Keynote

Turning the attacker's toolbox into a standardised instrument of AI assurance

Prof. Mohammad Hammoudeh(Saudi Arabia)

Machine-learning models are entering telecommunications infrastructure faster than the means to assure them. Standard benchmarks report average-case accuracy, but the quantity that governs trustworthiness in critical networks is worst-case behaviour under a deliberate adversary. This talk reframes adversarial AI — evasion, poisoning, extraction, and inversion — not as a threat to be excluded but as the basis of a rigorous testing discipline: the crash-test laboratory of the AI era. It surveys how adversarial perturbations degrade model resilience and correctness, then develops the practical machinery of assurance — adversarial test-case generation, reusable test scripts, and shared testbeds — and argues that the missing ingredient is a conformance-grade verdict: a reproducible, statistically calibrated, budget-parameterised accept/reject decision. It closes with the ethics of dual-use testing.

About the speaker

Mohammad Hammoudeh avatar

Prof. Mohammad Hammoudeh

Saudi Arabia
  • Aramco Cybersecurity
    Chair Professor

Mohammad Hammoudeh is the Aramco Cybersecurity Chair Professor and an internationally recognised, award-winning expert in cybersecurity. His work focuses on developing quantum-resilient architectures and AI-powered defence mechanisms to protect critical national infrastructure, with a particular emphasis on the security of operational technology (OT) and quantum-safe cryptography. His mission is to fortify industrial control systems against emerging and next-generation cyber threats. Dr. Hammoudeh is the Founding Editor-in-Chief of ACM’s Distributed Ledger Technologies journal.