#mlsec
Are your AI doing the threat modeling for you?

Threat model using "Elevation of MLSec" on copi.owasp.org instead. Our survival depends on it!

At copi.owasp.org you can play Elevation of MLSec to secure your AI models.

Read more: dev.to/owasp/threat...

#genai #openai #ai #threatmodeling #appsec
June 11, 2025 at 7:56 PM
Great to be at @satml.org with several members of my team from @bifold.berlin and @tuberlin.bsky.social. We are having a blast with exciting discussions and talks on trustworthy AI! #SaTML25
April 10, 2025 at 9:32 AM
Combining data from different sources and relying on AI creates a new attack surface. We need to fix this before AI forecasts become the norm.

🧳 Code: github.com/mlsec-group/...
👉 Paper: mlsec.org/docs/2025-cc...
🤗 Distinguished Paper Award at CCS

with Erik Imgrund & @eisenhofer.bsky.social

4/4
GitHub - mlsec-group/adversarial-observations: This repository belongs to the publication: Adversarial Observations in Weather Forecasting
This repository belongs to the publication: Adversarial Observations in Weather Forecasting - mlsec-group/adversarial-observations
github.com
October 15, 2025 at 6:06 PM
MLSec Lab is hosting its next public #seminar: “Explanation-Aware Attacks and the Limits of Using #XAI in Computer Security” with Christian Wressnegger from the Karlsruhe Institute of Technology (KIT, @kit.edu).

November 26, 17:00 - 18:00 CET.

Don't miss!

elsa-ai.eu/mlsec-semina...
November 10, 2025 at 3:03 PM
Exposing Security Risks in AI Weather Forecasting

Erik Imgrund of the MLSEC group ( @rieck.mlsec.org ) will present the paper “Adversarial Observations in Weather Forecasting” at ACM CCS.

t1p.de/6k0uc

#MLsky #cybersecurity #ML #research #AI @tuberlin.bsky.social
October 15, 2025 at 1:25 PM
📢 Last week, Andreas Kellas presented our work on secure deserialization of pickle-based Machine Learning (ML) models at @acm.org CCS 2025!

#pickleball #mlsec #mlsecops #brownssl #browncs
October 21, 2025 at 2:22 AM
The “digital curtain” in video calls has holes – with the right techniques, people can see through.

New MLSec study (BIFOLD) reveals that virtual backgrounds in video conferencing tools are not a reliable privacy shield.

t1p.de/ndqxt

#ML #Security #Cybersecurity #IT #Study @rieck.mlsec.org
September 16, 2025 at 12:47 PM
At @nohatcon.bsky.social the common thread is ML for networks: @vesnafvr.bsky.social's “Poison in the Wires” on visualizing data poisoning + Ermes Pennucci & Antonio Repola's “Go with the (net)flow” on fixing ML netflow analytics.
#mlsec #networksecurity #nohat2025 #cybersecurity
October 18, 2025 at 2:40 PM
At copi.owasp.org, you can play Elevation of MLSec, which helps you map the risks associated with machine learning (ML) that have been identified by BiML.

Read all about how here: dev.to/owasp/threat...

#security #appsec #threatmodeling #ai #machinelearning #ml #games
Does the AI do the threat modeling of your software?
Are you letting the AI do the threat modeling for you? There is no need to let the machines...
dev.to
May 26, 2026 at 8:09 AM
We are excited to share the next event of the MLSec Lab's webinar series on #ML #Security!

"A mechanistic view of refusal in language models" by Andy Arditi will take place on December 17th, 2025, at 5 pm CET.

Free registration at the link below:

events.teams.microsoft.com/event/9ca660...
December 3, 2025 at 1:33 PM
More here... (4/4)

📄 Paper: mlsec.org/docs/2026-icse.pdf
💻 Code: github.com/mlsec-group/cheetah
mlsec.org
April 18, 2026 at 3:07 PM
BIFOLD’s MLSec group will present 2 papers at #USENIX Security 2025.

One study shows that “virtual” backgrounds in video calls can still leak real-world details — a privacy risk with broad implications.

Details: www.bifold.berlin/news-events/...

@rieck.mlsec.org @tuberlin.bsky.social
USENIX 2025 Conference Contributions
BIFOLD researchers from the MLSec group will present two papers at the 34th USENIX Security Symposium (Aug 13–15, 2025, Seattle). One paper shows that virtual backgrounds in video calls can unintentio...
www.bifold.berlin
August 11, 2025 at 9:46 AM
nobody scans ports to hack an AI agent. one poisoned document in the RAG pipeline and the model does the rest. NVIDIA and MITRE ATLAS mapped 66+ #AISecurity attack techniques. here's where the chain breaks. #PromptInjection #MLSec
www.toxsec.com/p/ai-kill-ch...
The AI Kill Chain Explained: Two Frameworks Every Defender Needs
What a kill chain is, why AI needs its own, and how NVIDIA and MITRE ATLAS map attacks on AI systems stage by stage.
www.toxsec.com
March 17, 2026 at 1:37 PM
⚠️ Hugging Face Transformers: CVE-2025-6051 ReDoS via EnglishNormalizer.normalize_numbers() — long digit strings spike CPU, DoS NLP/TTS. Update 4.53.0; add input limits/timeouts. 🛡️

🔗 basefortify.eu/cve_reports/...

#MLSec #AppSec #NLP
September 15, 2025 at 7:50 AM
June 21, 2026 at 1:55 AM
(Pure dataops is what I'm mostly nailing interviews/verbals on rn. I can dream tho about landing strictly distributed, blockchain, or even MLSec research tho lmao. Also eying some newer embedded like "please don't be DARPA; I thought we moved all that to Boston.")
July 30, 2025 at 7:53 PM
Threat modeling your AI models using AI?
## _Are you letting the AI do the threat modeling for you? There is no need to let the machines take over the world! Threat model using Elevation of MLSec on copi.owasp.org instead. Our survival depends on it! Atcopi.owasp.org you can now play Elevation of MLSec to threat model your AI models._ Elevation of MLsec is an unofficial Machine Learning Security (MLsec) extension of Microsoft's Elevation of Privilege threat modeling card game. These playing cards portray risks associated with machine learning (ML) that have been identified by research groups. It is suitable to play this game with or without the original Elevation of Privilege deck depending on the nature of what you're threat modeling. The intention of these cards is primarily to improve the security of ML systems themselves, as opposed to using ML for security. The work is based mainly on Berryville Institute for Machine Learnings (BIML)’s architectural risk analysis for machine learning systems (BIML-78) and their LLM analysis (BIML-LLM24), found on berryvilleiml.com. The game also adds a few somewhat supplementary LLM specific threats from OWASP’s TOP 10 list for Large Language Model Applications found on owasp.org. The game was created by Elias Brattli Sørensen and designed by Jorun Kristin Bremseth while working at Kantega. You can download the design files from their repository if you would like to print a physical version of the game. Version 2.3 of OWASP Cornucopia brings with it "Elevation of MLSec" as an option when you select a new game at copi.owasp.org. If you like, it's also possible to install Copi yourself. Read more about that here: https://cornucopia.owasp.org/copi Personally, I am very happy about their game and have used it myself to threat model our new AI features that we are delivering at Admincontrol, and you should do it too. Don't leave the threat modeling up to the AI or it may take over the world! Learn how to play OWASP Cornucopia or Elevation of Privilege: OWASP is a non-profit foundation that envisions a world with no more insecure software. Our mission is to be the global open community that powers secure software through education, tools, and collaboration. We maintain hundreds of open source projects, run industry-leading educational and training conferences, and meet through over 250 chapters worldwide.
forem.com
June 11, 2025 at 8:01 PM
Mother f'er!! @haroldpulcher @rondagdag https://twitter.com/mlsec/status/1469374394808123401
November 17, 2024 at 5:32 AM
Parts 5-6/6 — EFTA01278191.jpg
#epsteinweb #efta01278191
https://epsteinweb.org
February 16, 2026 at 3:52 AM
None of this would have been possible without Anna Wimbauer, Stefan Czybik, and Jonas Möller from our MLSec Research Group.

Thank you to all the young women who joined us today! Your curiosity, engagement, and enthusiasm made this day truly special.
April 23, 2026 at 2:40 PM
Paper Title: Adversarial Observations in Weather Forecasting
Authors: Erik Imgrund, Thorsten Eisenhofer, Konrad Rieck

🔗 Paper mlsec.org/docs/2025-cc...
🔗 Code github.com/mlsec-group/...
mlsec.org
October 15, 2025 at 1:25 PM
USENIX 2025 / paper 2

📜Prompt Obfuscation for Large Language Models. David Pape, Sina Mavali, Thorsten Eisenhofer, Lea Schönherr.

mlsec.org/pubs.html#pubs
Publications | MLSEC
All publications from the Chair of Machine Learning and Security at TU Berlin
mlsec.org
August 11, 2025 at 9:46 AM
USENIX 2025 / paper 1

📜Seeing through: Analyzing and Attacking Virtual Backgrounds in Video Calls. Felix Weißberg, Jan-Malte Hilgefort, Steve Grogorick, Daniel Arp, Thorsten Eisenhofer, Martin Eisemann, Konrad Rieck.

mlsec.org/pubs.html#pubs
Publications | MLSEC
All publications from the Chair of Machine Learning and Security at TU Berlin
mlsec.org
August 11, 2025 at 9:46 AM