Navigation
  • Print
  • Share
  • Copy Url
  • Breadcrumb

    Publication List

    Xudong Pan

    2025

    • [Preprint] Xudong Pan, Jiarun Dai, Yihe Fan, Min Yang. Frontier AI systems have surpassed the self-replicating red line. Arxiv. [Link]
    • [Preprint] Changyue Jiang, Xudong Pan, Geng Hong, Chenfu Bao, Min Yang. RAG-Thief: Scalable Extraction of Private Data from Retrieval-Augmented Generation Applications with Agent-based Attacks. Arxiv. [Link]

    2024

    • [TPAMI] Xudong Pan, Mi Zhang, Yifan Yan, Shengyao Zhang, Min Yang. Matryoshka: Exploiting the Over-Parametrization of Deep Learning Models for Covert Data Transmission. IEEE Transactions on Pattern Analysis and Machine Intelligence (TPAMI), (IF=24.314), 2024. [Link]
    • [S&P'24] Huming Qiu, Junjie Sun, Mi Zhang, Xudong Pan, Min Yang. BELT: Old-School Backdoor Attacks can Evade the State-of-the-Art Defense with Backdoor Exclusivity Lifting, the 2024 IEEE Symposium on Security and Privacy (S&P). 2024. [Link]
    • [TDSC'24] Chenghui Shi, Shouling Ji, Xudong Pan, Xuhong Zhang, Mi Zhang, Min Yang, Jun Zhou, Jianwei Yin, Ting Wang. Towards Practical Backdoor Attacks on Federated Learning Systems. IEEE Transactions on Dependable and Secure Computing (TDSC), 2024. [Link]
    • [CCS'24] Neural Dehydration: Effective Erasure of Black-box Watermarks from DNNs with Limited Data. Yifan Lu, Wenxuan Li, Mi Zhang, Xudong Pan, Min Yang. The 31th ACM Conference on Computer and Communications Security (CCS), 2024. [Link]

    2023

    • [KDD'23] Xudong Pan, Mi Zhang, Yifan Yan, Yining Wang, Min Yang. Cracking White-box DNN Watermarks via Invariant Neuron Transforms, the 29th SIGKDD Conference on Knowledge Discovery and Data Mining (KDD), P1783–1794, 2023. [Link]
    • [USENIX Security'23] Yifan Yan (*), Xudong Pan (*), Mi Zhang, Min Yang. Rethinking White-Box Watermarks on Deep Learning Models under Neural Structural Obfuscation, the 32nd USENIX Security Symposium (USENIX Security, *equal contribution), P2347-2364, 2023. [Link]
    • [USENIX Security'23] Qifan Xiao (*), Xudong Pan (*), Yifan Lu, Mi Zhang, Min Yang. Exorcising “Wraith”: Protecting LiDAR-based Object Detector in Automated Driving System from Appearing Attacks, the 32nd USENIX Security Symposium (USENIX Security, *equal contribution), P2939-2956, 2023. [Link]
    • [ACL'23] Shengyao Zhang, Xudong Pan, Mi Zhang, Min Yang. SlowBERT: Slow-down Attacks on Input-adaptive Multi-exit BERT. Findings of the Association for Computational Linguistics (ACL), P9992–10007, 2023. [Link]
    • [ICASSP'23] Xudong Pan, Mi Zhang, Duocai Wu. RØROS: Building a Responsive Online Recommender System via Meta-Gradients Updating, 2023 IEEE International Conference on Acoustics, Speech and Signal Processing (ICASSP), 2023. [Link]
    • [WWW'23] Xiaoyu You, Beina Sheng, Daizong Ding, Mi Zhang, Xudong Pan, Min Yang, Fuli Feng. MaSS: Model-agnostic, Semantic and Stealthy Data Poisoning Attack on Knowledge Graph Embedding, the 2023 Web Conference (WWW), P2000-2010, 2023. [Link]
    • [WWW'23] Xiaoyu You, Chi Lee, Daizong Ding, Mi Zhang, Fuli Feng, Xudong Pan, Min Yang. Anti-FakeU: Defending Shilling Attacks on Graph Neural Network based Recommender Model, the 2023 Web Conference (WWW), P938-948, 2023. [Link]

    2022

    • [NeurIPS'22] Xudong Pan, Shengyao Zhang, Mi Zhang, Yifan Yan, Min Yang. House of Cans: Covert Transmission of Internal Datasets via Capacity-Aware Neuron Steganography, the 36th Annual Conference on Neural Information Processing Systems (NeurIPS), 2022. [Link]

    • [KDD'22] Xudong Pan, Yifan Yan, Mi Zhang, Min Yang. MetaV: A Meta-Verifier Approach to Task-Agnostic Model Fingerprinting, the 28th SIGKDD Conference on Knowledge Discovery and Data Mining (KDD), P1327–1336, 2022. [Link]

    • [USENIX Security'22] Xudong Pan, Mi Zhang, Beina Sheng, Jiaming Zhu, Min Yang. Hidden Trigger Backdoor Attack on NLP Models via Linguistic Style Manipulation, the 31st USENIX Security Symposium (USENIX Security), P3611-3628, 2022. [Link]

    • [USENIX Security'22] Xudong Pan, Mi Zhang, Yifan Yan, Jiaming Zhu, Min Yang. Exploring the Security Boundary of Data Reconstruction via Neuron Exclusivity Analysis, the 31st USENIX Security Symposium (USENIX Security), P3989-4006, 2022. [Link]

    • [ICDE'22] Daizong Ding, Mi Zhang, Yuanmin Huang, Xudong Pan, Fuli Feng, Erling Jiang, Min Yang. Towards Backdoor Attack on Deep Learning based Time Series Classification, the 38th IEEE International Conference on Data Engineering (ICDE), P1274-1287, 2022. [Link]

    2021

    • [ACSAC'21] Xudong Pan, Mi Zhang, Yifan Yan, Min Yang. Understanding the Threats of Trojaned Quantized Neural Network in Model Supply Chains, the 38th Annual Computer Security Applications Conference (ACSAC), P634–645, 2021. [Link]
    • [CIKM'21] Daizong Ding, Mi Zhang, Hanrui Wang, Xudong Pan, Min Yang, Xiangnan He. A Deep Learning Framework for Self-evolving Hierarchical Community Detection, the 30th ACM International Conference on Information and Knowledge Management (CIKM), P372–381, 2021. [Link]
    • [ESORICS'21] Xudong Pan, Mi Zhang, Yifan Lu, Min Yang. TAFA: A Task-Agnostic Fingerprinting Algorithm for Neural Networks, the 26th European Symposium on Research in Computer Security (ESORICS), P542-562, 2021. [Link]
    • [TKDE] Mi Zhang, Daizong Ding, Xudong Pan, Min Yang. Enhancing Time Series Predictors with Generalized Extreme Value Loss, IEEE Transactions on Knowledge and Data Engineering (TKDE), 2021. (IF=9.24) [Link]

    2020

    • [ICDM'20] Daizong Ding, Mi Zhang, Xudong Pan, Min Yang, Xiangnan He. Modeling Personalized Out-of-Town Distances in Location Recommendation, the 20th IEEE International Conference on Data Mining (ICDM), P112-121, 2020. [Link]
    • [USENIX Security'20] Xudong Pan, Mi Zhang, Duocai Wu, Qifan Xiao, Min Yang. Justinian’s GAAvernor: Robust Distributed Learning with Gradient Aggregation Agent, the 29th USENIX Security Symposium (USENIX Security), P1641-1658, 2020. [Link]
    • [S&P'20] Xudong Pan, Mi Zhang, Shouling Ji, Min Yang. Privacy Risks of General-Purpose Language Models, the 2020 IEEE Symposium on Security and Privacy (S&P), P1471-1488, 2020. [Youth Outstanding Paper Nomination, WAIC] [Link]
    • [AAAI'20] Daizong Ding, Mi Zhang, Xudong Pan, Min Yang, Xiangnan He. Improving the Robustness of Wasserstein Embedding by Adversarial PAC-Bayesian Learning, the 34th AAAI Conference on Artificial Intelligence (AAAI), P3791-3800, 2020. [Link]
    • [TPAMI] Xudong Pan, Mi Zhang, Daizong Ding, Min Yang. A Geometrical Perspective on Image Style Transfer with Adversarial Learning, IEEE Transactions on Pattern Analysis and Machine Intelligence (TPAMI), 44(1), P63-75, 2020. [Link]

    2018-2019

    • [KDD'19] Daizong Ding, Mi Zhang, Xudong Pan, Min Yang, Xiangnan He. Modeling Extreme Events in Time Series Prediction, the 25th SIGKDD Conference on Knowledge Discovery and Data Mining (KDD), P1114–1122, 2019. [Link]
    • [ICML'18] Xudong Pan, Mi Zhang, Min Yang. Theoretical Analysis of Image-to-Image Translation with Adversarial Learning, the 35th International Conference on Machine Learning (ICML), P4006-4015, 2018. [Link]
    • [WWW'18] Daizong Ding, Mi Zhang, Xudong Pan, Pearl Pu. Geographical Feature Extraction for Entities in Location-based Social Networks, the 2018 World Wide Web Conference (WWW), P833-842, 2018. [Link]