21 citations · 27 across the 6 of their papers we have counts for
6 papers · 1 filter
Injection Attacks Against End-to-End Encrypted Applications
Andrés Fábrega, Carolina Ortega Pérez, Armin Namavari +3
We explore an emerging threat model for end-to-end (E2E) encrypted applications: an adversary sends chosen messages to a target client, thereby "injecting" adversarial content into…
Exploiting Leakage in Password Managers via Injection Attacks
Andrés Fábrega, Armin Namavari, Rachit Agarwal +2
This work explores injection attacks against password managers. In this setting, the adversary (only) controls their own application client, which they use to "inject" chosen paylo…
A Jailbroken GenAI Model Can Cause Substantial Harm: GenAI-powered Applications are Vulnerable to PromptWares
Stav Cohen, Ron Bitton, Ben Nassi
In this paper we argue that a jailbroken GenAI model can cause substantial harm to GenAI-powered applications and facilitate PromptWare, a new type of attack that flips the GenAI m…
Private Hierarchical Governance for Encrypted Messaging
Armin Namavari, Barry Wang, Sanketh Menda +5
The increasing harms caused by hate, harassment, and other forms of abuse online have motivated major platforms to explore hierarchical governance. The idea is to allow communities…
The Adversarial Implications of Variable-Time Inference
Dudi Biton, Aditi Misra, Efrat Levy +6
Machine learning (ML) models are known to be vulnerable to a number of attacks that target the integrity of their predictions or the privacy of their training data. To carry out th…
Handwritten Signature Verification Using Hand-Worn Devices
Ben Nassi, Alona Levy, Yuval Elovici +1
Online signature verification technologies, such as those available in banks and post offices, rely on dedicated digital devices such as tablets or smart pens to capture, analyze a…