Securing AI Agents with Information-Flow Control

Boris Köpf

Abstract

As AI agents become increasingly autonomous and capable, ensuring their security against vulnerabilities such as prompt injection becomes critical. Most existing defenses against these attacks are probabilistic and do not give strong assurance. In this talk we will explore the use of information-flow control for achieving strong, deterministic security guarantees for AI agents.

Date
Sep 30, 2025 1:15 PM — 2:15 PM

Boris is a Principal Researcher at Microsoft, where he works on techniques for tracking information flow in microarchitecture and machine learning systems.

Boris Köpf’s webpage