Bio

I am an Assistant Professor in the College of Computer Science and Technology at Zhejiang University. Prior to that, I was a Visiting Assistant Professor at Stanford University and Research Group Leader at CISPA Helmholtz Center for Information Security, Germany. I obtained my Ph.D. degree from Zhejiang University on Sept. 2019, and continue my PostDoc research at CISPA for two years. From Oct. 2017 to May 2019, I was a Visiting Scholar at Purdue University.

I am looking for self-motivated Ph.D., master, and undergraduate students who are interested in trustworthy artificial intelligence and data privacy. Well-performing students have the opportunity to visit/study at top research institutions in the world, such as Stanford University, Carnegie Mellon University, UC Berkley, Yale University, Purdue University, University of Virginia, Vrije Universiteit Amsterdam, CISPA, etc. If you are interested, please feel free to drop me an email with your CV.


Research Areas


News

  • [September 2024] One paper titled “SoK: Dataset Copyright Auditing in Machine Learning Systems” got accepted in IEEE S&P 2025!
  • [August 2024] I will join the TPC of WWW 2025!
  • [August 2024] One paper titled “S2NeRF: Privacy-preserving Training Framework for NeRF” got accepted in ACM CCS 2024!
  • [July 2024] I will join the TPC of KDD 2025!
  • [July 2024] I will join the TPC of ICDE 2025!
  • [July 2024] One paper titled “The Janus Interface: How Fine-Tuning in Large Language Models Amplifies the Privacy Risks” got accepted in ACM CCS 2024!
  • [May 2024] One paper titled “TrustLLM: Trustworthy Large Language Models” got accepted in ICML 2024!
  • [April 2024] One paper titled “Real-Time Trajectory Synthesis with Local Differential Privacy” got accepted in ICDE 2024!
  • [April 2024] I will join the TPC of NDSS 2025!
  • [Feburary 2024] I received the distinguished reviewer award in NDSS 2024!
  • [Feburary 2024] Our paper titled “LMSanitator: Defending Task-agnostic Backdoors Against Prompt-tuning” received the distinguished paper award in NDSS 2024!
  • [Feburary 2024] One paper titled “DPAdapter: Improving Differentially Private Deep Learning through Noise Tolerance Pre-training” got accepted in USENIX Security 2024!
  • [January 2024] I will join the TPC of KDD 2024!
  • [December 2023] I will join the TPC of ACM CCS 2024!
  • [September 2023] I will join the TPC of USENIX Security 2024!
  • [August 2023] I will join the TPC of WWW 2024!
  • [June 2023] One paper titled “LMSanitator: Defending Task-agnostic Backdoors Against Prompt-tuning” got accepted in NDSS 2024!
  • [June 2023] One paper titled “ORL-Auditor: Dataset Auditing in Offline Deep Reinforcement Learning” got accepted in NDSS 2024!
  • [May 2023] One paper titled “CampER: An Effective Framework for Privacy-Aware Deep Entity Resolution” got accepted in KDD 2023!
  • [April 2023] One paper titled “Generated Graph Detection” got accepted in ICML 2023!
  • [April 2023] One paper titled “DPMLBench: Holistic Evaluation of Differentially Private Machine Learning” got accepted in ACM CCS 2023!
  • [March 2023] One paper titled “FACE-AUDITOR: Data Auditing in Facial Recognition Systems” got accepted in USENIX Security 2023!
  • [March 2023] I will join the TPC of NDSS 2024!
  • [March 2023] One paper titled “LDPTrace: Locally Differentially Private Trajectory Synthesis” got accepted in VLDB 2023!
  • [March 2023] One paper titled “PrivGraph: Differentially Private Graph Data Publication by Exploiting Community Information” got accepted in USENIX Security 2023!
  • [March 2023] I will join the TPC of PoPETS 2024!
  • [December 2022] I will join the TPC of KDD 2023!
  • [December 2022] I will join the TPC of CCS 2023!
  • [October 2022] I joined Stanford as a visiting assistant professor!
  • [September 2022] One paper titled “PrivTrace: Differentially Private Trajectory Synthesis by Adaptive Markov Model” got accepted in USENIX Security 2023!
  • [August 2022] One paper titled “On the Privacy Risks of Cell-Based NAS Architectures” got accepted in ACM CCS 2022!
  • [April 2022] One paper titled “Graph Unlearning” got accepted in ACM CCS 2022!
  • [April 2022] One paper titled “Finding MNEMON: Reviving Memories of Node Embeddings” got accepted in ACM CCS 2022!
  • [March 2022] I will join the TPC of PoPETS 2023!
  • [January 2022] I will join the TPC of ESORICS 2022!
  • [November 2021] I won the Nomination Award for Outstanding Doctoral Thesis of Zhejiang Province! [Link]
  • [September 2021] One paper titled “ML-Doctor: Holistic Risk Assessment of Inference Attacks Against Machine Learning Models” got accepted in USENIX Security 2022!
  • [August 2021] One paper titled “When Machine Unlearning Jeopardize Privacy” got accepted in CCS 2021!
  • [July 2021] One paper titled “Continuous Release of Data Streams under both Centralized and Local Differential Privacy” got accepted in CCS 2021!
  • [July 2021] One paper titled “Inference Attacks Against Graph Neural Networks” got accepted in USENIX Security 2022!
  • [July 2021] I won the Nomination Award for Outstanding Doctoral Thesis of Zhejiang University! [Link]
  • [June 2021] One paper titled “DPSyn: Experiences in the NIST Differential Privacy Data Synthesis Challenges” got accepted in JPC!
  • [May 2021] One paper titled “AHEAD: Adaptive Hierarchical Decomposition for Range Query under Local Differential Privacy” got accepted in CCS 2021!
  • [April 2021] I will join the TPC of PoPETS 2022!
  • [December 2020] One paper titled “PrivSyn: Differentially Private Data Synthesis” got accepted in USENIX Security 2021!
  • [November 2019] I joined CISPA as a PostDoc!
  • [September 2019] I obtained my Ph.D. degree!
  • [May 2019] We won the second prize of the Differentially Private Synthetic Dataset Challenge hosted by NIST!