Nils Lukas
Assistant Professor • MBZUAI • Abu Dhabi, UAE
Updated on July 26, 2026
Research Interests
Design secure and private AI agents in the presence of untrustworthy providers, data, models, and users.
- Providers: Confidential computing & encrypted inference.
- Data: Poisoning, prompt injection & training-data privacy.
- Models: Scalable oversight & differentially private inference.
- Users: Detect misuse via watermarking & safety monitoring.
Research Grants
Awarded$1,458,000
United Al-Saqer Group MedBoard: Privacy-preserving Multi-Agent AI for Healthcare
$136,000 · 2026
IAAI Research Program Trust Layer for Safe Smallholder Advisory
$500,000 · 2026
Amazon Research Awards – Special Call AdvSim2Real: Robustifying Agents in Simulated Adversarial Environments
$100,000 · 2025
Etihad Airways Conversational Booking Agents
$450,000 · 2025
United Al-Saqer Group Privacy-preserving Brain–Computer Interfaces
$136,000 · 2025
TII Funding GFlowNets for Fuzzing of Agentic Applications
$136,000 · 2025
Conference Publications
Underlined authors are students and postdocs I supervise as primary advisor.
PostDocs, Students
Postdoctoral Researchers
- Samuele Poppisince 2025
- Kshitij Mishra (secondary: Martin Takáč & Salem Lahlou)since 2025
- Dushyant Chauhan (secondary: Martin Takáč & Salem Lahlou)since 2025
- Yuhan Liu (secondary: Martin Takáč & Salem Lahlou)since 2025
Research Engineers
- Sarim Hashmisince 2025
PhD Students
- Fabian Zhang (ML)since 2025
- Tair Djanibekov (NLP)since 2025
- Rushil Thareja (NLP) (secondary: Praneeth Vepakomma)since 2024
- Toluwani Aremu (ML)since 2023
MSc Students
- Juan Nicolas Sepulveda Arias (CV)since 2025
- Mohamed Mahmoud Mohamed Hendy (ML)since 2025
- Majid Mohamed Mohamed Sulaiman Ibrahim (ML)since 2025
- Prince Jha (ML) (primary: Salem Lahlou)since 2025
- Muhammad Mohideen (CV) (secondary: Samuel Horvath)since 2025
Alumni
- Tameem Bakr (ML)MSc · Mar 2026
- Shaikha Jasem Mohamed Ismail Alhosani (ML)MSc · Mar 2026
- Maryam Abdulla Rashed Abdulla Alshamsi (ML)MSc · Mar 2026
- Maryam Alshehyari (ML)MSc · Mar 2026
- Abdalla Khalid Mohamed Abdalla Alzaabi (ML)MSc · Mar 2026
- Ali Al-Ali (ML)MSc · Mar 2026
Talks & Keynotes
AI Safety Workshop: Alignment, Oversight and Deception
- ADIA Lab & UGR Summer School, Granada2026
The Role of Watermarking for ML Security
- CyberQ, UAE Cyber Security Council & TII, Abu Dhabi2025
Adaptively Robust and Forgery-Resistant Watermarking
- Meta (FAIR), hosted by Hady Elsahar2025
- International Symposium on Trustworthy Foundation Models, MBZUAI2025
Emerging Topics in Machine Learning
- Build with AI, Google Developer Groups, Abu Dhabi2025
Optimizing Adaptive Attacks against Content Watermarks
- DeepMind, hosted by David Stutz2024
- University of California, Berkeley, hosted by Dawn Song2024
Analyzing Leakage of Personal Information in Language Models
- Microsoft M365, hosted by Robert Sim2024
- Meta, hosted by Will Bullock2023
- MongoDB, hosted by Marilyn George and Archita Agarwal2023
How Reliable is Watermarking for Image Generators?
- Google, hosted by Somesh Jha2023
- University of California, Berkeley, hosted by Dawn Song2023
Keynotes
- Aviation Future Week, hosted by Emirates, Dubai2024
- Cyber Energy Leadership Forum, Abu Dhabi2024
Honors & Awards
Amazon Research Award [100,000 USD]2025
First Place at the NeurIPS'24 Watermarking Competition [4,400 USD]2024
First Place at DGE Elite Hackathon, GITEX'24 [10,900 USD]2024
Top Mathematics Doctoral Thesis, University of Waterloo [1,080 USD]2024
Alumni Gold Medal, One PhD Award Yearly, University of Waterloo2024
Best Poster Award, Sponsored by David R. Cheriton [220 USD]2023
Distinguished Contribution Award, Microsoft MLADS conference2023
David R. Cheriton Scholarship, University of Waterloo [14,400 USD]2022, 2023
Outstanding Reviewer, ICML'222022
Best Poster Award, Sponsored by Rogers [720 USD]2019
Workshop Papers
Sanitizing Medical Documents with Differential Privacy using Large Language Models
Working Papers
Journal Publications
Service
Area Chair
- AAAI Conference on Artificial Intelligence (AAAI), Senior Program Committee2027
- Neural Information Processing Systems (NeurIPS)2026
- International Conference on Learning Representations (ICLR)2026
- International Conference on Machine Learning (ICML)2026
Program Committee
- ACM Conference on Computer and Communications Security (CCS)2025
- IEEE Symposium on Security and Privacy (IEEE S&P)2025–2027
- Recent Advances in Intrusion Detection (RAID)2024
Artifact Evaluation Committee
- The ACM Conference on Computer and Communications Security (CCS)2023, 2024
Reviewer
- European Conference on Computer Vision (ECCV)2026
- Conference on Language Modeling (COLM)2026
- British Machine Vision Conference (BMVC)2026
- FAGEN Workshop @ ICML2026
- Workshop on GenAI Watermarking (WMark @ ICLR)2025
- NETYS2025
- ACM TheWebConf (WWW)2025
- International Conference on Learning Representations (ICLR)2024, 2025
- International World Wide Web Conference (TheWebConf)2024
- Recent Advances in Intrusion Detection (RAID)2023
- Neural Information Processing Systems (NeurIPS)2022, 2023
- International Conference on Machine Learning (ICML)2022, 2025
- The Conference on Information and Knowledge Management (CIKM)2020
Journal Reviewer
- Communications of the ACM (CACM)2025
Other
- External Examiner, PhD Dissertation, CISPA Helmholtz Center for Information Security2026
- Faculty Search Committee, Machine Learning Department at MBZUAI2025–2026
- Chair for the invited faculty talk program, International Symposium on Trustworthy Foundation Models at MBZUAI2025
- Admission's Committee, MBZUAI Machine Learning Department2025
- Student Board Member, Cybersecurity and Privacy Institute2022–2024
- Session Chair, IEEE Symposium on Security and Privacy (S&P)2023
- Sub-Reviewer, Proceedings on Privacy Enhancing Technologies (PETS)2021–2023
- School Advisory Committee on Appointments Liaison, CrySP Lab2022
- Organization, Workshop on Semantic Web Solutions for Large-Scale Biomedical Data Analytics (SeWeBMeDA)2018
Teaching
Instructor, MBZUAI, UAE
- ML8502: Machine Learning Security (14 weeks)2025, 2026
- ML8509: Collaborative Machine Learning (w/ S. Horvath)2026
- ML807: Federated Learning (7 weeks)2025
- ML818: Emerging Topics in Trustworthy Machine Learning (4 weeks)2024
Teaching Assistant, University of Waterloo, Canada
- CS458/658: Computer Security and Privacy2020, 2021
- CS246 – Object Oriented Programming2021
Co-Instructor, RWTH-Aachen, Germany
- Course: Data-driven Medicine2018
Education
University of Waterloo, Canada2019 – 02/2024
Ph.D. in Computer Science
- Advisor: Florian Kerschbaum
- Thesis: Analyzing Threats of Large-Scale Machine Learning Systems
- Thesis Awards: Top Mathematics Doctoral Prize & Alumni Gold Medal
RWTH-Aachen, Germany
M.Sc. in Computer Science (w/Distinction)2016 – 2018
B.Sc. in Computer Science10/2012 – 2016
Work Experience
Assistant Professor, MBZUAI, Abu Dhabi, UAEsince 08/2024
Research Intern, Royal Bank of Canada, Borealis AI, Toronto2024
- Vertical Federated Learning, hosted by Kevin Wilson
Research Intern, Microsoft Research, Cambridge, UK2022
- Privacy for Language Models, hosted by Shruti Tople & Lukas Wutschitz
Research Assistant, RWTH-Aachen, Aachen2014 – 2018
Student Researcher, DSA Daten- und Systemtechnik GmbH, Aachen2016
Software Engineer Intern, A.R. Bayer DSP Systeme GmbH, Düsseldorf2012