Whisper Leak: A novel side-channel attack on remote language models
ID: 8a1f57b1-e277-5564-842a-ead5d33c23f3
STIX ID: report--8a1f57b1-e277-5564-842a-ead5d33c23f3
Feed Name: Microsoft Security
Date Published: 2025-11-07
Date Updated: 2026-04-28
Author: Microsoft Defender Security Research Team, Jonathan Bar Or and Geoff McDonald
Microsoft researchers disclose a novel side-channel vulnerability (Whisper Leak) against streaming-mode language models that allows an observer of encrypted network traffic to infer whether a user’s prompt concerns a specific sensitive topic by analyzing packet sizes and timings. The report describes the experimental methodology, machine-learning classifiers that achieved high precision in controlled tests, real-world impact simulations, and coordinated mitigations (obfuscation/response padding) deployed with cloud providers to reduce practical risk.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
