Background
Associate Professor of Computer Science at Carnegie Mellon, known for foundational privacy and adversarial-ML work: his 2015 model-inversion paper won the ACM CCS Test-of-Time Award (October 2025), and a paper co-authored with Nicolas Papernot and others won the IEEE EuroS&P Test-of-Time Award (July 2026). With Zico Kolter and their student Andy Zou he co-authored the 2023 universal adversarial-suffix attack on aligned LLMs, the research lineage behind Gray Swan.
Gray Swan emerged from stealth in July 2024 as a CMU spinout.
What they run now
Scaling the three-product business after the Series A: enterprise sales of Shade and Cygnal, keeping frontier-lab engagements (system-card red-teaming, indirect prompt injection), and running Arena as both a data engine and a hiring pipeline.
Career
- 2023 – presentCo-founder & CEO, Gray Swan AI
- presentAssociate Professor, Computer Science, Carnegie Mellon University
On the record
Says AI is moving faster than any prior technology and security has not kept pace. source
Shade outperforms human red-teamers only given a fixed time on specific tasks; not yet superhuman across all scenarios. source
Argues the one reliable expectation in AI security is surprises. source
