We are pleased to announce the 2026 CyLab Partners Conference!

All main events and presentations will be held on the Carnegie Mellon University Campus in the Rangos Ballroom at the Jared L. Cohon University Center.

The CyLab Annual Partners Conference highlights the latest research in security and privacy with an interactive forum between faculty, students, and industry. We are excited to welcome our guests back to campus for this year’s two-day event, which will include more than 30 faculty and student presentations. All sessions will consist of brief talks, followed by active dialogue with our attendees.

Attendance is limited to invited guests, representatives of CyLab's partners, and CMU CyLab faculty, staff, and students.

If you have any questions regarding the 2026 CyLab Partners Conference, please contact Isabelle Glassmith at iglassmi@andrew.cmu.edu.

For information on hotels and transportation please see our "Visiting CyLab" page.

Not a CyLab partner? Learn how your company can benefit from becoming one. Contact the Senior Director of Partnerships, Michael Lisanti, at mlisanti@cmu.edu or 412-268-1870.

Agenda

Agenda subject to change

Day 1: Tuesday, October 20, 2026 (EDT)

8:00 a.m. - 9:00 a.m. - Breakfast and Registration

9:00 a.m. - 9:15 a.m. – Welcome and Opening Remarks

9:15 a.m. - 10:07 a.m. – Session I: Partnerships and Initiatives

Moderator: Michael Lisanti

10:07 a.m. - 10:27 a.m. – Break

10:27 a.m. - 11:51 a.m. – Session II: Generative AI and ML (Part 1)

Moderator: Osman Yağan

  • Lujo Bauer: Privacy and helpfulness in LLM responses to privacy-sensitive scenarios
  • Yorie Nakahira: Safe and Adaptive Autonomy: Uncertainty, Language, and Multiagent Interactions
  • Mohamed Farag: Hallucination Detection in RAG Systems using Unified Risk Calibration
  • Matt Walsh: Secure AI Design with STPA-SEC
  • Sarah Cen: Presentation title forthcoming
  • Wenting Zheng: Provably Undetectable Multi-Agent Collusion

11:51 a.m. - 1:15 p.m. – Lunch and Student Poster Session

1:15 p.m. - 2:39 p.m. – Session III: Generative AI and ML (Part 2)

Moderator: Sarah Cen

  • Caroline Hu: Towards Understanding How LLMs Fail at Vulnerability Analysis
  • Lei Li: Is Vibe Coding Safe? Benchmarking Vulnerability of Agent-Generated Software Code
  • Osman Yağan: Cost-aware LLM routing for Online Incident Detection
  • Giulia Fanti: Rethinking Internet Monetization in the Age of AI
  • Norman Sadeh: Security and Privacy in the Age of Agentic AI
  • Steven Wu: The Agentic Garden of Forking Paths

2:39 p.m. - 3:00 p.m. – Break

3:00 p.m. - 4:00 p.m. – Session IV: Crypto and Blockchain

Moderator: Bryan Parno

4:00 p.m. - 4:05 p.m. – End-of-day remarks

Time TBD – Dinner at The Porch

Day 2: Wednesday, October 21, 2026 (EDT)

8:00 a.m. - 9:00 a.m.– Breakfast and Registration

9:00 a.m. - 9:05 a.m. – Opening remarks

9:05 a.m. - 9:30 a.m. – CyLab Distinguished Alumni Award Presentation

Moderator: Joseph Calandrino

  • Lea Kissner (Distinguished Alumni Award honoree): From Silicon to Signals: Driving Full-Stack Security Through Incentive Engineering

9:30 a.m. - 10:23 a.m. – Session V: Privacy

Moderator: Hana Habib

  • Niloofar Mireshghallah: Adversarial Delegation: Internalized Surveillance Pricing as Misalignment in Personal Consumer Agents
  • Anne Connell: How to Design a Privacy Risk Framework for AI Systems
  • Joseph Calandrino: The Market for Counterfeit Digital Documents

10:23 a.m. - 10:53 a.m. – Break

10:53 a.m. - 11:53 a.m. – Session VI: Software Security

Moderator: Riccardo Paccagnella

  • Will Klieber: Using LLMs to Adjudicate Static-Analysis Alerts
  • Joshua Sunshine: BorrowSanitizer: Securing Rust Across Foreign Function Boundaries
  • Bryan Parno: Reducing the Cost of Provably Secure Code with Verus + AI
  • Lyndsi HughesSilent Sentinel - a Tool for Performing Software Profiling and Analyzing Dynamic Behavior

11:53 a.m. - 1:15 p.m. – Lunch and Student Poster Session

1:15 p.m. - 2:20 p.m. – Session VII: Hardware Security

Moderator: Limin Jia

2:20 p.m. - 3:20 p.m. – Session VIII: Usability

Moderator: Lorrie Cranor

  • Jessica Hammer: Building resilient organizations with cybersecurity education games
  • Alexandra Li: Human / Browser Agent Robustness: Indirect Prompt Injection Against Humans and Agents
  • Hana Habib: Supporting Practitioners' Understanding of LLM Privacy Risks
  • Yuvraj AgarwalBuildingChat: Enabling User Interactions with General-Purpose Sensing Infrastructure for Buildings

3:20 p.m. - 3:25 p.m. – Closing remarks

3:25 p.m. - 4:30 p.m. – Networking

Special thanks to our program committee: Lorrie Cranor, Lujo Bauer, Mark Sherman, Osman Yagan, Michael Lisanti, Isabelle Glassmith, Beth Bucher, Michael Cunningham, Ashley Bon, and Danyel Kusbit.