{"id":5765,"date":"2026-09-10T13:34:40","date_gmt":"2026-09-10T20:34:40","guid":{"rendered":"https:\/\/www.hmc.edu\/calendar\/?post_type=event&#038;p=5765"},"modified":"2026-09-10T13:34:40","modified_gmt":"2026-09-10T20:34:40","slug":"cs-colloquium-from-prompts-to-silicon-security-and-privacy-threats-across-the-llm-stack-nael-abu-ghazaleh","status":"publish","type":"event","link":"https:\/\/www.hmc.edu\/calendar\/events\/cs-colloquium-from-prompts-to-silicon-security-and-privacy-threats-across-the-llm-stack-nael-abu-ghazaleh\/","title":{"rendered":"CS Colloquium\u2013 \u201cFrom Prompts to Silicon: Security and Privacy Threats Across the LLM Stack,\u201d Nael Abu-Ghazaleh"},"content":{"rendered":"<p>Large language models are now trusted with sensitive data, embedded in consequential decision pipelines, and are hosted on shared, expensive hardware. These factors make them an increasingly attractive target, and not just at the level of what you type into a chat box. In this talk, we&#8217;ll go on a tour of LLM security and privacy threats, organized around a simple question, looking at different classes of attacks based on attackers&#8217; access points.<\/p>\n<p>Abu-Ghazaleh starts where most people think LLM security lives: at the prompt itself, showing how attackers with malicious intent can bypass the model\u2019s safety training. A second group of attacks targets training time, where an attacker who controls even a small slice of a model&#8217;s training data can plant hidden behaviors that surface only later, including those that enable leaking private information or undermining the safety alignment of the model. Finally, Abu-Ghazaleh goes below the model entirely, to the hardware it runs on: his recent work shows the GPU infrastructure powering today\u2019s LLMs leaks information across users who are supposed to be strongly isolated from each other. Taken together, these attacks show that LLM security isn\u2019t one problem but several, spread across different layers of the stack, including inference time, training time, and hardware and system vulnerabilities. Abu-Ghazaleh closes with where he thinks the most promising defenses lie, and the open questions.<\/p>\n<div id=\"attachment_5771\" style=\"width: 210px\" class=\"wp-caption alignright\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-5771\" class=\"wp-image-5771 size-medium\" src=\"https:\/\/www.hmc.edu\/calendar\/wp-content\/uploads\/sites\/39\/2026\/09\/Unknown-1-200x300.jpeg\" alt=\"Abu-Ghazaleh\" width=\"200\" height=\"300\" srcset=\"https:\/\/www.hmc.edu\/calendar\/wp-content\/uploads\/sites\/39\/2026\/09\/Unknown-1-200x300.jpeg 200w, https:\/\/www.hmc.edu\/calendar\/wp-content\/uploads\/sites\/39\/2026\/09\/Unknown-1.jpeg 600w\" sizes=\"auto, (max-width: 200px) 100vw, 200px\" \/><p id=\"caption-attachment-5771\" class=\"wp-caption-text\">\u00a0<\/p><\/div>\n<h2>Speaker<\/h2>\n<p>Nael Abu-Ghazaleh is a professor in the Computer Science and Engineering Department at the University of California, Riverside. His research is in architecture and system security, and security for emerging systems. He has published over 250 papers in these areas, several of which have been recognized with best paper awards or nominations. His offensive security research has resulted in the discovery of several new attacks on CPUs and GPUs that have been disclosed to companies including Intel, AMD, ARM, Apple, Microsoft, Google and Nvidia, and resulted in patches and modifications to products, and coverage from technical news outlets. He is a member of the Micro Hall of Fame, an ACM distinguished member, an IEEE distinguished speaker and an IEEE Computer Society Distinguished Contributor.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Large language models are now trusted with sensitive data, embedded in consequential decision pipelines, and are hosted on shared, expensive [&hellip;]<\/p>\n","protected":false},"author":185,"featured_media":0,"template":"","class_list":["post-5765","event","type-event","status-publish","hentry","event-categories-faculty","event-categories-staff","event-categories-students"],"acf":[],"_links":{"self":[{"href":"https:\/\/www.hmc.edu\/calendar\/wp-json\/wp\/v2\/event\/5765","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.hmc.edu\/calendar\/wp-json\/wp\/v2\/event"}],"about":[{"href":"https:\/\/www.hmc.edu\/calendar\/wp-json\/wp\/v2\/types\/event"}],"author":[{"embeddable":true,"href":"https:\/\/www.hmc.edu\/calendar\/wp-json\/wp\/v2\/users\/185"}],"wp:attachment":[{"href":"https:\/\/www.hmc.edu\/calendar\/wp-json\/wp\/v2\/media?parent=5765"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}