#MLsecurity
#ACSAC Test-of-Time Award

@acsacconf.bsky.social awarded a Test-of-Time Award for "CUJO: Efficient Detection and Prevention of Drive by Download Attacks" (2010). K Rieck, T Krueger, A Dewald

www.bifold.berlin/news-events/...

@rieck.mlsec.org @tuberlin.bsky.social #MLSky #MLSecurity #AI
December 12, 2025 at 11:06 AM
📢 Machine Learning Security in Practice

Thanks to Kathrin Grosse (IBM Research Zurich) for providing insight into ML vulnerabilities and the process of moving from theory to practice in security!

#RedeCIGUS #FondosEuropeos
#MLSecurity #AI #Cybersecurity #MachineLearning #CiTIUSTalks
June 27, 2025 at 11:24 AM
☝️New research shows SLMS can detect phishing websites with high accuracy — machine learning is becoming a sharper shield against social engineering. 🤖🛡️ #PhishingDetection #MLSecurity
Small language models step into the fight against phishing sites - Help Net Security
Small language models (SLMs) offer new ways to spot phishing on websites and give teams room to improve detection on their own systems.
buff.ly
November 26, 2025 at 9:05 AM
AI agents can retrain and redeploy their own models mid-task, leaking seeded secrets and stripping safety refusals. Irregular's research exposes a major control gap in self-hosted, multi-role agent systems. #AIAgents #ModelSafety #MLSecurity
AI Agents Can Retrain Own Models Mid-Task, Leaking Secrets And Erasing Refusals
AI agents can independently retrain and redeploy the models that power them, potentially embedding recoverable secrets and removing safety refusals in the process, according to Irregular’s research. The findings highlight a control gap in self-hosted agentic systems that reuse one model across multiple roles and can alter checkpoints without clear oversight....
www.hendryadrian.com
September 17, 2026 at 10:45 AM
Aden Yap Chuen Zhen takes a closer look at the supply chain—where 0-days, N-days, and everything in between can quietly become someone else’s problem.

0-Day and N-Days in AI/ML Supply Chain Frameworks by Aden Yap Chuen Zhen

#ROOTCON20 #AI #MLSecurity #SupplyChainSecurity #CyberSecurity
September 2, 2026 at 7:38 AM
Curious whether anyone has automated it or if it is still a manual fire drill every time. #apikeyrotation #apisecurity #mlsecurity #selfhosting #keymanagement #devops 2/2
August 13, 2026 at 11:26 PM
It's high time that you stop relying on traditional fraud detection because you’re playing defense with outdated tools.

Here is the tool you actually need, www.webbuddy.agency/blogs/top-te...

#ScamDetection #MachineLearning #FraudPrevention #CyberSecurity #AI #MLSecurity
Top Techniques for Scam Detection in ML
There is an increased risk of scams in the digital world. Businesses and individuals face a significant threat from them. Machine learning, on its part, can provide a powerful tool for dealing with th...
www.webbuddy.agency
February 15, 2025 at 12:18 PM
Join Behnaz Karimi and Yuvaraj Govindarajulu at OWASP Global AppSec EU 2025 in Barcelona on May 29!

🔗 Register: owasp.glueup.com/eve...

#OWASP #AppSecEU2025 #Ransomware #AIsecurity #MLsecurity #GenAI #CyberThreats #Barcelona #OWASPAI
April 16, 2025 at 3:04 PM
🧵 1/7 Breaking: Researchers discovered malicious ML models on Hugging Face using a novel "broken pickle" technique to evade security scanning. Here's the fascinating technical breakdown of how attackers bypassed Picklescan protections... #MLSecurity #AI
thehackernews.com/2025/02/mali...
Malicious ML Models on Hugging Face Leverage Broken Pickle Format to Evade Detection
Researchers discovered two malicious ML models on Hugging Face exploiting “broken” pickle files to evade detection, bypassing Picklescan safeguards.
thehackernews.com
February 8, 2025 at 9:03 PM
AI models vulnerable to prompt attacks! Hackers exploit weaknesses with crafted inputs. Secure your AI! #AIsecurity #PromptInjection #Cybersecurity #MLsecurity #AI
Video
AI systems are vulnerable to poetic prompts, enabling prompt injection attacks via sonnets and puns. This exposes a critical security flaw in AI's language processing. Learn about this threat and its impact on public safety. #AIsecurity #PromptInjection #AISafety 2025-12-04 Tools used for generation Text Gemini Narator Azure TTS Clips Pexel Rendering Remotion
www.youtube.com
December 4, 2025 at 5:39 PM
Sentry adds GPU-accelerated cryptographic signing, verifying ML datasets in seconds on a single GPU and achieving orders-of-magnitude speedup versus CPU-only baselines. https://getnews.me/sentry-enables-fast-gpu-authentication-for-ml-artifacts/ #sentry #gpu #mlsecurity
October 2, 2025 at 11:22 PM
ML models are only as strong as the servers behind them. Check out “Vulnerable MCP Servers Lab: 9 ways to boost ML security" and lock down your AI stack: jpmellojr.blogspot.com/2026/02/vuln... #MLSecurity #AppSec #CyberSecurity #AI #MCPlab
Vulnerable MCP Servers Lab: 9 ways to boost ML security
The Vulnerable MCP Servers Lab delivers integration training, demos, and instruction on LLM attack methods. more
jpmellojr.blogspot.com
February 5, 2026 at 3:45 PM
SLSA and Sigstore are a good first step toward protecting ML models from attack. But they're not a panacea. #AISecurity #MLSecurity #SupplyChainSecurity #Sigstore #SLSA
jpmellojr.blogspot.com/2023/11/how-...
November 10, 2023 at 4:06 PM
Beyond data filtering, real-time fact-checking and architectural improvements in LLMs are vital. Building models inherently more resistant to adversarial inputs is a key challenge for future development. #MLSecurity 5/6
October 10, 2025 at 7:00 AM
Launching the session was Li et al.'s "FedCAP: Robust Federated Learning via Customized Aggregation and Personalization," showing a novel solution tackling data heterogeneity and Byzantine threats. (www.acsac.org/2024/p...) 2/6
#MLSecurity #CyberSecurity #AI
September 18, 2025 at 3:10 PM
Ending the session, we saw Ferens et al.'s "Securing PUFs via a Predictive Adversarial ML System by Modeling of Attackers" highlighting advances in defending #IoT devices against ML-based #PUF attacks. (www.acsac.org/2024/p...) 6/6
#Cybersecurity #MLSecurity
August 7, 2025 at 2:01 PM
🤖 New guidance from NIST identifies challenges with #MLsecurity, making it a solid resource. 🤔 However, it doesn't offer a total solution for #SecuringAI: www.reversinglabs.com/blog/nist-ad...

#ML #AI #Cybersecurity
NIST Adversarial ML Guidance: How RL Can Secure Your Organization
The new NIST guidance identifies the adversarial ML challenges. Here’s why Spectra Assure should be an essential part of your solution.
www.reversinglabs.com
May 20, 2025 at 7:15 PM
⚠️🧵 RL's automated detection system has detected 2 #PyPI packages containing malicious #AI models:

secure.software/pypi/package...

secure.software/pypi/package...

#AISecurity #MLSecurity #Dev
https://secure.software/pypi/packages/aliyun-ai-labs-snippets-sdk
t.co
May 20, 2025 at 2:24 PM