Jean-Charles Noirot Ferrand

Jean-Charles Noirot Ferrand

Hi! I am a Ph.D. student in the Department of Computer Sciences at the University of Wisconsin-Madison where I am a member of the Security and Privacy Research Group, advised by Prof. Patrick McDaniel.

I have received my M.S. in Computer Sciences from the University of Wisconsin-Madison, my Diplôme d'Ingénieur (M.S. and B.S. in Engineering Sciences) from the French Engineering School École Centrale de Lyon, and my B.S. in General Mathematics and Applications from Claude Bernard Lyon 1 University.

Research Interests: I am interested in building more secure and trustworthy systems. My current research focuses on open source software security and trustworthy AI (especially LLMs).

Email: contact@jcnf.me Address: 1205 University Ave., Room 4576, Madison WI 53706, USA

CV Google Scholar GitHub Public GPG key Email ORCID RSS feed

Recent & Selected Publications

  • Adversarial Agents: Black-Box Evasion Attacks with Reinforcement Learning
    Kyle Domico, Jean-Charles Noirot Ferrand, Ryan Sheatsley, Eric Pauley, Josiah Hanna, Patrick McDaniel
    Findings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition (CVPR), 2026
    PDF DOI
    @inproceedings{domico2026adversarialagents,
                             author = {Kyle Domico and Jean-Charles {Noirot Ferrand} and Ryan Sheatsley and Eric Pauley and Josiah Hanna and Patrick McDaniel},
                             booktitle = {Findings of the IEEE/CVF Conference on Computer Vision and Pattern Recognition (CVPR)},
                             doi = {10.48550/arXiv.2503.01734},
                             title = {Adversarial Agents: Black-Box Evasion Attacks with Reinforcement Learning},
                             url = {https://arxiv.org/abs/2503.01734},
                             year = {2026}
                            }
                            
  • The Role of Learning in Attacking Intrusion Detection Systems
    Kyle Domico, Jean-Charles Noirot Ferrand, Patrick McDaniel
    In Submission, 2026
    PDF DOI
    @misc{domico2026rolelearningattackingintrusion,
                             archiveprefix = {arXiv},
                             author = {Kyle Domico and Jean-Charles {Noirot Ferrand} and Patrick McDaniel},
                             doi = {https://doi.org/10.48550/arXiv.2602.10299},
                             eprint = {2602.10299},
                             primaryclass = {cs.CR},
                             title = {{The} {Role} of {Learning} in {Attacking} {Intrusion} {Detection} {Systems}},
                             url = {https://arxiv.org/abs/2602.10299},
                             year = {2026}
                            }
                            
  • Targeting Alignment: Extracting Safety Classifiers of Aligned LLMs
    Jean-Charles Noirot Ferrand, Yohan Beugin, Eric Pauley, Ryan Sheatsley, Patrick McDaniel
    IEEE Secure and Trustworthy Machine Learning Conference (SaTML), 2026
    @inproceedings{noirot_ferrand_targeting_2026,
                             author = {Jean-Charles {Noirot Ferrand} and Yohan Beugin and Eric Pauley and Ryan Sheatsley and Patrick McDaniel},
                             booktitle = {IEEE Secure and Trustworthy Machine Learning Conference (SaTML)},
                             doi = {10.48550/arXiv.2501.16534},
                             month = {March},
                             title = {{Targeting} {Alignment}: {Extracting} {Safety} {Classifiers} of {Aligned} {LLMs}},
                             url = {https://arxiv.org/abs/2501.16534},
                             year = {2026}
                            }
                            
  • On the Robustness Tradeoff in Fine-Tuning
    Kunyang Li, Jean-Charles Noirot Ferrand, Ryan Sheatsley, Blaine Hoak, Yohan Beugin, Eric Pauley, Patrick McDaniel
    IEEE/CVF International Conference on Computer Vision (ICCV), 2025
    @inproceedings{li_robustness_2025,
                             author = {Kunyang Li and Jean-Charles {Noirot Ferrand} and Ryan Sheatsley and Blaine Hoak and Yohan Beugin and Eric Pauley and Patrick McDaniel},
                             booktitle = {IEEE/CVF International Conference on Computer Vision (ICCV)},
                             doi = {10.48550/arXiv.2503.14836},
                             month = {October},
                             title = {On the {Robustness} {Tradeoff} in {Fine}-{Tuning}},
                             url = {https://arxiv.org/abs/2503.14836},
                             year = {2025}
                            }
                            
For a complete list of publications, please refer to my publications page.