AI Privacy and Security

We are surrounded by artificial intelligence. We have AI in our phones, in our computers, in our homes, in our cities, in an increasingly interconnected reality. We use AI to save time and make more accurate and automated decisions in many applications from healthcare to finance to policing to hiring. While this has brought amazing advancements, it has been shown, and there have been several headlines in the news about it, that AI may not be secure and may cause privacy violations. We need to ensure that AI treats us humans, and our data, fairly and safely, if we are to trust AI systems.

We are developing techniques for secure and privacy-respecting AI, particularly taking a human-centred approach, so that anyone, regardless of their knowledge of AI, could feel safe and in control when using it. We mainly focus on security and privacy in systems that use or embed AI, from voice-based or text-based AI Assistants (like ChatGPT, Gemini, Alexa, and Siri) to other types of Autonomous Systems and automated decision-making systems.

Related Projects
  • Secure AI Assistants (EPSRC) - SAIS
  • National Research Centre on Privacy, Harm Reduction and Adversarial Influence Online (UKRI) - REPHRAIN
  • Evaluating third-party smart home assistant developers (ICO) - link

Selected Publications

  1. Usenix SEC
    Malicious LLM-Based Conversational AI Makes Users Reveal Personal Information
    Xiao Zhan, Juan-Carlos Carrillo, William Seymour, and Jose Such
    In USENIX Security Symposium (SEC), 2025
  2. ICML
    CASE-Bench: Context-Aware Safety Evaluation Benchmark for Large Language Models
    Guangzhi Sun, Xiao Zhan, Shutong Feng, Philip C. Woodland, and Jose Such
    In Proceedings of the International Conference on Machine Learning (ICML), 2025
  3. CHI
    Privacy Perceptions of Custom GPTs by Users and Creators
    Rongjun Ma, Caterina Maidhof, Juan Carlos Carrillo, Janne Lindqvist, and Jose Such
    In Proceedings of the Conference on Human Factors in Computing Systems (CHI), 2025
  4. Usenix SEC
    Voice Application Developer Experiences with Alexa and Google Assistant: Juggling Risks, Liability, and Security
    William Seymour, Noura Abdi, Kopo Ramokapane, Jide Edu, Guillermo Suarez-Tangil, and Jose Such
    In USENIX Security Symposium (SEC), 2024
  5. CHI
    Legal Obligation and Ethical Best Practice: Towards Meaningful Verbal Consent for Voice Assistants
    William Seymour, Mark Coté, and Jose Such
    In Proceedings of the ACM Conference on Human Factors in Computing Systems (CHI), 2023
  6. TIFS
    MalProtect: Stateful Defense Against Adversarial Query Attacks in ML-Based Malware Detection
    Aqib Rashid and Jose Such
    IEEE Transactions on Information Forensics and Security (TIFS), 2023
  7. ECAI
    Privacy-enhanced Personal Assistants based on Dialogues and Case Similarity
    Xiao Zhan, Stefan Sarkadi, and Jose Such
    In Proceedings of the European Conference on Artificial Intelligence (ECAI), 2023
  8. CHI
    Privacy Norms for Smart Home Personal Assistants
    Noura Abdi, Xiao Zhan, Kopo Ramokapane, and Jose Such
    In Proceedings of the ACM Conference on Human Factors in Computing Systems (CHI), 2021
  9. IJCAI
    Privacy and Autonomous Systems
    Jose Such
    In Proceedings of the International Joint Conference on Artificial Intelligence (IJCAI), 2017
  10. KER
    A survey of privacy in multi-agent systems
    Jose Such, Agustin Espinosa, and Ana Garcia-Fornes
    The Knowledge Engineering Review, 2014
See more related publications in our Publications page.