




























I'm a tenure-track faculty member at CISPA Helmholtz Center for Information Security in Saarbrücken, Germany. Before joining CISPA, I was a postdoctoral researcher in the Machine Learning and Security group at BIFOLD & TU Berlin working with Konrad Rieck. I completed my PhD at Ruhr University Bochum, advised by Thorsten Holz and as part of the Cluster of Excellence CASA. My dissertation was recognized by the faculty for outstanding achievements.
My research focuses on machine learning and computer security. I'm interested in a all kinds of attacks on learning models and defenses to improve their robustness. This often means looking beyond the model itself and examining the entire computational pipeline, including pre-processing, post-processing, and the underlying hardware and software stack. I'm also interested in how learning-based approaches, including modern LLM and agent systems, can support core security tasks such as vulnerability analysis, fuzzing, and malware classification.
Along the way, I interned with the SecLab at UC Santa Barbara, working with Giovanni Vigna and Christopher Kruegel and joining Shellphish at the DEF CON CTF finals in Las Vegas. I have also been a visiting researcher at the Cleverhans Lab at the Vector Institute in Toronto, working with Nicolas Papernot. I hold a B.Sc. in Computer Science from Paderborn University and an M.Sc. in Computer Security from Ruhr University Bochum, where I graduated top of my class.
Jonathan Evertz, Niklas Risse, Nicolai Neuer, Andreas Müller, Philipp Normann, Gaetano Sapia, Srishti Gupta, David Pape, Soumya Shaw, Devansh Srivastav, Christian Wressnegger, Erwin Quiring, Thorsten Eisenhofer, Daniel Arp, and Lea Schönherr
Chasing Shadows: Pitfalls in LLM Security Research
Network and Distributed System Security Symposium (NDSS)
[pdf]
[website]
[code]
[arxiv]
Security of Machine Learning Systems, Guest lecture, “Machine Learning for Computer Security”, Reykjavik University, 2026
Security of Machine Learning Systems, Guest lecture, “Machine Learning for Computer Security”, TU Wien, 2025
Verifiable and Provably Secure Machine Unlearning, Conference talk, SaTML, 2025
Security of Machine Learning Systems, Spring school “SAIL”, Bielefeld University, 2025
Security of Machine Learning Systems, Keynote, Winter school “WinterHack”, Ruhr University Bochum, 2024
Maschinelles Lernen in der IT-Sicherheit, Lecture series “KI und Informationssicherheit”, Heidelberg University, 2024
International Research Environments, Panel discussion, Ruhr University Bochum, 2024
Machine Learning and Security, Lecture series “Machine Learning in Science & Industry”, TU Berlin, 2024
Subverting Automatic Paper-Reviewer Assignment, Conference talk, USENIX Security, 2023
Security of Machine Learning Systems, Defense, Ruhr University Bochum, 2023
Communicating Research, Panel discussion, Ruhr University Bochum, 2023
Adversarially Robust Speech Recognition, Spotlight presentation, CASA Retreat, 2021
Taming Audio Adversarial Examples, Conference talk, USENIX Security, 2021
Program Committees
ACM Conference on Computer and Communications Security (CCS), 2026
Annual Computer Security Applications Conference (ACSAC), 2026
ACM Conference on Computer and Communications Security (CCS), 2026
Workshop on Artificial Intelligence and Security (AISec), 2025
ACM Conference on Computer and Communications Security (CCS), 2024
Workshop on Artificial Intelligence and Security (AISec), 2024
European Symposium on Artificial Neural Networks ... (ESANN), 2023
Instructor
Research Problems in Machine Learning and Security, Saarland University
Master・Hands-on Summer 206
Security and Privacy of AI, TU Berlin
Master・Seminar・Summer 2025
Reproducing AI Attacks and Defenses, TU Berlin
Master・Hands-on class・Winter 2024/25
Privacy and Security in Learning, TU Berlin
Master・Seminar・Summer 2024
Security Playground for Generative Agents, TU Berlin
Master・Hands-on class・Summer 2024
ML & Computer Security, Ruhr University Bochum
Master・Hands-on class・Winter 2021/22
ML & Computer Security, Ruhr University Bochum
Master・Hands-on class・Summer 2021
ML & Computer Security, Ruhr University Bochum
Master・Hands-on class・Winter 2020/21
Teaching Assistant
Machine Learning for Computer Security, TU Berlin
Master・Lecture・Summer 2025
Adversarial Machine Learning, TU Berlin
Master・Lecture・Winter 2024/25
Machine Learning for Computer Security, TU Berlin
Master・Lecture・Summer 2024
System Security, Saarland University
Bachelor・Lecture・Summer 2021
System Security, Ruhr University Bochum
Bachelor・Lecture・Summer 2020
Operating System Security, Ruhr University Bochum
Master・Lecture・Winter 2019/20
System Security, Ruhr University Bochum
Bachelor・Lecture・Summer 2019
Accidental Trigger
Ruhr University Bochum: «When Speech Assistants Listen Even Though They Shouldn't» (EN)
NDR: «Wenn der smarte Lautsprecher mit dem Tatort-Kommissar spricht» (DE)
Süddeutsche Zeitung: «Wenn Alexa aus Versehen lauscht» (DE)
STRG_F: «Sex, Streit, Arztgespräche: wie oft Smart Speaker heimlich mithören» (DE)
tagesschau.de: «Die lauschenden Lautsprecher» (DE)
Tagesthemen: «Sprachassistenten hören mit» (DE)
Ars Technica: «Uncovered: 1,000 phrases that incorrectly trigger Alexa, Siri, and Google...» (EN)
ZDF logo!: «Hat Siri schlechte Ohren?» (DE)
detektor.fm: «Alexa, spionierst du mich aus?» (DE)
Fast Company: «Tired of Saying 'Hey Google' and 'Alexa'? Change it Up with These...» (EN)
Mitteldeutsche Rundfunk: «Wann hören Sprachassistenten mit?» (DE)
The Times: «Not in Front of the Speaker! Words that Wake Up Alexa» (EN)
Voicebot.ai: «More Than 1,000 Phrases Will Accidentally Awaken Alexa, Siri, and Google...» (EN)
Hessischer Rundfunk: «Immer ganz Ohr – Lauschangriff der Sprachassistenten» (DE)
Max Planck Society: «Uninvited Listeners in Your Speakers» (EN)
Remote Chaos Experience: «Alexa, Who Else Is Listening?» (EN)
Tech Conversationalist: «Are You Accidentally 'Waking Up' Your Smart Devices?» (EN)
hackster.io: «Incorrect Alexa, Siri, Google Assistant, and Cortana Trigger Words Are...» (EN)
Sputnik International: «Alarming: Research Identifies Over 1,000 Phrases That Trick,...» (EN)
Mimikama: «Wenn Sprachassistenten zuhören, obwohl sie gar nicht sollen!» (DE)
此内容由惯性聚合(RSS阅读器)自动聚合整理,仅供阅读参考。 原文来自 — 版权归原作者所有。