All Publications
2025
- Deep Learning with Plausible Deniability [PDF (OpenReview)]In Neural Information Processing Systems (2025)
- Inference Attacks for X-Vector Speaker Anonymization [PDF]In IEEE Security and Privacy Workshops (2025)
- Provably Secure Covert Messaging Using Image-based Diffusion Processes [PDF]In IEEE Conference on Secure and Trustworthy Machine Learning (2025)
2024
- R+R: Towards Reliable and Generalizable Differentially Private Machine Learning [PDF (Extended Version)]In Annual Computer Security Applications Conference (2024)
- Self-Supervised Fine-Tuning of Automatic Speech Recognition Systems against Signal Processing Attacks [PDF (ACM DL)]In ACM Asia Conference on Computer and Communications Security (2024)
- Leveraging Generative Models for Covert Messaging: Challenges and Tradeoffs for "Dead-Drop" Deployments [PDF]In ACM Conference on Data and Application Security and Privacy (2024)
2023
- DP-Mix: Mixup-based Data Augmentation for Differentially Private Learning [PDF]In Neural Information Processing Systems (2023)
- SoK: Memorization in General-Purpose Large Language Models [PDF]In arXiv preprint (2023)
- EMI-LiDAR: Uncovering Vulnerabilities of LiDAR Sensors in Autonomous Driving Setting using Electromagnetic Interference [PDF (External Link)]In ACM Conference on Security and Privacy in Wireless and Mobile Networks (2023)
2022
- Enhanced Membership Inference Attacks against Machine Learning Models [PDF]In ACM SIGSAC Conference on Computer and Communications Security (2022)