Welcome to My Homepage
Biography
I am currently an Associate Professor at Sun Yat-Sen University. Before that, I was a Postdoctoral Fellow, working with Prof. XiaoFeng Wang and Prof. Haixu Tang. I received my Ph.D. degree with honors in Information Engineering from the Chinese University of Hong Kong, advised by Prof. Kehuan Zhang and Prof. Dahua Lin.
My research focuses on AI Security, Trustworthy ML, and Responsible AI. I study how AI systems fail under adversarial conditions and develop methods to uncover hidden threats and provide dependable security guarantees, with a growing interest in large generative models and AI agents.
Research at a Glance
Active Causal Verification
Build trust through active challenges,
causal responses, and controlled interventions.
Face Flashing
How can a phone distinguish a live face from a replayed image?
Application illustration; qualitative optics and timing sketches. No measured material signatures. Paper ↗
Selective Amnesia SEAM
How do you remove an unknown backdoor without first finding its trigger?
Schematic paths and digit probes. Measured: CIFAR-10 / ResNet18 / Reflection · Table I. Paper ↗
Structural Security Diagnosis
Uncover hidden threats through
representation and behavioral structure.
SCAn
What reveals poisoned inputs when ordinary outlier detection cannot separate them?
Conceptual distributions and test score; subgroup colors do not imply visible separation in raw inputs. Paper ↗
PRISM VLM-Driven Backdoor Defense
How can you audit a model when its own parameters may already be compromised?
Illustrative attack case, not live inference. Accepted inputs alone update prototypes and class statistics. Paper ↗
Adversarial Threat Discovery
Expose defense blind spots by expanding
what an adversary can manipulate.
Gradient Shaping GRASP
Does an effective backdoor necessarily leave a trigger that defenders can recover?
Qualitative response and search trajectory; inversion failure is not universal. TABOR AUC: 0.840 → 0.561 (Table III). Paper ↗
Generative Clean-Image Backdoors GCB
Can unchanged training images still teach a hidden, malicious association?
Conceptual labels and regions. Test digit images: original Fig. 15. Stroke weight is learned, not a preset filter. Paper ↗
Selected Honors
From individual models
to collaborating AI agents.
How can we verify trust when agents share information, use tools, and act together? I am interested in causal verification, structural auditing, and adversarial evaluation of multi-agent systems.
Explore a collaboration ↗Latest News
I am publishing a daily AI paper digest: Paper News ↗
I joined Sun Yat-Sen University as an Associate Professor.
Intellectual CuriosityCollaborationReal-world Impact
I welcome motivated students and postdoctoral researchers with a passion for AI security. I value curiosity, enthusiasm for challenging questions, and the drive to pursue excellent research. I believe that working together helps us develop new ideas and turn them into results that matter beyond academia. If you share these values, I would love to explore how we can advance trustworthy and responsible AI together.
tangd9@mail.sysu.edu.cn ↗