Skip to content

Author

Giulio Zizzo

We have 2 of 45 papers

We haven’t gathered this author’s papers yet. Follow them and we’ll fetch their work.

Not the right person? Other researchers publish under this name.

Open access May 2024

Certified Adversarial Robustness of End-to-End Malware Detectors via (De)Randomized Smoothing

A novel deterministic certification schema based on (de)randomized smoothing that guarantees that each chunk either contains or does not contain an adversarial perturbation, enabling it to handle manipulations occurring at arbitrary locations within the program and compute deterministic estimates of the perturbation magnitude required to evade detection.

Daniel Gibert, Luca Demetrio, Giulio Zizzo et al. · 4 citations

Breaking MCP with Function Hijacking Attacks: Novel Threats for Function Calling and Agentic Models

A novel function hijacking attack (FHA) that manipulates the tool selection process of agentic models to force the invocation of an attacker-chosen function and is largely agnostic to the context semantics and remains effective across domains and function sets.

Yannis Belkhiter, Giulio Zizzo, Sergio Maffeis et al. · 1 citation

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.