Publications

* for Equal Contribution, for Corresponding Author

2025

DivTrackee versus DynTracker: Promoting Diversity in Anti-Facial Recognition against Dynamic FR Strategy

ACM CCS, 2025  Distinguished Paper Award

Generating Less Certain Adversarial Examples Improves Robust Generalization

ICLR, 2025  talk

Invisibility Cloak: Disappearance under Human Pose Estimation via Backdoor Attacks

arXiv preprint

2024

Generated Distributions Are All You Need for Membership Inference Attacks Against Generative Models

IEEE/CVF WACV, 2024

Generating Less Certain Adversarial Examples Improves Robust Generalization

TMLR, 2024  J2C Certification

Vera Verto: Multimodal Hijacking Attack

arXiv preprint

2021

Membership Inference Attacks Against Recommender Systems

ACM CCS, 2021  talk