Top
Back to All Events

Colloquium Series: Thomas Ristenpart, "Computer Security in Known-Adversary Threat Models"

  • Bahen Centre for Information Technology, Room 3200 40 Saint George Street Toronto, ON, M5S 2E4 Canada (map)

Speaker:

Thomas Ristenpart

Talk Title:

Computer Security in Known-Adversary Threat Models

Date and Location:

Tuesday, February 25, 2025

Bahen Centre for Information Technology, BA 3200

This lecture is open to the public. No registration is required, but space is limited.

Abstract:

Computer security is traditionally about the protection of digital systems from adversaries such as criminals or governments. In this talk, I will explore what I call known-adversary threat models, in which the adversary is a member of the victim's social circles---an intimate partner, family member, or other close acquaintance---and who seeks to cause harm to the victim, not just their technology. Known-adversary threat models are a widespread and increasingly severe problem, and their study opens up a new frontier for computer security research and practice. 

This perspective has emerged from my research and advocacy in the context of intimate partner violence (IPV). Our research details the multifaceted and damaging ways in which abusers exploit technology to harass, impersonate, threaten, monitor, intimidate, and otherwise harm their partner via spyware, social media, tracking tools, account compromise, and more. To make progress, I take an advocate-scientist approach that blends ongoing evidence-based design and delivery of clinics that directly assist survivors suffering tech abuse; systemic advocacy for new laws and policies; and basic research into how to design technology to improve its security in the face of known-adversary threats. The latter requires understanding and resolving complex tensions between known-adversary and traditional threat models, with result being principled reworkings of some of our most fundamental security tools to increase security and safety for all users.

The talk will include discussion of physical, sexual, and emotional violence.

About Thomas Ristenpart:

Thomas Ristenpart is a Professor at Cornell Tech and a member of the Computer Science department at Cornell University. Before joining Cornell Tech in May, 2015, he spent four and a half years as an Assistant Professor at the University of Wisconsin-Madison. He completed his PhD at UC San Diego in 2010.  His research spans a wide range of computer security topics, with recent focuses including digital privacy and safety in interpersonal abuse, anti-abuse mitigations for encrypted messaging systems, improvements to authentication mechanisms including passwords, and topics in applied and theoretical cryptography. His work is routinely featured in the media and has been recognized by numerous distinguished paper awards, two ACM CCS test-of-time awards, a USENIX Security test-of-time award, an Advocate of New York City award, an NSF CAREER Award, and a Sloan Research Fellowship.