Zi Liang (Research Page)
Table of Contents
1. Introducing Myself
My name is Zi Liang, now a PhD student in the Astaple Group of Hong Kong Polytechnic University (PolyU). My supervisor is Prof. Haibo Hu. I begin my research in NEU (Shenyang) and Xi'an Jiaotong University (XJTU), under the supervision of Prof. Pinghui Wang and Ruofei (Bruce) Zhang. I also work closely with Yanyun Wang (HKUST-Guangzhou), Hongzong Li (HKUST), Xuan Liu (UCSD), Nuo Xu (Limix AI), Shuo Zhang (Huawei), Yaxin Xiao (HK PolyU), and Xinwei Zhang (HK PolyU).
I specialize in analyzing the potential risks inherent in language models, with a focus on understanding why and how neural networks function and identifying vulnerabilities within them. My research is driven by a deep curiosity to uncover the mechanisms behind these models and to address the security challenges they present.
My work can be categorized into two main areas:
- Enhancing Understanding of Models and Learning Processes: I aim to explain the root causes of issues in AI systems, examining how problems arise during model training and inference, and what they imply for the broader field of machine learning.
- Uncovering New Threats and Developing Defenses: I conduct comprehensive evaluations of popular AI services and techniques, combining in-depth theoretical analysis with practical experimentation;
1.1. Contact Me
- GitHub: https://github.com/liangzid
- Mail: zi1415926.liang@connect.polyu.hk
- Google Scholar
- Wechat: paperacceptplease
- Face-to-Face: Free feel to tell with me when you meet me.
2. Publications
2.1. As the First Author
- Can a Single Message Paralyze the AI Infrastructure? The Rise of AbO-DDoS Attacks through Targeted Mobius Injection
Zi Liang, Ronghua Li, Yanyun Wang, Qingqing Ye, and Haibo Hu. -<Preprint'26> [Paper] [Code] - How Much Information Can a Vision Token Hold? A Scaling Law for Recognition Limits in VLMs Shuxin Zhuang*,
Zi Liang*, Runsheng Yu, Hongzong Li, Rong Feng, Shiqin Tang, and Youzhi Zhang. -<Preprint'26> [Paper] [Code] - Argus: Reorchestrating Static Analysis via a Multi-Agent Ensemble for Full-Chain Security Vulnerability Detection
Zi Liang, Qipeng Xie, Jun He, Bohuan Xue, Weizheng Wang, Yuandao Cai, Fei Luo, Boxian Zhang, Haibo Hu, and Kaishun Wu. -<Preprint'26> [Paper] [Code] - Beyond Prompt Engineering: A Systematic Analysis of Prompt Lexical Sensitivity and Its Impacts on Quality Qipeng Xie*,
Zi Liang*, Jiafei Wu, Yufei Chen, Weizheng Wang, Wenao Ma, Zhong Ming, Haiqin Yang, Kaishun Wu. -<ACL'26 findings> [Paper] [Code] - The Matthew Effect of AI Programming Assistants: A Hidden Bias in Software Evolution Fei Gu*,
Zi Liang*, Hongzong Li, and Jiahao Ma. -<ICLR'26> [Paper] [Code] - Decoding Web Memorization: A Semantic Membership
Inference Attack on LLMs. Zhiyao Wu*,
Zi Liang*, Haibo Hu. -<WWW'26> [Paper] [Code] - Decision Potential Surface: A Theoretical and Practical Approximation of LLM's Decision Boundary.
Zi Liang, Zhiyao Wu, Haoyang Shang, Yulin Jin, Qingqing Ye, Huadi Zheng, Peizhao Hu, and Haibo Hu. -<Arxiv Preprint'25> [Paper] [Code] - Virus Infection Attack on LLMs: Your Poisoning Can Spread "VIA" Synthetic Data
Zi Liang, Qingqing Ye, Xuan Liu, Yanyun Wang, Jianliang Xu, and Haibo Hu -<NeurIPS'25 Spotlight> [Paper] [Code] - How Much Do Large Language Model Cheat on Evaluation? Benchmarking Overestimation under the One-Time-Pad-Based Framework.
Zi Liang, Liantong Yu, Shiyu Zhang, Qingqing Ye, and Haibo Hu -<AAAI'26> [Paper] [Code] [Website] - "Yes, My LoRD." Guiding Language Model Extraction with Locality Reinforced Distillation.
Zi Liang, Qingqing Ye, Yanyun Wang, Sen Zhang, Yaxin Xiao, Ronghua Li, Jianliang Xu, and Haibo Hu - <ACL'25 main> [Paper] [Code] - Does Low Rank Adaptation Lead to Lower Robustness against Training-Time Attacks?
Zi Liang, Haibo Hu, Qingqing Ye, Yaxin Xiao, and Ronghua Li. -<ICML'25> [Paper] [Code] - Exploring Intrinsic Alignments within Text Corpus.
Zi Liang, Pinghui Wang, Ruofei Zhang, Haibo Hu, … - <AAAI'25, Oral> [Paper] [Code] - Why Are My Prompts Leaked? Unraveling Prompt Extraction Threats in Customized Large Language Models.
Zi Liang, Haibo Hu, Qingqing Ye, Yaxin Xiao, Haoyang Li - <Preprint> [Paper][Code] - MERGE: Fast Private Text Generation.
Zi Liang, P Wang, R Zhang, Nuo Xu, Shuo Zhang, Lifeng Xing… - <AAAI'24> [Paper] [Code] - How Extractable Are Edge LLMs? Ao Ding, Hongzong Li,
Zi Liang#, Zhanpeng Shi, Shuxin Zhuang, Shiqin Tang, Rong Feng, and Ping Lu. - <Preprint'26> [Paper]
2.2. As a Coauthor
- From Domains to Instances: Dual-Granularity Data Synthesis for LLM Unlearning. Xiaoyu Xu, Minxin Du, Zitong Li,
Zi Liang, Zhibiao Guo, Shiyu Zhang, Peizhao Hu, QIngqing Ye, Haibo Hu. - <ACL'26 Findings>. - New Paradigm of Adversarial Training: Breaking Inherent Trade-Off between Accuracy and Robustness via Dummy Classes. Yanyun Wang, Li Liu,
Zi Liang, Qingqing Ye, Haibo Hu. - <CVPR'26> Findings. - Class-feature Watermark: A Resilient Black-box Watermark Against Model Extraction Attacks. Yaxin Xiao, Qingqing Ye,
Zi Liang, Haoyang Li, Ronghua Li, Huadi Zheng, and Haibo Hu - <AAAI'26> - Reminiscence Attack on Residuals: Exploiting Approximate Machine Unlearning for Privacy. Yaxin Xiao, Qingqing Ye, Li Hu, Huadi Zheng, Haibo Hu,
Zi Liang, Haoyang Li, Yijie Jiao. - <ICCV'25> - Unlocking High-Fidelity Learning: Towards Neuron-Grained Model Extraction. Yaxin Xiao, Haibo Hu, Qingqing Ye, Li Tang,
Zi Liang, Huadi Zheng - <IEEE TDSC'25> - Cross-Modal 3D Representation with Multi-View Images and Point Clouds. Ziyang Zhou, Pinghui Wang,*~Zi Liang~*, Haitao Bai, Ruofei Zhang. - <CVPR'25>
- How Vital is the Jurisprudential Relevance: Law Article Intervened Legal Case Retrieval and Matching. Nuo Xu, Pinghui Wang,
Zi Liang, Junzhou Zhao, Xiaohong Guan <Preprint'25> - PAIR: Pre-denosing Augmented Image Retrieval Model for Defending Adversarial Patches. Ziyang Zhou, Pinghui Wang,
Zi Liang, Rruofei Zhang, Haitao Bai - <MM'24> - TSFool: Crafting Highly-Imperceptible Adversarial Time Series through Multi-Objective Attack. Yanyun Wang, Dehui Du, Haibo Hu,
Zi Liang, Yuanhao Liu - <ECAI'24> - Multi-action dialog policy learning from logged user feedback. Shuo Zhang, Junzhou Zhao, Pinghui Wang, T Wang,
Zi Liang, Jing Tao… - <AAAI'23>
3. Experiences
- 2016.09-2020.06: Bachelor Degree, in Northeastern University, on cybernetics (i.e., automation, or the Control Theory);
- 2020.09-2023.06: Master Degree, in the iMiss Group of Xi'an Jiaotong University, on software engineering and research for Conversational AI and NLP Security;
- 2023.11-now: PhD Student, in the The Hong Kong Polytechnic University in Hong Kong. Research of interests: AI safety, privacy and security and Natural Language Processing.
4. Contact Me
- GitHub: https://github.com/liangzid
- Mail: zi1415926.liang@connect.polyu.hk
- Google Scholar
- Wechat: paperacceptplease