Publications

Yupei Liu, Yuqi Jia, Jinyuan Jia, Dawn Song, and Neil Zhenqiang Gong. “DataSentinel: A Game-Theoretic Detection of Prompt Injection Attacks”. In IEEE Symposium on Security and Privacy (IEEE S&P), 2025.

Yupei Liu, Yuqi Jia, Jinyuan Jia, and Neil Zhenqiang Gong. “Evaluating Large Language Model based Personal Information Extraction and Countermeasures”. In USENIX Security Symposium, 2025. [code]

Yupei Liu, Yanting Wang, and Jinyuan Jia. “TrojanDec: Data-free Detection of Trojan Testing Inputs in Self-supervised Learning”. In AAAI Conference on Artificial Intelligence (AAAI), 2025.

Lingyu Du, Yupei Liu, Jinyuan Jia, and Guohao Lan. “SecureGaze: Defending Gaze Estimation Against Backdoor Attacks”. In Conference on Embedded Networked Sensor Systems (SenSys), 2025

Yupei Liu, Yuqi Jia, Runpeng Geng, Jinyuan Jia, and Neil Zhenqiang Gong. “Formalizing and Benchmarking Prompt Injection Attacks and Defenses”. In USENIX Security Symposium, 2024. [video] [code]

Jinyuan Jia*, Yupei Liu*, Yuepeng Hu, and Neil Zhenqiang Gong. “PORE: Provably Robust Recommender Systems against Data Poisoning Attacks”. In USENIX Security Symposium, 2023. [code]

Yupei Liu, Jinyuan Jia, Hongbin Liu, and Neil Zhenqiang Gong. “StolenEncoder: Stealing Pre-trained Encoders in Self-supervised Learning”. In ACM Conference on Computer and Communications Security (CCS), 2022. [code]

Jinyuan Jia, Yupei Liu, Xiaoyu Cao, and Neil Zhenqiang Gong. “Certified Robustness of Nearest Neighbors against Data Poisoning and Backdoor Attacks”. In AAAI Conference on Artificial Intelligence (AAAI), 2022. [video]

R. Spencer Hallyburton, Yupei Liu, Yulong Cao, Z. Morley Mao, and Miroslav Pajic. “Security Analysis of Camera-LiDAR Fusion Against Black-Box Attacks on Autonomous Vehicles”. In USENIX Security Symposium, 2022. [code]

Jinyuan Jia*, Yupei Liu*, and Neil Zhenqiang Gong. “BadEncoder: Backdoor Attacks to Pre-trained Encoders in Self-Supervised Learning”. In IEEE Symposium on Security and Privacy (IEEE S&P), 2022. [code]

*Equal contribution