Research

The cyber security group conducts practical research that advances the state of the art of cyber security technology and generates practical impacts, in particular on improving the security practice of important stakeholders of the nation,  technology transfer and commercialization. Collaborating with government ministries and industrial partners, the cyber security group currently carries on a suite of data-driven projects, including enterprise log analytics for intrusion detection and threat hunting, Internet threat intelligence, blockchain security and AI security and privacy. Starting from 2017, QCRI has been designated as the key organization to establish the National Cyber Security Research Lab (NCSRL), which is a consortium of multiple ministries. NCSRL is tasked to empower the National Committee on Information Security (NCIS) with innovative technology that protects Qatar’s digital borders. The cyber security group thus also undertakes efforts to help the establishment of NCSRL, especially its infrastructure/system design and deployment.

Research Projects

aiXamine

A full stack platform to evaluate LLMs against safety issues and security threats across 40+ tests covering safety alignment, adversarial robustness, data privacy, fairness, and code security.

Phone Fraud​

An initiative backed by over $700K in funding that combines awareness, policy reform, and machine learning to identify fraud with high accuracy in SMS, calls, and bank transactions.

CyberXpert

An agentic AI platform with specialized cybersecurity MCP servers that provides threat intelligence, automated security analysis, and expert-level incident response against evolving cyber threats.

Threat Intelligence

Research focused on detecting stealthy threats using anonymized and encrypted traffic to evade traditional security measures, identifying WannaCry ransomware activity through large-scale enterprise network analysis.

Vulnerability Detection

An automated security assessment platform employing advanced scanning and AI-powered analysis to proactively identify security flaws in software, systems, and network configurations with prioritized risk ratings.

Deepfake

A comprehensive detection system that evaluates deepfake media across robustness, fairness, and security dimensions using transformer-based models with detailed analysis reports and confidence scoring.