{
  "count": 41,
  "items": [
    {
      "id": 19057,
      "url": "https://arxiv.org/abs/2608.12077v1",
      "title": "A Comparison of Malware Image Transformations Using Grad-CAM and Hybrid Learning Models",
      "summary": "Recent studies have shown that binary-to-image representations can enable effective machine learning-based results for malware detection and classification. However, performance can vary significantly, depending on the technique used to convert binaries to images. Furthermore, the explainability and interpretability of image-based models is largely unexplored within the malware domain. In this research, we employ Gradient-weighted Class Activation Maps (Grad-CAM) as an eXplainable AI (XAI) tool,",
      "authors": "Vibha Bhavikatti, Mark Stamp",
      "category": "research",
      "topics": "safety-alignment,transparency",
      "published_at": "2026-08-12T14:00:44.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/19057"
    },
    {
      "id": 19461,
      "url": "https://arxiv.org/abs/2608.12431v1",
      "title": "The energetic cost of mitigating AI attacks in cellular networks",
      "summary": "The integration of Artificial Intelligence (AI), generally as Machine Learning (ML) algorithms, in all levels and aspects of cellular networks demonstrates the success of data-driven algorithms; for example, the Radio Intelligence Controller (RIC) of the O-RAN paradigm bestows the network with optimised radio resource allocation, load balancing or energy efficiency functions, among others. Nevertheless, this dependency on data opens new security vulnerabilities, as attackers can alter data prope",
      "authors": "Adrián Losada, Hao Qiang Luo-Chen, David Segura, Carlos S. Alvarez-Merino, Milan Groshev, Emil J. Khatib, Raquel Barco",
      "category": "research",
      "topics": "environment",
      "published_at": "2026-08-12T12:42:46.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/19461"
    },
    {
      "id": 19058,
      "url": "https://arxiv.org/abs/2608.11495v1",
      "title": "Defending against Model Extraction for GNNs with Model Reprogramming",
      "summary": "Graph Neural Networks (GNNs) serve as the backbone for high-stakes applications in Machine-Learning-as-a-Service (MLaaS). Still, their black-box deployment exposes them to Model Extraction (ME) attacks, in which adversaries steal intellectual property by querying APIs. Existing defenses suffer from a critical ''Euclidean bias'': they transfer image-based strategies (e.g., random noise) to graphs, ignoring the complex topological dependencies between nodes, which often results in severe utility d",
      "authors": "Yan Wen, Zhenyi Wang, Heng Huang",
      "category": "research",
      "topics": "bias-fairness,copyright-ip",
      "published_at": "2026-08-11T23:20:15.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/19058"
    },
    {
      "id": 18678,
      "url": "https://arxiv.org/abs/2608.11155v1",
      "title": "On the Sensitivity to Errors in Homomorphic Computing: Single Transient Bit-flip Client-side Error Characterization",
      "summary": "Homomorphic Encryption (HE) enables computation on encrypted data without decryption and is a key primitive for privacy-preserving computation in sensitive domains such as healthcare, finance, and government. Its security relies on noise injection, which introduces intrinsic error sensitivity and raises concerns about the fault tolerance of HE systems, as hardware- and software-induced faults can evade traditional detection mechanisms and lead to silent data corruption. In this work, we analyze",
      "authors": "Matías Mazzanti, Vattana Chan, Karthik Swaminathan, Augusto Vega, Esteban Mocskos, Radha Venkatagiri",
      "category": "research",
      "topics": "privacy-surveillance,healthcare",
      "published_at": "2026-08-11T17:13:39.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/18678"
    },
    {
      "id": 19059,
      "url": "https://arxiv.org/abs/2608.11291v1",
      "title": "Dueling Deep Q-Learning for Intrusion Detection",
      "summary": "Intrusion detection systems (IDS) and automated systems for detecting and reporting cyber threats, are commonly handled via supervised machine learning methods. Though effective, these models struggle to effectively adapt to new attack types. This study proposes a novel approach by employing a reward-based, dueling Q-learning model for IDS, achieving an average accuracy of 99.68% across multiple attack classes. The proposed model has a dueling network architecture which separates its predictions",
      "authors": "Logan Luna, Matthew P. Berkowitz, Laxima Niure Kandel, Sirio Jansen-S'anchez",
      "category": "research",
      "topics": "military-security",
      "published_at": "2026-08-11T16:55:00.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/19059"
    },
    {
      "id": 17932,
      "url": "https://arxiv.org/abs/2608.06469v1",
      "title": "Fairis: Fairness-Aware Aggregation with Provable Influence Containment against Fairness Poisoning Attacks in Collaborative Machine Learning",
      "summary": "Collaborative machine learning among financial institutions must be both group-fair and robust against deliberate adversarial manipulation. Existing fairness-aware aggregation methods remain formally vulnerable to fairness poisoning: a malicious client maximizing group disparity while preserving accuracy evades accuracy-based Byzantine defenses, and in our threat model FairFed's gap-based weighting can be gamed by an adversary who observes the global fairness score. We present Fairis, a server-s",
      "authors": "Devharsh Trivedi, Nesrine Kaaniche, Nikos Triandopoulos, Maryline Laurent, Jackson Walters",
      "category": "research",
      "topics": "bias-fairness",
      "published_at": "2026-08-06T18:02:54.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/17932"
    },
    {
      "id": 17372,
      "url": "https://arxiv.org/abs/2608.05902v1",
      "title": "Tool Demo: Topology analysis with GPML for detection of cyberattacks in Water Distribution Networks",
      "summary": "Water distribution networks depends on industrial control systems to integrate the physical process with communication network, making them vulnerable to cyberattacks that alter the traffic pattern and network behavior. Traditional detection approaches that rely on raw traffic or protocol information often oversee structural changes that are induced by such attacks. In this work, we presents a topology-driven approach for detection of cyberattacks in water distribution networks based on Graph Pr",
      "authors": "Majed Jaber, Abdul Qadir Khan, Ankush Meshram, Julien Michel, Côme Frappé - - Vialatoux, Pierre Parrend",
      "category": "research",
      "topics": "environment",
      "published_at": "2026-08-06T11:31:38.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/17372"
    },
    {
      "id": 18300,
      "url": "https://arxiv.org/abs/2608.07591v1",
      "title": "Zero-Trust Federated Learning for Connected Aftermarket Devices",
      "summary": "Connected aftermarket devices extend vehicle diagnostics, repair workflows, and over-the-air software maintenance beyond original equipment manufacturer boundaries, yet their heterogeneous ownership and long service life complicate conventional perimeter security. This paper develops Zero Trust Federated Learning for Connected Aftermarket Devices (ZT FL CADE), an edge-learning architecture that combines device-level access control, privacy-preserving federated learning, and adversarial validatio",
      "authors": "Shunmukha Sagar Puppala",
      "category": "research",
      "topics": "privacy-surveillance,healthcare",
      "published_at": "2026-08-05T20:10:12.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/18300"
    },
    {
      "id": 16136,
      "url": "https://arxiv.org/abs/2608.02274v1",
      "title": "A Multi-Objective AutoML-based Efficient Intrusion Detection System for EV Charging Networks",
      "summary": "Electric Vehicle Charging Systems (EVCSs) are increasingly connected with Internet of Things (IoT) devices, which improves charging intelligence but also expands their exposure to cyber-attacks. Intrusion Detection Systems (IDSs) are essential for securing EV charging networks; however, conventional Machine Learning (ML)-based IDSs often rely on manual model design and mainly optimize detection performance without fully considering inference latency and model size. In this paper, a Multi-Objecti",
      "authors": "Li Yang",
      "category": "research",
      "topics": "military-security",
      "published_at": "2026-08-03T14:11:38.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/16136"
    },
    {
      "id": 16137,
      "url": "https://arxiv.org/abs/2608.01001v1",
      "title": "From AI Technical Debt to Agentic Technical Debt: A Systematic Mapping of Root Causes and Manifestations in Agentic AI Systems",
      "summary": "The emergence of Agentic AI systems, characterized by autonomous reasoning, multi-agent collaboration, tool orchestration, adaptive decision-making, and persistent memory, represents a fundamental shift from traditional AI pipelines to dynamic software ecosystems. While AI Technical Debt (AITD) has been widely studied in machine learning and software engineering, existing models assume static, component-level architectures and fail to capture the dynamic and emergent behaviors of agentic environ",
      "authors": "Muhammad Tukur, Hayatullahi B. Adeyemo, Tao Chen, Nour Ali, Anis Zarrad, Marco Agus, Rick Kazman, Rami Bahsoon",
      "category": "research",
      "topics": "agents-autonomy",
      "published_at": "2026-08-02T05:09:28.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/16137"
    },
    {
      "id": 16138,
      "url": "https://arxiv.org/abs/2608.00872v1",
      "title": "Similarity Weighted Aggregation with Global Differential Privacy for Federated Brain Lesion Segmentation",
      "summary": "Federated Learning (FL) enables collaborative training of machine learning models across multiple institutions without sharing sensitive data, making it particularly suitable for medical imaging applications. However, heterogeneous data distributions across institutions and potential information leakage through model updates remain important challenges. In this work, we propose DP-SimAgg, a privacy-preserving federated learning framework that integrates similarity-weighted aggregation with a ser",
      "authors": "Muhammad Irfan Khan, Eero Lehtonen, Joni Obradovic, Elina Kontio, Esa Alhoniemi, Suleiman A. Khan, Mojtaba Jafaritadi",
      "category": "research",
      "topics": "privacy-surveillance,healthcare",
      "published_at": "2026-08-01T21:23:32.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/16138"
    },
    {
      "id": 14459,
      "url": "https://arxiv.org/abs/2607.25430v1",
      "title": "SafeStats: Efficient 2PC Protocols for Data Statistic-Related Functions",
      "summary": "Statistical analysis on sensitive datasets like medical records and financial transactions is essential for decision-making, but raises significant privacy concerns. While existing secure Two-Party Computation (2PC) makes extensive efforts in designing the common secure primitives (e.g., addition and multiplication) or machine learning-related functions, few pay attention to the statistical functions. In this paper, we propose SafeStats, a secure toolkit tailored for 2PC secure statistical analy",
      "authors": "Tanren Liu, Xianjia Meng, Yang Liu, Xin Kang, Chenhui You, Yong Zeng, Zhuo Ma",
      "category": "research",
      "topics": "privacy-surveillance,healthcare",
      "published_at": "2026-07-28T08:25:30.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/14459"
    },
    {
      "id": 13727,
      "url": "https://arxiv.org/abs/2607.21895v1",
      "title": "PrivDNN: A Secure Multi-Party Computation Framework for Deep Learning using Partial DNN Encryption",
      "summary": "In the past decade, we have witnessed an exponential growth of deep learning models, platforms, and applications. While existing DL applications and Machine Learning as a service (MLaaS) frameworks assume fully trusted models, the need for privacy-preserving DNN evaluation arises. In a secure multi-party computation scenario, both the model and the data are considered proprietary, i.e., the model owner does not want to reveal the highly valuable DL model to the user, while the user does not wish",
      "authors": "Liangqin Ren, Zeyan Liu, Fengjun Li, Kaitai Liang, Zhu Li, Bo Luo",
      "category": "research",
      "topics": "privacy-surveillance",
      "published_at": "2026-07-24T01:52:18.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/13727"
    },
    {
      "id": 13728,
      "url": "https://arxiv.org/abs/2607.21839v1",
      "title": "Certified in Theory, Broken in Practice: Assumption Gaps in Cryptographic Model Certification",
      "summary": "Privacy-preserving machine learning auditing protocols allow auditors to assess models for properties such as accuracy or fairness, without revealing their internals or training data. This makes them especially attractive for auditing models deployed in sensitive domains such as healthcare or finance. For these protocols to be meaningful in real-world audit settings, though, their guarantees must reflect how the model will behave once deployed, rather than merely certifying its behavior during a",
      "authors": "Carter Luck, Olive Franzese-McLaughlin, Elisaweta Masserova, Akira Takahashi, Antigoni Polychroniadou, Nicolas Papernot",
      "category": "research",
      "topics": "bias-fairness,privacy-surveillance,healthcare,transparency",
      "published_at": "2026-07-23T22:06:12.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/13728"
    },
    {
      "id": 13485,
      "url": "https://arxiv.org/abs/2607.20832v1",
      "title": "Beyond Heavy Log Curation: Perplexity-Based APT Detection via Unsupervised, Context-Augmented Language Models",
      "summary": "Advanced Persistent Threats (APTs) remain difficult to detect because only a small fraction of events in large-scale logs are attack-related, and investigation is expensive and hard to scale. Prior machine-learning approaches can reduce analyst workload, but they often rely on heavily curated training data and sophisticated preprocessing pipelines. Building and maintaining such pipelines require substantial domain expertise and engineering cost. Motivated by insights from a study of a strong APT",
      "authors": "Shoya Otsu, Kei Suzuki, Toshiaki Koike-Akino, Jing Liu, Ye Wang",
      "category": "research",
      "topics": "finance-investment",
      "published_at": "2026-07-23T01:38:25.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/13485"
    },
    {
      "id": 13486,
      "url": "https://arxiv.org/abs/2607.20686v1",
      "title": "Enhancing Attack Detection Capabilities in BACnet/IP Networks Using Machine-Learning Models",
      "summary": "Building Automation Systems (BAS) manage critical building functions using protocols such as BACnet/IP, yet defenders have limited tooling and few labeled datasets for detecting BACnet-specific attacks. This work addresses these gaps through three contributions. First, CISA's Zeek BACnet parser is modified to produce a unified per-packet log, simplifying feature engineering for machine-learning (ML) pipelines. Second, a simulated BACnet/IP testbed is developed using bacpypes3 to model a small co",
      "authors": "Derek Manzella, John D. Hastings",
      "category": "research",
      "topics": "jobs-economy",
      "published_at": "2026-07-22T19:37:44.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/13486"
    },
    {
      "id": 13487,
      "url": "https://arxiv.org/abs/2607.20579v1",
      "title": "Deepfake News Detection: A Multimodal Framework Integrating LipNet, DeepSpeech and ResNET for Enhanced Audio-Visual Analysis",
      "summary": "Deepfake news refers to AI-generated (or AI ma-nipulated) multimedia content intentionally generated to deceive audiences by manipulating the facial expressions, or speech while maintaining the realistic appearance. The rapid progress of generative AI has made the synthesis of highly realistic fake videos and cloned voices widely accessible, posing a serious threat to the authenticity of digital news media. This paper presents a multi-modal framework that discerns the authenticity of video conte",
      "authors": "Ameena Khan, Muhammad Ahsan Aziz, Muhammad Junaid Asif, Naeem Akhter, Rana Fayyaz Ahmad",
      "category": "research",
      "topics": "misinformation",
      "published_at": "2026-07-22T11:39:53.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/13487"
    },
    {
      "id": 12983,
      "url": "https://arxiv.org/abs/2607.19580v1",
      "title": "End-to-End Differential Privacy in Training Deep Neural Network Classifiers",
      "summary": "Differentially private machine learning enables model training on sensitive data while ensuring that individual data is unlikely to be recoverable from the parameters of the resulting model. However, existing work often privatizes both training inputs and their labels, and these protections may be conservative when labels are public or can be safely made public. Therefore, in this work we propose a novel private training framework that instead privatizes training inputs while keeping labels publ",
      "authors": "Huaiyuan Rao, Calvin Hawkins, Alexander Benvenuti, Matthew Hale",
      "category": "research",
      "topics": "privacy-surveillance",
      "published_at": "2026-07-21T21:15:55.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/12983"
    },
    {
      "id": 12241,
      "url": "https://arxiv.org/abs/2607.17550v1",
      "title": "(A)iSpy: Parasitic Trojans for Machine Learning Infrastructure",
      "summary": "Modern machine learning (ML) pipelines depend heavily on third party libraries for graph compilation and hardware acceleration. While current practices audit data and model artifacts or rely on file integrity checks, the execution environment remains implicitly trusted. This blind spot enables active threats where a malicious runtime module interacts directly with live training and inference dynamics: exploiting this interaction allows the Trojan to support complex objectives that are challengin",
      "authors": "Habibur Rahaman, Qipan Xu, Zafaryab Haider, Prabuddha Chakraborty, Swarup Bhunia, Fnu Suya",
      "category": "research",
      "topics": "transparency,environment",
      "published_at": "2026-07-20T04:51:20.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/12241"
    },
    {
      "id": 12242,
      "url": "https://arxiv.org/abs/2607.17105v1",
      "title": "A Multi-Model Hybrid Defense Approach Against White-box Adversarial Attacks in Computer Network Traffic",
      "summary": "It is crucial to safeguard computer networks from evolving network security threats and unknown cyberattacks. An essential tool for protecting computer networks against unknown cyber threats is Network Intrusion Detection System (NIDS). However, NIDS faces a major security concern due to its susceptibility to adversarial attacks. Adversarial attacks aim to deceive NIDS by crafting and injecting adversarial examples into the system. These adversarial inputs can deceive the NIDS into misclassifyin",
      "authors": "Khushnaseeb Roshan",
      "category": "research",
      "topics": "military-security",
      "published_at": "2026-07-19T07:20:37.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/12242"
    },
    {
      "id": 12243,
      "url": "https://arxiv.org/abs/2607.17025v1",
      "title": "Federated Lightweight Intrusion Detection in Drone Swarms with Knowledge Distillation",
      "summary": "Drone swarms are increasingly deployed in critical applications such as surveillance, disaster response, and infrastructure monitoring. However, their reliance on open communication channels and their limited computational resources make them vulnerable to a wide range of cyber-threats. There is a growing interest in intrusion detection systems (IDS) specifically designed for drone environments and operations. However, the conventional solutions including Machine Learning (ML)-based approaches r",
      "authors": "Fawaz J. Alruwaili, Cihan Tunc",
      "category": "research",
      "topics": "privacy-surveillance,military-security,environment",
      "published_at": "2026-07-19T01:57:47.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/12243"
    },
    {
      "id": 12244,
      "url": "https://arxiv.org/abs/2607.16620v1",
      "title": "Privacy Cost as Equity Input: A Group Fairness Criterion for Differentially Private Machine Learning",
      "summary": "Differential privacy (DP) is increasingly deployed to limit membership inference risk in machine-learning systems. Prior work has shown that DP-SGD can widen accuracy disparities across demographic groups, but this framing treats fairness as a purely outcome-side concern. We argue that privacy cost, the information leakage borne by each group, is itself a form of harm, and adopt a compensatory-fairness framework in which a group that involuntarily bears greater privacy exposure is owed proportio",
      "authors": "Rakshit Naidu",
      "category": "research",
      "topics": "bias-fairness,privacy-surveillance",
      "published_at": "2026-07-18T03:41:01.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/12244"
    },
    {
      "id": 11863,
      "url": "https://arxiv.org/abs/2607.15970v1",
      "title": "Code-Poisoning Property Inference Attacks",
      "summary": "The flourishing code hosting platforms and coding agents enable even beginners with private data to build tailored Machine Learning (ML) models using available code quickly. The training data for ML models, often regarded as private property (e.g., clinical records, transaction information), is at significant risk of information leakage. Property Inference Attacks (PIAs), as a significant type of privacy attack, aim to expose global property information of the training set. In this paper, we pre",
      "authors": "Xukun Luan, Yuhui Gong, Gang Zhang, Zixuan Huang, Yuanguo Bi, Xuesong Li, Jinyan Liu",
      "category": "research",
      "topics": "privacy-surveillance,healthcare,agents-autonomy",
      "published_at": "2026-07-17T14:04:59.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/11863"
    },
    {
      "id": 3010,
      "url": "https://arxiv.org/abs/2607.11095v1",
      "title": "When cheap gradients fail: the measurement cost of attacking quantum classifiers",
      "summary": "Adversarial perturbations threaten machine learning classifiers, including variational quantum classifiers. We show that finite quantum measurement statistics (shot noise) act as a built-in defense against gradient-based test-time attacks whose cost scales unfavorably for the attacker. Because every gradient component must be inferred from repeated circuit executions under any unbiased gradient-estimation rule, white-box extraction consumes a dimension-dependent measurement budget that measureme",
      "authors": "Bacui Li, Chandra Thapa, Tansu Alpcan, Udaya Parampalli",
      "category": "research",
      "topics": "military-security",
      "published_at": "2026-07-13T05:03:41.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/3010"
    },
    {
      "id": 3013,
      "url": "https://arxiv.org/abs/2607.10451v1",
      "title": "Threat Vectors and the State of the Art in Defense Methods for Security in Neurotechnology",
      "summary": "Brain-computer interfaces (BCIs) are a class of diverse hardware modalities, associated software, and connected devices which are widely used in a variety of fields, including neurosurgery, biomedical data analysis, and neuroimaging. Recent years have seen rapid advancements in BCI technology, and neurotechnology more broadly, with the first devices now passing clinical trials, early examples of consumer hardware entering the market, and many variants of consumer and medical hardware with increa",
      "authors": "Bryce-Allen Bagley, Nathaniel Rose, Quintus Kilbourn, Matthew Canham",
      "category": "research",
      "topics": "healthcare,military-security",
      "published_at": "2026-07-11T19:28:34.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/3013"
    },
    {
      "id": 10173,
      "url": "https://arxiv.org/abs/2607.09659v1",
      "title": "Impact of Benign Connectivity Variations on Intrusion Detection for Encrypted OPC UA Traffic in Industrial Private 5G Networks",
      "summary": "Machine learning (ML)-based intrusion detection systems (IDSs) are increasingly used to monitor encrypted industrial communication. However, their behavior under realistic private 5G operating conditions remains insufficiently understood. This paper investigates the impact of benign connectivity variations on ML-based IDSs for encrypted Open Platform Communications Unified Architecture (OPC UA) traffic in industrial private 5G networks. Experimental results show that legitimate connectivity even",
      "authors": "Song Son Ha, Florian Foerster, Henry Beuster, Tim Kittel, Dominik Merli, Gerd Scholl",
      "category": "research",
      "topics": "finance-investment",
      "published_at": "2026-07-10T17:58:55.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/10173"
    },
    {
      "id": 14460,
      "url": "https://arxiv.org/abs/2607.07471v2",
      "title": "Where to Intervene? Benchmarking Fairness-Aware Learning on Differentially Private Synthetic Tabular Data",
      "summary": "Machine learning models are increasingly deployed in high-stakes domains, raising concerns about both privacy and fairness. Differential Privacy (DP) has become a gold standard for privacy-preserving data analysis, while fairness-aware mechanisms aim to mitigate discrimination against underrepresented groups. However, these objectives can conflict: DP often amplifies disparities across demographic groups, and little is known about whether established fairness interventions remain effective under",
      "authors": "Vinícius Gabriel Angelozzi, Héber H. Arcolezi",
      "category": "research",
      "topics": "bias-fairness,privacy-surveillance",
      "published_at": "2026-07-08T14:33:00.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/14460"
    },
    {
      "id": 3019,
      "url": "https://arxiv.org/abs/2607.06860v1",
      "title": "Auditable Machine Unlearning for Privacy-Compliant Ransomware Detection Using Multi-Shard SISA and Deep Reinforcement Learning",
      "summary": "Ransomware poses an escalating cybersecurity threat as attackers continuously modify behavioral patterns to evade static defenses. Although existing machine learning-based detectors often achieve strong predictive performance, they generally assume fixed training data and do not support the selective removal of previously learned samples. This limitation conflicts with privacy regulations such as the GDPR and CCPA, which require the removal of sensitive user data upon request. To address this ch",
      "authors": "Jannatul Ferdous, Rafiqul Islam, Md Zahidul Islam",
      "category": "research",
      "topics": "regulation,privacy-surveillance,transparency",
      "published_at": "2026-07-07T23:23:52.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/3019"
    },
    {
      "id": 3022,
      "url": "https://arxiv.org/abs/2607.06612v1",
      "title": "PRoVeFL: Private Robust and Verifiable Aggregation in Federated Learning",
      "summary": "Federated Learning (FL) enables multiple clients to collaboratively train machine learning models while retaining data locality, thereby enhancing user privacy. However, traditional FL frameworks rely on a centralized aggregation server and assume honest-but-curious clients, making them susceptible to both server-side inference and client-side poisoning attacks. Although recent work has explored secure and Byzantine-resilient FL protocols, they face a fundamental trade-off among privacy, integri",
      "authors": "Harsh Kasyap, Anil Kumar Pradhan, Ugur Ilker Atmaca, Graham Cormode, Carsten Maple",
      "category": "research",
      "topics": "privacy-surveillance",
      "published_at": "2026-07-07T07:10:43.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/3022"
    },
    {
      "id": 3025,
      "url": "https://arxiv.org/abs/2607.04958v1",
      "title": "Look-Ahead-Freedom as Temporal Non-Interference: A Verifiable Correctness Property for Backtesting and Agentic Trading Pipelines",
      "summary": "Look-ahead bias (using information from after a decision epoch to make the decision at that epoch) is the dominant way a backtest or a machine-learning evaluation flatters a system that will disappoint in deployment. The field manages it with construct-specific recipes and empirical detectors, which are sound only channel by channel and certify nothing by their silence. We show that look-ahead-freedom is a formal property in disguise: fixing an epoch, the demand that the future not influence the",
      "authors": "Xavier Fonseca",
      "category": "research",
      "topics": "bias-fairness,agents-autonomy",
      "published_at": "2026-07-06T11:42:26.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/3025"
    },
    {
      "id": 3027,
      "url": "https://arxiv.org/abs/2607.03215v1",
      "title": "Builder, Defender, Breaker: The Case Against Removing the Human from the AI-Driven Security Lifecycle",
      "summary": "Artificial intelligence has spread across the whole of the security lifecycle. The same family of models now writes application code, hardens it, and probes it for weaknesses, so that a single generative substrate increasingly performs all three roles at once. Enthusiasm for this convergence tends to treat full autonomy as the natural end point of partial assistance. This article argues that it is not. When the system that builds an artifact is drawn from the same distribution as the systems tha",
      "authors": "Mohamed Chahine Ghanem",
      "category": "research",
      "topics": "agents-autonomy",
      "published_at": "2026-07-03T11:29:44.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/3027"
    },
    {
      "id": 3029,
      "url": "https://arxiv.org/abs/2607.02187v1",
      "title": "Privacy-Preserving and Verifiable Approximate Distributed Coded Computing",
      "summary": "Distributed machine learning enables collaborative model training without centralizing data, but it also exposes learning processes to privacy leakage and malicious manipulation. Existing defenses typically address these threats in isolation and are often tailored to specific learning paradigms or model architectures, limiting their applicability in realistic deployments. In particular, federated learning and decentralized learning exhibit distinct adversarial surfaces that are rarely addressed ",
      "authors": "Xavier Martínez-Luaña, Alba Gude-Santos, Manuel Fernández-Veiga, Rebeca P. Díaz-Redondo",
      "category": "research",
      "topics": "privacy-surveillance",
      "published_at": "2026-07-02T13:57:32.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/3029"
    },
    {
      "id": 3032,
      "url": "https://arxiv.org/abs/2607.01356v1",
      "title": "Chameleon: Recovering Cyber-Physical Systems from Memory Corruption Attacks via ML Surrogates",
      "summary": "Cyber-physical systems (CPSs) are increasingly deployed in every aspect of our lives and can be compromised through memory corruption vulnerabilities, allowing attackers to hijack the control flow and take over the system. Existing techniques mostly focus on detecting such attacks but respond by terminating or halting execution upon attack detection, which is not acceptable in CPSs used in safety-critical tasks, as interrupted tasks can have catastrophic consequences. Other techniques replace co",
      "authors": "Mohsen Salehi, Karthik Pattabiraman",
      "category": "research",
      "topics": "military-security",
      "published_at": "2026-07-01T18:14:23.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/3032"
    },
    {
      "id": 3036,
      "url": "https://arxiv.org/abs/2607.01305v1",
      "title": "Generative AI and Federated Learning for Intrusion Detection Systems: A Survey",
      "summary": "Intrusion Detection Systems (IDSs) are essential for monitoring network traffic and identifying malicious activities in modern cyber-physical, Internet of Things (IoT), enterprise, and distributed network environments. However, developing reliable IDS models remains challenging because attack behaviors evolve over time, realistic datasets are difficult to obtain, traffic records may be incomplete, attack classes are often imbalanced, and privacy constraints limit centralized data collection. Rec",
      "authors": "Jiefei Liu, Abu Saleh Md Tayeen, Pratyay Kumar, Qixu Gong, Wenbin Jiang, Huiping Cao, Satyajayant Misra, Jayashree Harikumar",
      "category": "research",
      "topics": "privacy-surveillance,military-security,environment",
      "published_at": "2026-07-01T16:37:49.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/3036"
    },
    {
      "id": 3040,
      "url": "https://arxiv.org/abs/2607.00763v1",
      "title": "Forensic-Oriented Intrusion Detection Using Synthetic Network Traffic Data and Explainable Artificial Intelligence",
      "summary": "Digital forensic investigations of network intrusions require analytical outputs that are traceable, reproducible, and court-defensible - requirements existing machine learning pipelines do not satisfy, since they treat original evidence as training data and produce opaque classifications without instance-level justification. This paper presents a forensic-oriented intrusion detection framework resolving both problems simultaneously, integrating synthetic data generation, binary classification, ",
      "authors": "Jose Luis Vela Alonso, Carmen Pellicer",
      "category": "research",
      "topics": "transparency,finance-investment",
      "published_at": "2026-07-01T10:47:19.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/3040"
    },
    {
      "id": 3044,
      "url": "https://arxiv.org/abs/2606.31594v1",
      "title": "Comparative Analysis of Machine Learning based Intrusion Detection in Realistic IoT Networks",
      "summary": "The Internet of Things (IoT) is rapidly growing and expanding into various sectors, such as healthcare, transportation, smart homes, and more. Despite the benefits of using IoT devices, they present several challenges. Given the significant role these devices play in our lives, it is crucial to address issues related to their security and privacy. These devices are limited in resources, which complicates their security and the protection of the data that they manage. The paper aims to examine in",
      "authors": "Rana Alharbi, Chuadhry Mujeeb Ahmed",
      "category": "research",
      "topics": "privacy-surveillance,healthcare",
      "published_at": "2026-06-30T12:43:25.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/3044"
    },
    {
      "id": 3047,
      "url": "https://arxiv.org/abs/2606.30586v1",
      "title": "A Hybrid Framework For Crypto-Ransomware Detection In Enterprise Shared Storage",
      "summary": "Most corporate workplace environments enforce policies and technical controls that limit the storage of sensitive data on client endpoints. Consequently, ransomware operators have evolved variants that expand their attack surface from local systems to network drives and shared storage resources. As traditional endpoint detection mechanisms focus primarily on local system behaviour, a compromised client can impact remote file servers, such as by encrypting shared data, without directly triggering",
      "authors": "Gervais Hatungimana, Abdun Naser Mahmood, Mohammad Jabed Morshed Chowdhury",
      "category": "research",
      "topics": "environment",
      "published_at": "2026-06-29T17:30:51.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/3047"
    },
    {
      "id": 3051,
      "url": "https://arxiv.org/abs/2606.29797v1",
      "title": "Multi-Level Distributional Entropy for Explainable Network Intrusion Detection",
      "summary": "Machine learning network intrusion detection systems (IDS) rely on aggregate flow statistics that discard distributional structure, while established entropy measures require raw packet sequences unavailable in pre-aggregated flow datasets. We propose Multi-Level Distributional Entropy (MDE), an analytical framework that derives interpretable entropy features directly from flow-level summary statistics at three levels: within-flow Gaussian differential entropy, cross-directional Jensen-Shannon d",
      "authors": "Mohamed Aly Bouke, Md Shohel Sayeed, Swee-Huay Heng, Azizol Abdullah, Mohamed Othman",
      "category": "research",
      "topics": "transparency",
      "published_at": "2026-06-29T05:19:21.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/3051"
    },
    {
      "id": 3053,
      "url": "https://arxiv.org/abs/2606.28929v1",
      "title": "Cybersecurity is the True Frontier for Generative AI Success or Failure",
      "summary": "Cybersecurity is a real-life test-bed for many machine learning problems at once, especially when considering modern strides in using Large Language Models (LLMs) to automate processes as ``agents.'' Cybersecurity workflows require orchestrating hundreds of standard and bespoke tools through various formats. The scale of cybersecurity data is enormous; for example, a single malware sample can be viewed as a sequence of billions of tokens. The cost of labeling any file by experts is enormous and ",
      "authors": "Edward Raff, Maor Ashkenazi, Sagar Samtani, David J. Elkind, Sven Krasser",
      "category": "research",
      "topics": "agents-autonomy",
      "published_at": "2026-06-27T14:03:47.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/3053"
    },
    {
      "id": 3055,
      "url": "https://arxiv.org/abs/2606.26036v1",
      "title": "Detect, Unlearn, Restore: Defending Text Summarization Models Against Data Poisoning",
      "summary": "Training-time data poisoning during fine-tuning poses a significant threat to large language models (LLMs) deployed for abstractive text summarization, where small task-specific datasets exert disproportionate influence on model behavior. In this setting, adversaries manipulate fine-tuning data to induce persistent summarization failures, such as biased or harmful summaries, while preserving standard evaluation metrics. We present a unified post-hoc defense framework for detecting and remediatin",
      "authors": "Poojitha Thota, Shirin Nilizadeh",
      "category": "research",
      "topics": "bias-fairness,military-security",
      "published_at": "2026-06-24T17:12:42.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/3055"
    },
    {
      "id": 3058,
      "url": "https://arxiv.org/abs/2606.25788v1",
      "title": "Can Machine Learning Break Wi-Fi Privacy? A Study on MAC Address Randomization",
      "summary": "Medium Access Control (MAC) address randomization has been widely adopted during the IEEE 802.11 network discovery phase as a countermeasure against passive tracking. This paper exposes vulnerabilities in these privacy protocols by demonstrating that devices remain identifiable using Machine Learning (ML)-based fingerprinting. To study the potential tracking capabilities of a passive attacker, we evaluate different eavesdropping scenarios and configurations. To this end, we extract unencrypted h",
      "authors": "Marta Puig, Costas Michaelides, Lucia Pintor, Boris Bellalta, Francesc Wilhelmi",
      "category": "research",
      "topics": "privacy-surveillance",
      "published_at": "2026-06-24T13:07:05.000Z",
      "source": "arXiv cs.CR (AI security)",
      "ethics_ai_record_url": "https://ethics.ai/record/3058"
    }
  ],
  "attribution": "via ethics.ai"
}