Pascal Berrang

AI Safety · Zero-Knowledge Proofs · Cryptography

profile.jpg
Birmingham, UK and Munich, Germany

My research applies cryptography and zero-knowledge proofs to problems in AI security, privacy, and safety. I build tools that let us verify properties of AI systems — without revealing the models or data behind them.

I am an Associate Professor in Computer Science – Computer Security at the University of Birmingham, UK and Co-Founder & CTO of Zeroth Research, a non-profit startup making intelligent systems safe, with mathematical certainty.

I currently lead an ARIA-funded project on privacy-preserving AI safety verification (with Mirco Giacobbe and Yang Zhang), developing foundations for verifying AI safety guarantees without revealing sensitive model or data details. I also lead a Foresight Institute-funded project on ZK attestation for AI security (with Luca Arnaboldi), and an InnovateUK CyberASAP-funded project on identifying money laundering on the blockchain.

I am a SPAR mentor for two Spring 2026 projects bridging AI safety and zero-knowledge proofs: Proving Model Equality in Zero-Knowledge and Proving Safety Properties of Guardrail Models (with Luca Arnaboldi).

Previously, I completed my PhD in the Information Security and Cryptography Group at Saarland University under supervision of Michael Backes. My thesis, Quantifying and Mitigating Privacy Risks in Biomedical Data, received the Dr. Eduard-Martin Award 2019 for the best PhD thesis in mathematics and computer science.

research areas

  • AI Safety and Formal Verification
  • Zero-Knowledge Proofs for AI and Blockchain
  • Security and Privacy of Machine Learning
  • Blockchain Security and Compliance

news

Feb 01, 2026 Mentoring two SPAR Spring 2026 projects: Proving Model Equality in Zero-Knowledge and Proving Safety Properties of Guardrail Models.
Jan 15, 2026 Paper accepted at WWW 2026: Evasion Under Blockchain Sanctions.
Jan 01, 2026 Awarded a Foresight Institute grant for ZK attestation for AI security (with Luca Arnaboldi).
Jul 01, 2025 Launched Zeroth Research, a non-profit startup making intelligent systems safe, with mathematical certainty.
Apr 01, 2025 Awarded ARIA funding for our project on privacy-preserving AI safety verification using zero-knowledge proofs (with Mirco Giacobbe and Yang Zhang).

selected publications

  1. WWW
    Evasion Under Blockchain Sanctions
    Yuhao Liu, Mark D. Ryan, Liyi Zhou, and 1 more author
    In Proceedings of the ACM Web Conference 2026 (WWW), 2026
  2. NDSS
    ML-Leaks: Model and Data Independent Membership Inference Attacks and Defenses on Machine Learning Models
    Ahmed Salem, Yang Zhang, Mathias Humbert, and 3 more authors
    In Proceedings of the 26th Annual Network and Distributed System Security Symposium (NDSS), 2019
  3. NDSS
    MBeacon: Privacy-Preserving Beacons for DNA Methylation Data
    Inken Hagestedt, Yang Zhang, Mathias Humbert, and 4 more authors
    In Proceedings of the 26th Annual Network and Distributed System Security Symposium (NDSS), 2019
  4. USENIX
    Privacy in Epigenetics: Temporal Linkability of MicroRNA Expression Profiles
    Michael Backes, Pascal Berrang, Anne Hecksteden, and 3 more authors
    In Proceedings of the 25th USENIX Security Symposium (Security), 2016
  5. CCS
    Membership Privacy in MicroRNA-based Studies
    Michael Backes, Pascal Berrang, Mathias Humbert, and 1 more author
    In Proceedings of the 23rd ACM Conference on Computer and Communication Security (CCS), 2016