I am currently a PhD student at CISPA Helmholtz Center for Information Security, advised by Dr. Yang Zhang. I received my Bachelor’s degree from Bowdoin College (2017) and my Master’s degree from University of California San Diego (2019).

Research Area

  • Trustworthy Machine Learning (Security, Privacy, and Safety)
  • Multimodal Generative Models
  • Responsible Autonomous Agents

What’s New

  • [08/2025] Our paper titled “Breaking Agents: Compromising Autonomous LLM Agents Through Malfunction Amplification” got accepted in EMNLP 2025!
  • [05/2025] I will serve on the Program Committee of AISec 2025.
  • [11/2024] I will give a talk at European Cyber Week 2024.
  • [09/2024] Our paper titled “The Death and Life of Great Prompts: Analyzing the Evolution of LLM Prompts from the Structural Perspective” got accepted in EMNLP 2024!
  • [06/2024] I started my research internship at Nokia Bell Labs, working on the privacy of multi-modal LLMs.
  • [01/2024] I will serve as a reviewer for IEEE TPAMI 2024.
  • [10/2023] Our paper titled “SecurityNet: Assessing Machine Learning Vulnerabilities on Public Models” got accepted in USENIX Security 2024!