I am Mohammad Hamad. I am leading the research group Security for IoT and Autonomous Systems in the Associate Professorship of Embedded Systems and Internet of Things in the Department of Computer Engineering at the Technical University of Munich (TUM).
Before joining TUM, I worked as a research staff member at the Embedded Computer Security group at the Institute of Computer and Network Engineering at TU Braunschweig, Germany, where I finished my PhD.
My research interests are IoT Security, CPS Security and Autonomous Systems Security
Recent News
November 2025
🎉Two papers were accepted in AsiaCCS 2026 and SAC 2026.
September 2025
🎉Our paper Enhancing Security Through Task Migration in Software-Defined Vehicles was accepted in IEEE IoT Journal.
June 2025
🎉One paper was accepted in DSD 2025.
May 2025
🎉Our paper Sensor Fusion Desynchronization Attacks was accepted in ECRTS 2025.
Michael Kühr, Mohammad Hamad, Pedram MohajerAnsari, Mert D. Pesé, Sebastian Steinhorst.
SoK: Security of the Image Processing Pipeline for Camera-based Sensing in Autonomous Vehicles.
ACM Asia Conference on Computer and Communications Security (ASIA CCS '26)
, 2026.
@inproceedings{kmmps:2026,
author = {Michael K\"uhr and \textbf{Mohammad Hamad} and Pedram MohajerAnsari and Mert D. Pesé and Sebastian Steinhorst},
title = {SoK: Security of the Image Processing Pipeline for Camera-based Sensing in Autonomous Vehicles},
booktitle = {ACM Asia Conference on Computer and Communications Security (ASIA CCS '26)},
year = {2026},
doi = {10.1145/3779208.3785267},
}
Mohammad Hamad, Hammadeh, ZAIN A. H., Alessi, Davide, Hasan, Monowar, Pesé, Mert, Lüdtke, Daniel, Steinhorst, Sebastian.
Enhancing Security Through Task Migration in Software-Defined Vehicles.
IEEE Internet of Things Journal
, 2025.
@article{iotj2025,
author = {\textbf{Hamad, Mohammad} and Hammadeh, ZAIN A. H. and Alessi, Davide and Hasan, Monowar and
Pesé, Mert and L{\"u}dtke, Daniel and Steinhorst, Sebastian},
title = {Enhancing Security Through Task Migration in Software-Defined Vehicles},
journal = {IEEE Internet of Things Journal},
year = {2025},
doi = {10.1109/JIOT.2025.3611875},
publisher = {IEEE},
}
Mohammad Hamad, Andreas Finkenzeller, Michael Kühr, Andrew Roberts, Olaf Maennel, Vassilis Prevelakis, Sebastian Steinhorst.
REACT: Autonomous intrusion response system for intelligent vehicles.
Computers & Security
, 2024.
@article{COSE:2024,
author = {\textbf{Mohammad Hamad} and Andreas Finkenzeller and Michael Kühr and Andrew Roberts and Olaf Maennel and Vassilis Prevelakis and Sebastian Steinhorst},
title = {REACT: Autonomous intrusion response system for intelligent vehicles},
journal = {Computers \& Security},
year = {2024},
volume = {145},
doi = {https://doi.org/10.1016/j.cose.2024.104008},
url = {https://www.sciencedirect.com/science/article/pii/S0167404824003134},
}
Andreas Finkenzeller, Oliver Butowski, Emanuel Regnath, Mohammad Hamad, Sebastian Steinhorst.
PTPsec: Securing the Precision Time Protocol Against Time Delay Attacks Using Cyclic Path Asymmetry Analysis.
IEEE International Conference on Computer Communications (IEEE INFOCOM 2024)
, 2024.
🏷️Conference🟩CORE: A*
Cite
@inproceedings{INFOCOM:2023,
author = {\underline{Andreas Finkenzeller} and Oliver Butowski and Emanuel Regnath and \textbf{Mohammad Hamad} and Sebastian Steinhorst},
title = {PTPsec: Securing the Precision Time Protocol Against Time Delay Attacks Using Cyclic Path Asymmetry Analysis},
booktitle = {IEEE International Conference on Computer Communications (\textbf{IEEE INFOCOM 2024)}},
year = {2024},
}
Mohammad Hamad, Andreas Finkenzeller, Hangmao Liu, Jan Lauinger, Vassilis Prevelakis, Sebastian Steinhorst.
SEEMQTT: Secure End-to-End MQTT-Based Communication for Mobile IoT Systems Using Secret Sharing and Trust Delegation.
IEEE Internet of Things Journal
, 2022.
@article{mhhiotj,
author = {\textbf{Mohammad Hamad} and Andreas Finkenzeller and Hangmao Liu and Jan Lauinger and Vassilis Prevelakis and Sebastian Steinhorst},
title = {SEEMQTT: Secure End-to-End MQTT-Based Communication for Mobile IoT Systems Using Secret Sharing and Trust Delegation},
journal = {IEEE Internet of Things Journal},
year = {2022},
pages = {1-1},
doi = {10.1109/JIOT.2022.3221857},
}
Michael Kühr, Mohammad Hamad, Pedram MohajerAnsari, Mert D. Pesé, Sebastian Steinhorst.
SoK: Security of the Image Processing Pipeline for Camera-based Sensing in Autonomous Vehicles.
ACM Asia Conference on Computer and Communications Security (ASIA CCS '26)
, 2026.
@inproceedings{kmmps:2026,
author = {Michael K\"uhr and \textbf{Mohammad Hamad} and Pedram MohajerAnsari and Mert D. Pesé and Sebastian Steinhorst},
title = {SoK: Security of the Image Processing Pipeline for Camera-based Sensing in Autonomous Vehicles},
booktitle = {ACM Asia Conference on Computer and Communications Security (ASIA CCS '26)},
year = {2026},
doi = {10.1145/3779208.3785267},
}
Marco Calipari, Fabian Maximilian Schmidt, Mohammad Hamad, Sebastian Steinhorst.
CIAK-CP: Camera feed Injection Attack in Collaborative Perception.
The 41st ACM/SIGAPP Symposium On Applied Computing (SAC2026)
, 2026.
@inproceedings{cshs:2026,
author = {\underline{Marco Calipari} and Fabian Maximilian Schmidt and \textbf{Mohammad Hamad} and Sebastian Steinhorst},
title = {{CIAK-CP}: Camera feed Injection Attack in Collaborative Perception},
booktitle = {The 41st ACM/SIGAPP Symposium On Applied Computing (SAC2026)},
year = {2026},
doi = {10.1145/3748522.3779847},
}
Pedram MohajerAnsari, Amir Salarpour, Michael Kühr, Siyu Huang, Mohammad Hamad, Sebastian Steinhorst, Habeeb Olufowobi, Mert D. Pesé.
On the Natural Robustness of Vision-Language Models Against Visual Perception Attacks in Autonomous Driving.
The IEEE Intelligent Vehicles Symposium (IV 2026)
, 2026.
🏷️Conference
Cite
@inproceedings{mohajeransari2025naturalrobustnessvisionlanguagemodels,
author = {Pedram MohajerAnsari and Amir Salarpour and Michael K{\"u}hr and Siyu Huang and \textbf{Mohammad Hamad} and Sebastian Steinhorst and Habeeb Olufowobi and Mert D. Pesé},
title = {On the Natural Robustness of Vision-Language Models Against Visual Perception Attacks in Autonomous Driving},
booktitle = {The IEEE Intelligent Vehicles Symposium (IV 2026)},
year = {2026},
}
Mohammad Hamad, Hammadeh, ZAIN A. H., Alessi, Davide, Hasan, Monowar, Pesé, Mert, Lüdtke, Daniel, Steinhorst, Sebastian.
Enhancing Security Through Task Migration in Software-Defined Vehicles.
IEEE Internet of Things Journal
, 2025.
@article{iotj2025,
author = {\textbf{Hamad, Mohammad} and Hammadeh, ZAIN A. H. and Alessi, Davide and Hasan, Monowar and
Pesé, Mert and L{\"u}dtke, Daniel and Steinhorst, Sebastian},
title = {Enhancing Security Through Task Migration in Software-Defined Vehicles},
journal = {IEEE Internet of Things Journal},
year = {2025},
doi = {10.1109/JIOT.2025.3611875},
publisher = {IEEE},
}
@article{10.1145/3728363,
author = {\underline{Finkenzeller, Andreas} and Fucks, Arne and Regnath, Emanuel and \textbf{Hamad, Mohammad} and Steinhorst, Sebastian},
title = {Securing the Precision Time Protocol with SDN-enabled Cyclic Path Asymmetry Analysis},
journal = {ACM Trans. Cyber-Phys. Syst.},
year = {2025},
doi = {10.1145/3728363},
url = {https://doi.org/10.1145/3728363},
publisher = {Association for Computing Machinery},
}
@article{10.1145/3728364,
author = {Hammadeh, ZAIN A. H. and Hasan, Monowar and \textbf{Hamad, Mohammad}},
title = {RESCUE: A Reconfigurable Scheduling Framework for Securing Multi-Core Real-Time Systems},
journal = {ACM Trans. Cyber-Phys. Syst.},
year = {2025},
doi = {10.1145/3728364},
url = {https://doi.org/10.1145/3728364},
publisher = {Association for Computing Machinery},
}
Andreas Finkenzeller, Andrew Roberts, Mauro Bellone, Olaf Maennel, Mohammad Hamad, Sebastian Steinhorst.
Sensor Fusion Desynchronization Attacks.
Proceedings of the 37th Euromicro Conference on Real-Time Systems (ECRTS 2025)
, 2025.
🏷️Conference
Cite
@inproceedings{ECRTS2025,
author = {\underline{Andreas Finkenzeller} and Andrew Roberts and Mauro Bellone and Olaf Maennel and \textbf{Mohammad Hamad} and Sebastian Steinhorst},
title = {Sensor Fusion Desynchronization Attacks},
booktitle = {Proceedings of the 37th Euromicro Conference on Real-Time Systems (\textbf{ECRTS 2025})},
year = {2025},
}
Juul, Johan Mattias, James Roberts, Andrew, Mohammad Hamad, Venables, Adrian, Ottis, Rain.
Applying Machine Learning for Electronic Warfare Activity Detection at a National Scale.
MILCOM 2025 - 2025 IEEE Military Communications Conference (MILCOM)
, 2025.
@INPROCEEDINGS{11309949,
author = {Juul, Johan Mattias and James Roberts, Andrew and \textbf{Mohammad Hamad} and Venables, Adrian and Ottis, Rain},
title = {Applying Machine Learning for Electronic Warfare Activity Detection at a National Scale},
booktitle = {MILCOM 2025 - 2025 IEEE Military Communications Conference (MILCOM)},
year = {2025},
pages = {1-6},
doi = {10.1109/MILCOM64451.2025.11309949},
}
Michael Kühr, Maximilian Mittmann, Mohammad Hamad, Sebastian Steinhorst.
CATI - An Open-Source Framework to Evaluate Attacks on Cameras for Autonomous Vehicles.
28th Euromicro Conference Series on Digital System Design (DSD) 2025
, 2025.
@inproceedings{kmhs:2025,
author = {\underline{Michael K{\"u}hr} and Maximilian Mittmann and Mohammad Hamad and Sebastian Steinhorst},
title = {CATI - An Open-Source Framework to Evaluate Attacks on Cameras for Autonomous Vehicles},
booktitle = {28th Euromicro Conference Series on Digital System Design (DSD) 2025},
year = {2025},
doi = {10.1109/DSD67783.2025.00078},
}
Pesé, Mert D., Gozubuyuk, Bulut, Andrechek, Eric, Olufowobi, Habeeb, Mohammad Hamad, Shin, Kang G..
MichiCAN: Spoofing and Denial-of-Service Protection using Integrated CAN Controllers.
2025 55th Annual IEEE/IFIP International Conference on Dependable Systems and Networks (DSN)
, 2025.
@INPROCEEDINGS{11068822,
author = {Pesé, Mert D. and Gozubuyuk, Bulut and Andrechek, Eric and Olufowobi, Habeeb and \textbf{Hamad, Mohammad} and Shin, Kang G.},
title = {MichiCAN: Spoofing and Denial-of-Service Protection using Integrated CAN Controllers},
booktitle = {2025 55th Annual IEEE/IFIP International Conference on Dependable Systems and Networks (\textbf{DSN})},
year = {2025},
pages = {443-456},
doi = {10.1109/DSN64029.2025.00050},
}