logo

​​Whisper Leak: A novel side-channel attack on remote language models

ID: 8a1f57b1-e277-5564-842a-ead5d33c23f3

STIX ID: report--8a1f57b1-e277-5564-842a-ead5d33c23f3

Feed Name: Microsoft Security

Threat Score
50/100

Date Published: 2025-11-07

Date Updated: 2026-04-28

Author: Microsoft Defender Security Research Team, Jonathan Bar Or and Geoff McDonald

...
...

Microsoft researchers disclose a novel side-channel vulnerability (Whisper Leak) against streaming-mode language models that allows an observer of encrypted network traffic to infer whether a user’s prompt concerns a specific sensitive topic by analyzing packet sizes and timings. The report describes the experimental methodology, machine-learning classifiers that achieved high precision in controlled tests, real-world impact simulations, and coordinated mitigations (obfuscation/response padding) deployed with cloud providers to reduce practical risk.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.