Publications (7)
Understanding Variation in Subpopulation Susceptibility to Poisoning Attacks
Evan Rose, Fnu Suya, David Evans
Machine learning is susceptible to poisoning attacks, in which an attacker controls a small fraction of the training data and chooses that data with the goal of inducing some behav…
UTrace: Poisoning Forensics for Private Collaborative Learning
Evan Rose, Hidde Lycklama, Harsh Chaudhari +3
Privacy-preserving machine learning (PPML) systems enable multiple data owners to collaboratively train models without revealing their raw, sensitive data by leveraging cryptograph…
APWA: A Distributed Architecture for Parallelizable Agentic Workflows
Evan Rose, Tushin Mallick, Matthew D. Laws +2
Autonomous multi-agent systems based on large language models (LLMs) have demonstrated remarkable abilities in independently solving complex tasks in a wide breadth of application…
ACE: A Security Architecture for LLM-Integrated App Systems
Evan Li, Tushin Mallick, Evan Rose +3
LLM-integrated app systems extend the utility of Large Language Models (LLMs) with third-party apps that are invoked by a system LLM using interleaved planning and execution phases…
A new method for imaging nuclear threats using cosmic ray muons
C. L. Morris, Jeffrey Bacon, Konstantin Borozdin +10
Muon tomography is a technique that uses cosmic ray muons to generate three dimensional images of volumes using information contained in the Coulomb scattering of the muons. Advant…
MUZZLE: Adaptive Agentic Red-Teaming of Web Agents Against Indirect Prompt Injection Attacks
Georgios Syros, Evan Rose, Brian Grinstead +4
Large language model (LLM) based web agents are increasingly deployed to automate complex online tasks by directly interacting with web sites and performing actions on users' behal…
Fragile Giants: Understanding the Susceptibility of Models to Subpopulation Attacks
Isha Gupta, Hidde Lycklama, Emanuel Opel +2
As machine learning models become increasingly complex, concerns about their robustness and trustworthiness have become more pressing. A critical vulnerability of these models is d…