I am a second year doctoral security researcher at the CISPA Helmholtz Center for Information Security in Lea Schönherr's group.
My research interests center on the security and privacy implications of modern machine learning systems, with a particular emphasis on adversarial machine learning.
I conducted research on this topic during my master's degree at the chair for Systems Security at the Horst Görtz Institute for IT Security under the supervision of Thorsten Eisenhofer.
During this time, I was part of the DFG Cluster of Excellence “Cyber Security in the Age of Large-Scale Adversaries“ (CASA).
The projects revolved around Adversarial Attacks against Image Classification Models, Data Poisoning Attacks that
exploit non-robust features in data, Mixed Boolean-Arithmetic deobfuscation using Graph Neural Networks, and more
recently attacks and defenses for Large Language Models.
Before that, I was working on Hardware Reversing for Machine Learning Cores on FPGA's in the Embedded Security Group of Christof Paar at the Max Planck Institute for Security and Privacy.
I obtained both my B.Sc. and M.Sc. in Computer Science from Ruhr University Bochum, where my studies were also primarily focused on machine learning. For my master's studies, I was awarded best student in the graduating class. My master's thesis was additionally awarded for outstanding academic performance at the annual academic celebration of the Ruhr University Bochum.
During my master's degree, I spent a semester abroad at the University of Tsukuba in Japan, where I joined Kazuhiro Fukui and his group at the Computer Vision Lab.
Together with the Université Grenoble Alpes, and the Ruhr University Bochum, we organized a joint research workshop on the topic of "Computer Science and Artificial Intelligence". I co-chaired the workshop for the German side.
For questions, discussions, or collaborations, feel free to contact me!
Publications
2026
Jonathan Evertz, Niklas Risse, Nicolai Neuer, Andreas Müller, Philipp Normann, Gaetano Sapia, Srishti, Gupta, David Pape, Soumya Shaw, Devansh Srivastav, Christian Wressnegger, Erwin Quiring, Thorsten Eisenhofer, Daniel Arp, Lea Schönherr
Chasing Shadows: Pitfalls in LLM Security Research
Network and Distributed Systems Security Symposium (NDSS) (to appear)
[pdf]
[arXiv]
[code]
2024
Teaching
Teaching Assistant
Trustworthy Generative Machine Learning, Saarland University
Bachelor/Master・Seminar・Summer 2024
Trustworthy Machine Learning, Hamburg University
Bachelor/Master・Lecture・Summer 2025
Reviewing
AdvML-Frontiers Workshop (NeurIPS), 2024
AISec Workshop (CCS), 2025
Personal Stuff
In my spare time—when I am not tinkering on computers—I enjoy various sports,
photography and cooking/baking.
I am a passionate swimmer and have been active in the
German Lifeguard Association (DLRG) since 2009, but I also enjoy running, hiking, and calisthenics.