adoption of agentic AI in cybersecurity investigations.
Applied Scientist Intern
05/2024 – 12/2024
Zillow Group, Inc., Dallas, TX
- Designed a GNN-based recommendation system, yielding a 40x increase in nDCG and a 60x boost in diversity.
- Engineered a novel explainability framework for recommendations to improve transparency and accountability.
- Work resulted in an oral research paper at KDD '25 (MLoG-GenAI workshop) and a patent application.