Biography
A Principal Researcher with over 24 years at Microsoft (22 at MSRA, 3 in product teams) and 4 years of startup experience as co-founder and lead scientist of a multimedia watermarking firm. His research leadership spans trustworthy AI, AI security, applied security systems, privacy-preserving computation, authentication, CAPTCHA, web systems, and multimedia security, with successful product transfers (e.g., ransomware defense, malicious script detection, phishing/fraud detection, Bing index compression) and publications in top venues including USENIX Security, IEEE S&P, NeurIPS, ICML, and CVPR. Recently, he has driven applied research for M365 Copilot and Bing Core Search, focusing on LLM reasoning, prompt optimization, evaluation, and security readiness. He also leads Microsoft’s Secure Future Initiative (SFI) and security learning community, mentors students, and fosters collaborations with university partners across China, South Korea, and the U.S.
Education Experience
- -- - 1998 | University of Minnesota | Electrical Engineering; minor in Computer Science | Ph.D
- -- - 1993 | University of Minnesota | Electrical Engineering | M.Sc.
- -- - 1986 | University of Science and Technology of China | Physics | B.Sc.
Work Experience
- 2024 - 2026 | Microsoft, M365 Core | Principal Researcher
- 2023 - 2024 | Microsoft, Bing Core Search | Principal Researcher
- 2001 - 2023 | Microsoft Research Asia (MSRA) | Researcher / Lead Researcher / Principal Researcher
- 1997 - 2001 | Cognicity, Inc. | Lead Scientist and Co-Founder
Publications
- [1] S Guan, J Wang, J Bian, B Zhu, JG Lou, H Xiong, Evaluating llm-based agents for multi-turn conversations: A survey, ACM Transactions on Intelligent Systems and Technology, 17(4), 1-40 (2026)
- [2] H He, Y Li, BB Zhu, D Wen, R Cheng, FCM Lau, Fact2Fiction: Targeted poisoning attack to agentic fact-checking system, Proceedings of the AAAI Conference on Artificial Intelligence, 40(37), 30943 … (2026)
- [3] F Xu, H Hu, C He, S Hang, H Hu, X Liu, Y Zhao, Z Zhou, BB Zhu, SF Sun, ..., SoK: Robustness in Large Language Models against Jailbreak Attacks, IEEE Symposium on Security and Privacy (SP), 118-137 (2026)
- [4] X Liu, C He, X Yu, J Chai, F Xu, S Hang, H Hu, BB Zhu, H Hu, SF Sun, ..., Quantifying Large Language Model Attacks Through the Lens of Model Cognition, USENIX Security Symposium (2026)
- [5] Y Cai, C He, H Hu, R Liu, BB Zhu, D Zhang, C Hong, Z Huang, S Sun, ..., DP-RAG: An Efficient Full-Process Differential Privacy Implementation in Retrieval-Augmented Generation, IEEE Transactions on Information Forensics and Security (2026)
- [6] Y Wu, X Bai, S Li, P Hu, Z Zhou, Z Wang, X Ma, S Lu, Y Li, J Xuan, ..., Targeted Counterfactual Fingerprinting for Black-Box LLM Ownership Verification, arXiv, 2608.08195 (2026)
- [7] J Yi, Y Xie, J He, R Ye, J Huang, B Zhu, S Rintel, Y Xie, X Xie, F Wu, Learning behavior accounts for background-related advantage in AI-assisted education, arXiv, 2607.10101 (2026)
- [8] J Chen, Q Chu, H Yuan, T Gong, K Zhang, NH Yu, D Zhang, BB Zhu, PVDI: Preserving Vital and Disrupting Irrelevant Latent Attentions for Robust Backdoor Defense, IEEE Transactions on Information Forensics and Security (2026)
- [9] H Yuan, BB Zhu, Q Chu, T Gong, N Yu, D Zhang, ABDP: Adversarial Backdoor Detection and Purification, IEEE Transactions on Information Forensics and Security (2026)
- [10] Z Ling, P Hu, X Gao, X Ma, M Zhou, J Feng, S Lu, D Zhang, BB Zhu, Sirens' Whisper: Inaudible Near-Ultrasonic Jailbreaks of Speech-Driven LLMs, arXiv, 2603.13847 (2026)
- [11] J Yi, Y Xie, B Zhu, E Kiciman, G Sun, X Xie, F Wu, Benchmarking and defending against indirect prompt injection attacks on large language models, Proceedings of the 31st ACM SIGKDD Conference on Knowledge Discovery and … (2025)
- [12] S Yang, H Guo, S Hu, B Zhu, Y Fu, S Lyu, X Wu, X Wang, CrossDF: improving cross-domain deepfake detection with deep information decomposition, Frontiers in big Data, 8, 1669488 (2025)
- [13] S Li, C He, X Ma, BB Zhu, S Wang, H Hu, D Zhang, L Yu, Enhancing adversarial transferability with checkpoints of a single model’s training, IEEE/CVF Conference on Computer Vision and Pattern Recognition (2025)
- [14] X Bai, P Hu, X Ma, L Yu, D Zhang, Q Zhang, BB Zhu, ESF: Efficient sensitive fingerprinting for black-box tamper detection of large language models, Findings of the Association for Computational Linguistics: ACL, 2025, 10477-10494 (2025)
- [15] X Bai, S Li, X Ma, BB Zhu, D Zhang, L Yu, SDBF: Steep-Decision-Boundary Fingerprinting for Hard-Label Tampering Detection of DNN Models, IEEE/CVF Conference on Computer Vision and Pattern Recognition (2025)
- [16] P Hu, X Bai, X Ma, C He, D Zhang, BB Zhu, RESF: Regularized-Entropy-Sensitive Fingerprinting for Black-Box Tamper Detection of Large Language Models, Proceedings of the 2025 Conference on Empirical Methods in Natural Language (2025)
- [17] S Hang, C He, H Hu, H Hu, BB Zhu, SF Sun, D Gu, S Wang, Malicious Image Analysis via Vision-Language Segmentation Fusion: Detection, Element, and Location in One-shot, arXiv, 2512.04599 (2025)
- [18] S Li, Z Li, X Ma, X Bai, P Hu, D Zhang, BB Zhu, Consensus-Robust Transfer Attacks via Parameter and Representation Perturbations, The Thirty-ninth Annual Conference on Neural Information Processing Systems (2025)
- [19] J Yi, R Ye, Q Chen, BB Zhu, S Chen, D Lian, G Sun, X Xie, F Wu, On the vulnerability of safety alignment in open-access llms, Findings of the Association for Computational Linguistics: ACL, 2024, 9236-9260 (2024)
- [20] LY Yurong Wu, Yan Gao, Bin Benjamin Zhu, Zineng Zhou, Xiaodi Sun, Sheng Yang ..., StraGo: Harnessing Strategic Guidance for Prompt Optimization, Findings of the Association for Computational Linguistics: EMNLP, 2024, 10043 … (2024)
- [21] C He, X Ma, BB Zhu, Y Zeng, H Hu, X Bai, H Jin, D Zhang, DorPatch: Distributed and occlusion-robust adversarial patch to evade certifiable defenses, Network and Distributed System Security Symposium (NDSS), 2024 (2024)
- [22] LY Sheng Yang, Yurong Wu, Yan Gao, Zineng Zhou, Bin Benjamin Zhu, Xiaodi Sun ..., AMPO: Automatic Multi-Branched Prompt Optimization, Conference on Empirical Methods in Natural Language Processing, 20267–20279 (2024)
- [23] W Yin, BB Zhu, Y Xie, P Zhou, D Feng, Backdoor attacks on bimodal salient object detection with rgb-thermal data, Proceedings of the 32nd ACM International Conference on Multimedia, 4110-4119 (2024)
- [24] P Zheng, H Chen, S Hu, B Zhu, J Hu, CS Lin, X Wu, S Lyu, G Huang, ..., Few-shot learning for misinformation detection based on contrastive models, Electronics, 13(4), 799 (2024)
- [25] B Xiaofan, C He, X Ma, BB Zhu, H Jin, Intersecting-boundary-sensitive fingerprinting for tampering detection of DNN models, Forty-first International Conference on Machine Learning (2024)
- [26] L Zhang, H Chen, S Hu, B Zhu, CS Lin, X Wu, J Hu, X Wang, X-transfer: A transfer learning-based framework for gan-generated fake image detection, 2024 International Joint Conference on Neural Networks (IJCNN), 1-8 (2024)
- [27] C He, X Bai, X Ma, BB Zhu, P Hu, J Fu, H Jin, D Zhang, Towards stricter black-box integrity verification of deep neural network models, Proceedings of the 32nd ACM International Conference on Multimedia, 9875-9884 (2024)
- [28] C He, Y Zeng, X Ma, BB Zhu, Z Li, S Li, H Jin, MysticMask: Adversarial mask for impersonation attack against face recognition systems, 2024 IEEE International Conference on Multimedia and Expo (ICME), 1-6 (2024)
- [29] W Peng, J Yi, F Wu, S Wu, BB Zhu, L Lyu, B Jiao, T Xu, G Sun, X Xie, Are you copying my model? protecting the copyright of large language models for eaas via backdoor watermark, Proceedings of the 61st Annual Meeting of the Association for Computational … (2023)
- [30] S Park, S Han, F Wu, S Kim, B Zhu, X Xie, M Cha, Feddefender: Client-side attack-tolerant federated learning, Proceedings of the 29th ACM SIGKDD conference on knowledge discovery and … (2023)
- [31] S Han, S Park, F Wu, S Kim, B Zhu, X Xie, M Cha, Towards attack-tolerant federated learning via critical parameter analysis, 2023 IEEE/CVF International Conference on Computer Vision (ICCV), 4976-4985 (2023)
- [32] J Yi, F Wu, B Zhu, J Yao, Z Tao, G Sun, X Xie, UA-FedRec: Untargeted attack on federated news recommendation, Proceedings of the 29th ACM SIGKDD conference on knowledge discovery and … (2023)
- [33] J Fu, X Ma, BB Zhu, P Hu, R Zhao, Y Jia, P Xu, H Jin, D Zhang, Focusing on Pinocchio’s Nose: A Gradients Scrutinizer to Thwart Split-Learning Hijacking Attacks Using Intrinsic Attributes, Network and Distributed System Security (NDSS) Symposium (2023)
- [34] H Chen, P Zheng, X Wang, S Hu, B Zhu, J Hu, X Wu, S Lyu, Harnessing the power of text-image contrastive models for automatic detection of online misinformation, IEEE/CVF Conference on Computer Vision and Pattern Recognition (2023)
- [35] L Zhang, H Chen, S Hu, B Zhu, X Wu, J Hu, X Wang, X-transfer: A transfer learning-based framework for robust gan-generated fake image detection, arXiv, 2310.04639 (2023)
- [36] Y Xiang, X Wang, S Hu, B Zhu, X Huang, X Wu, S Lyu, Rmbench: Benchmarking deep reinforcement learning for robotic manipulator control, IEEE/RSJ International Conference on Intelligent Robots and Systems (2023)
- [37] X Wang, Z Luo, J Hu, C Feng, S Hu, B Zhu, X Wu, S Lyu, Deep reinforcement learning for image-to-image translation, arXiv, 2309.13672 (2023)
- [38] C Feng, J Hu, X Wang, S Hu, B Zhu, X Wu, H Zhu, S Lyu, Controlling neural style transfer with deep reinforcement learning, Proceedings of the Thirty-Second International Joint Conference on … (2023)
- [39] J Hu, Z Luo, C Feng, S Hu, B Zhu, X Wu, X Li, H Zhu, S Lyu, X Wang, RL-I2IT: Image-to-image translation with deep reinforcement learning, arXiv, 2309.13672 (2023)
- [40] L Huang, W Cui, B Zhu, H Zhang, Visually analysing the fairness of clustered federated learning with non-iid data, 2023 International Joint Conference on Neural Networks (IJCNN), 01-10 (2023)
- [41] Y Xie, S Hu, X Wang, Q Liao, B Zhu, X Wu, S Lyu, Attacking important pixels for anchor-free detectors, arXiv, 2301.11457 (2023)
- [42] X Zhang, X Wang, C Shi, Z Yan, X Li, B Kong, S Lyu, B Zhu, J Lv, Y Yin, ..., De-gan: Domain embedded gan for high quality face image inpainting, Pattern Recognition, 124, 108415 (2022)
- [43] W Pu, J Hu, X Wang, Y Li, S Hu, B Zhu, R Song, Q Song, X Wu, S Lyu, Learning a deep dual-level network for robust DeepFake detection, Pattern Recognition, 130, 108832 (2022)
- [44] Y Zhang, Y Wang, H Zhang, B Zhu, S Chen, D Zhang, Onelabeler: A flexible system for building data labeling tools, Proceedings of the 2022 CHI conference on human factors in computing systems (2022)
- [45] Y Ko, B Zhu, J Kim, Fuzzing with automatically controlled interleavings to detect concurrency bugs, Journal of Systems and Software, 191, 111379 (2022)
- [46] C Liu, X Ma, S Cao, J Fu, BB Zhu, Privacy-preserving motion detection for HEVC-compressed surveillance video, ACM Transactions on Multimedia Computing, Communications, and Applications … (2022)
- [47] J Fu, BB Zhu, H Zhang, Y Zou, S Ge, W Cui, Y Wang, D Zhang, X Ma, ..., Chartstamp: Robust chart embedding for real-world applications, Proceedings of the 30th ACM International Conference on Multimedia, 2786-2795 (2022)
- [48] J Yi, F Wu, H Zhang, B Zhu, T Qi, G Sun, X Xie, Robust quantity-aware aggregation for federated learning, arXiv, 2205.10848 (2022)
- [49] D Lin, Y Fu, X Wang, S Hu, B Zhu, Q Song, X Wu, S Lyu, Contrastive class-specific encoding for few-shot object detection, IEEE International Conference on Multimedia and Expo (ICME), 1-6 (2022)
- [50] S Ji, N Park, D Na, B Zhu, J Kim, Defending against attacks tailored to transfer learning via feature distancing, Computer Vision and Image Understanding, 223, 103533 (2022)
- [51] B Zhu, H Zhang, Y Tang, H Huang, S Ge, Data embedding and data extraction in image, US Patent App. 17/615, 087 (2022)
- [52] Q Liao, Y Li, X Wang, B Kong, B Zhu, S Lyu, Y Yin, Q Song, X Wu, Imperceptible adversarial examples for fake image detection, arXiv, 2106.01615 (2021)
- [53] Q Liao, X Wang, B Kong, S Lyu, B Zhu, Y Yin, Q Song, X Wu, Transferable adversarial examples for anchor free object detection, arXiv, 2106.01618 (2021)
- [54] C He, BB Zhu, X Ma, H Jin, S Hu, Feature-indistinguishable attack to circumvent trapdoor-enabled defense, Proceedings of the 2021 ACM SIGSAC Conference on Computer and Communications (2021)
- [55] J Fu, B Zhu, W Cui, S Ge, Y Wang, H Zhang, H Huang, Y Tang, D Zhang, ..., Chartem: Reviving chart images with data embedding, IEEE Transactions on Visualization and Computer Graphics, 27(2), 337-346 (2020)
- [56] Y Qian, FKP Soong, BB Zhu, Audio human interactive proof based on text-to-speech and semantics, US Patent 10,319, 363 (2019)
- [57] Y Tang, B Zhu, X Ma, PT Mathiopoulos, X Xie, H Huang, Decoding homomorphically encrypted flac audio without decryption, ICASSP (2019)
- [58] T Kang, S Ji, H Jeong, B Zhu, J Kim, WearAuth: wristwear-assisted user authentication for smartphones using wavelet-based multi-resolution analysis, IEICE TRANSACTIONS on Information and Systems, 102(10), 1976-1992 (2019)
- [59] C Liu, D Zou, P Luo, BB Zhu, H Jin, A heuristic framework to detect concurrency vulnerabilities, Proceedings of the 34th annual computer security applications conference (2018)
- [60] X Ma, B Zhu, T Zhang, S Cao, H Jin, D Zou, Efficient privacy-preserving motion detection for HEVC compressed video in cloud video surveillance, IEEE INFOCOM (2018)
- [61] X Ma, H Peng, H Jin, B Zhu, Privacy-preserving cloud-based video surveillance with adjustable granularity of privacy protection, 25th IEEE International Conference on Image Processing (ICIP), 4133-4137 (2018)
- [62] X Ma, C Liu, S Cao, BB Zhu, JPEG decompression in the homomorphic encryption domain, Proceedings of the 26th ACM international conference on Multimedia, 905-913 (2018)
- [63] J Shao, M Feng, BB Zhu, Fair payment protocol with semi-trusted third party, US Patent 9,563, 881 (2017)
- [64] J Liu, BB Zhu, Q Li, S Li, N Xu, Image-based CAPTCHA exploiting context in object recognition, US Patent 9,317, 676 (2016)
- [65] F Xue, BB Zhu, W Chu, Malicious uniform resource locator detection, US Patent 9,178, 901 (2015)
- [66] BB Zhu, R Guo, M Feng, A Pan, Component-oriented architecture for web mashups, US Patent 9,009, 657 (2015)
- [67] BB Zhu, L Xu, Manipulable human interactive proofs, US Patent 8,990, 959 (2015)
- [68] BB Zhu, F Xue, Machine-learning based classification of user accounts based on email addresses and other account information, US Patent 9,189, 746 (2015)
- [69] BB Zhu, M Yang, X Yang, S Li, Multi-touch text input, US Patent 10,126, 941 (2015)
- [70] BB Zhu, K Zhang, Structure-based adaptive document caching, US Patent 9,195, 773 (2015)
- [71] W Li, B Zhu, N Xu, J Liu, Overlay human interactive proof system and techniques, US Patent 8,935, 767 (2015)
- [72] T Seyed, XD Yang, A Tang, S Greenberg, J Gu, B Zhu, X Cao, Ciphercard: a token-based approach against camera-based shoulder surfing attacks on common touchscreen devices, IFIP Conference on Human-Computer Interaction, 436-454 (2015)
- [73] B Zhu, L Zhang, G Xu, Y Xu, System and Method for Application Sharing, US Patent App. 13/932, 208 (2015)
- [74] LR Zhang, B Zhu, ZJ Zhou, HJ Wang, G Xu, L Zhu, Online and offline cooperation to obtain input to augment recording of meeting, US Patent App. 14/077, 483 (2015)
- [75] BB Zhu, J Yan, G Bao, M Yang, N Xu, Captcha as graphical passwords—A new security primitive based on hard AI problems, IEEE transactions on information forensics and security, 9(6), 891-904 (2014)
- [76] Q Ye, Y Chen, B Zhu, The robustness of a new 3D CAPTCHA, 11th IAPR International Workshop on Document Analysis Systems, 319-323 (2014)
- [77] BB Zhu, J Yan, D Wei, M Yang, Security analyses of click-based graphical passwords via image point memorability, Proceedings of the 2014 ACM SIGSAC Conference on Computer and Communications (2014)
- [78] A Pan, K Zhang, B Zhu, Disassembling an executable binary, US Patent 8,869, 109 (2014)
- [79] BB Zhu, H Choi, H Lee, Detection and categorization of malicious URLs, US Patent 8,521, 667 (2013)
- [80] W Chu, BB Zhu, F Xue, X Guan, Z Cai, Protect sensitive sites from phishing attacks using features extractable from inaccessible phishing URLs, 2013 IEEE international conference on communications (ICC), 1990-1994 (2013)
- [81] BB Zhu, A Pan, K Zhang, S Li, Cooperative rendering cache for mobile browser, US Patent 8,539, 338 (2013)
- [82] BB Zhu, G Bao, M Yang, N Xu, Security primitives employing hard artificial intelligence problems, US Patent App. 13/273, 841 (2013)
- [83] BB Zhu, D Wei, M Yang, J Yan, Security implications of password discretization for click-based graphical passwords, Proceedings of the 22nd international conference on World Wide Web, 1581-1591 (2013)
- [84] W Li, BB Zhu, H Xin, N Xu, J Liu, Tearing and conformal transformation human interactive proof, US Patent 8,359, 394 (2013)
- [85] BB Zhu, J Yan, Towards new security primitives based on hard AI problems, Cambridge International Workshop on Security Protocols (2013)
- [86] J Seo, S Cha, B Zhu, D Bae, PC worm detection system based on the correlation between user interactions and comprehensive network behaviors, IEICE TRANSACTIONS on Information and Systems, 96(8), 1716-1726 (2013)
- [87] B Zhu, M Feng, X Yin, Y Yang, Y Zhang, J Shao, Mobile device assisted secure computer network communication, US Patent 8,209, 744 (2012)
- [88] BB Zhu, M Feng, Distributed single sign on technologies including privacy protection and proactive updating, US Patent 9,118, 463 (2012)
- [89] A Pan, K Zhang, H Long, BB Zhu, Secure control flows by monitoring control transfers, US Patent 8,117, 660 (2012)
- [90] S Li, Y Yang, BB Zhu, R Guo, L Yang, Comprehensive human computation framework, US Patent 9,424, 516 (2012)
- [91] A Tewfik, B Zhu, M Swanson, Embedding data in audio and detecting embedded data in audio, US Patent 8,306, 811 (2012)
- [92] BB Zhu, M Feng, A Pan, Y Kong, NC Sherman, H Fan, R Guo, J Benaloh, Security-enhanced log in, US Patent 8,140, 855 (2012)
- [93] A Pan, BB Zhu, K Zhang, L Wang, Parallel web page processing, US Patent App. 12/914, 638 (2012)
- [94] BB Zhu, Q Dai, Human User Verification, US Patent App. 13/091, 964 (2012)
- [95] A Tewfik, B Zhu, M Swanson, Watermarking using multiple watermarks and keys, including keys dependent on the host signal, US Patent 8,131, 007 (2012)
- [96] J Shao, B Zhu, M Feng, Efficient certified email protocol, US Patent 8,341, 410 (2012)
- [97] A Tewfik, MD Swanson, B Zhu, Multimedia data embedding and decoding, US Patent 8,103, 051 (2012)
- [98] A Tewfik, B Zhu, M Swanson, Video watermarking using temporal analysis, US Patent 8,155, 375 (2012)
- [99] A Tewfik, B Zhu, M Swanson, Embedding data in and detecting embedded data from video objects, US Patent 8,090, 142 (2012)
- [100] H Choi, BB Zhu, H Lee, Detecting malicious web links and identifying their attack types, 2nd USENIX Conference on web application development (WebApps 11) (2011)
- [101] B Zhu, X Wang, S Li, Peer-to-peer networks with protections, US Patent 7,987, 368 (2011)
- [102] B Zhu, M Feng, Content encryption schema for integrating digital rights management with encrypted multicast, US Patent 7,978, 848 (2011)
- [103] B Zhu, CW Chen, S Li, Y Yang, MPEG-4 encryption enabling transcoding without decryption, US Patent 7,953, 224 (2011)
- [104] BB Zhu, J Yan, Q Li, C Yang, J Liu, N Xu, M Yi, K Cai, Attacks and design of image recognition CAPTCHAs, Proceedings of the 17th ACM conference on Computer and communications (2010)
- [105] B Zhu, T Chen, S Li, Distributed single sign-on service, US Patent 7,690, 026 (2010)
- [106] K Zhang, L Wang, A Pan, BB Zhu, Smart caching for web browsers, Proceedings of the 19th international conference on World wide web, 491-500 (2010)
- [107] B Zhu, Y Yang, S Li, Locally interative encryption generating compliant ciphertext for general syntax specifications, US Patent 7,769, 168 (2010)
- [108] J Shao, M Feng, B Zhu, Z Cao, P Liu, The security model of unidirectional proxy re-signature with private re-signature key, Australasian Conference on Information Security and Privacy, 216-232 (2010)
- [109] B Zhu, M Feng, R Guo, Securing Communications for Web Mashups, US Patent App. 12/351, 198 (2010)
- [110] B Zhu, M Feng, S Li, Secure key management for scalable codestreams, US Patent 7,644, 445 (2010)
- [111] A Pan, BB Zhu, J Cao, Z Li, J Wang, Diagnosis of application performance problems via analysis of thread dependencies, US Patent App. 12/141, 948 (2009)
- [112] M Feng, BB Zhu, J Shao, Unidirectional multi-use proxy re-signature process, US Patent App. 12/146, 480 (2009)
- [113] B Zhu, M Feng, S Li, Elliptic curve point multiplication, US Patent 7,602, 907 (2009)
- [114] M Feng, BB Zhu, Digital rights management system protecting consumer privacy, US Patent App. 11/970, 161 (2009)
- [115] B Zhu, R Guo, M Feng, A Pan, System to facilitate online shopping, US Patent App. 12/129, 701 (2009)
- [116] X Zhang, B Zhu, System and Method for Separated Image Compression, US Patent App. 12/425, 255 (2009)
- [117] K Zhang, L Wang, X Guo, A Pan, BB Zhu, WPBench: a benchmark for evaluating the client-side performance of web 2.0 applications, Proceedings of the 18th international conference on World wide web, 1111-1112 (2009)
- [118] Y Yang, BB Zhu, R Guo, L Yang, S Li, N Yu, A comprehensive human computation framework: with application to image labeling, Proceedings of the 16th ACM international conference on Multimedia, 479-488 (2008)
- [119] A Tewfik, MD Swanson, B Zhu, Digital watermarking of tonal and non-tonal components of media signals, US Patent 7,454, 034 (2008)
- [120] B Zhu, J Wu, S Li, Secure image authentication with discrete level tamper localization, US Patent 7,454, 797 (2008)
- [121] M Feng, B Zhu, A DRM system protecting consumer privacy, IEEE Consumer Communications and Networking Conference, 1075-1079 (2008)
- [122] R Guo, BB Zhu, M Feng, A Pan, B Zhou, Compoweb: a component-oriented web architecture, Proceedings of the 17th international conference on World Wide Web, 545-554 (2008)
- [123] B Zhu, M Feng, F Liu, L Hu, Analysis on AACS'Traitor Tracing Against Mix-and-Match Attacks, IEEE Consumer Communications and Networking Conference, 1097-1101 (2008)
- [124] Y Yang, BB Zhu, S Li, N Yu, Efficient and Syntax-Compliant JPEG 2000 Encryption Preserving Original Fine Granularity of Scalability, EURASIP Journal on Information Security, 2007(1), 056365 (2007)
- [125] M Feng, B Zhu, When DRM Meets Restricted Multicast: A Content Encryption Key Scheme for Multicast Encryption and DRM, IEEE Consumer Communications and Networking Conference, 1048-1052 (2007)
- [126] J Shao, M Feng, B Zhu, Z Cao, An efficient certified email protocol, Information security: 10th international conference, ISC, 2007, Valparaíso … (2007)
- [127] F Wu, X Sun, G Bai, B Zhu, File storage for scalable media, US Patent App. 11/170, 765 (2006)
- [128] M Feng, BB Zhu, C Zhao, S Li, Signed MSB-set comb method for elliptic curve point multiplication, International Conference on Information Security Practice and Experience (2006)
- [129] B Zhu, S Li, Y Yang, Jpeg2000 syntax-compliant encryption with full scalability, US Patent App. 11/419, 468 (2006)
- [130] BB Zhu, Multimedia encryption, Multimedia Security Technologies for Digital Rights Management, 75-109 (2006)
- [131] B Zhu, Y Yang, S Li, Ciphertext switching for syntax compliant encryption, US Patent App. 11/081, 279 (2006)
- [132] BB Zhu, Y Yang, S Li, An efficient key scheme for multiple access of JPEG 2000 and motion JPEG 2000 enabling truncations., CCNC, 1124(1128) (2006)
- [133] BB Zhu, Scalable Encryption and Multi-Access Control for Multimedia, Multimedia Security Technologies for Digital Rights Management, 275-302 (2006)
- [134] BB Zhu, C Yuan, Y Wang, S Li, Scalable protection for MPEG-4 fine granularity scalability, IEEE transactions on multimedia, 7(2), 222-233 (2005)
- [135] B Zhu, G Gu, S Li, Digital rights management system, US Patent App. 10/685, 234 (2005)
- [136] B Zhu, M Feng, S Li, Scalable layered access control for multimedia, US Patent App. 10/869, 280 (2005)
- [137] A Tewfik, MD Swanson, B Zhu, Transactional watermarking, US Patent 6,915, 481 (2005)
- [138] M Feng, BB Zhu, M Xu, S Li, Efficient Comb Elliptic Curve Multiplication Methods Resistant to Power Analysis., IACR Cryptol. ePrint Arch., 2005, 222 (2005)
- [139] BB Zhu, Y Yang, S Li, JPEG 2000 syntax-compliant encryption preserving full scalability, IEEE International Conference on Image Processing 2005, 3, III-636 (2005)
- [140] BB Zhu, S Li, M Feng, A framework of scalable layered access control for multimedia, IEEE International Symposium on Circuits and Systems (ISCAS), 2703-2706 (2005)
- [141] BB Zhu, S Li, Y Yang, JPEG 2000 encryption enabling fine granularity scalability without decryption, IEEE International Symposium on Circuits and Systems (ISCAS), 6304-6307 (2005)
- [142] T Chen, BB Zhu, S Li, X Cheng, Threspassport–a distributed single sign-on service, International Conference on Intelligent Computing, 771-780 (2005)
- [143] BB Zhu, Y Yang, T Chen, A DRM system supporting what you see is what you pay, International Conference on Digital Rights Management, 341-355 (2005)
- [144] BB Zhu, M Feng, S Li, Secure key management for flexible digital rights management of scalable codestreams, IEEE 7th Workshop on Multimedia Signal Processing, 1-4 (2005)
- [145] BB Zhu, Y Yang, CW Chen, S Li, Fine granularity scalability encryption of MPEG-4 FGS bitstreams, IEEE 7th Workshop on Multimedia Signal Processing, 1-4 (2005)
- [146] Z Zhao, M Lin, Y Lin, B Zhu, L Huang, X Gao, A codec with full scalabilities based on SVC technique, IEEE International Symposium on Communications and Information Technology … (2005)
- [147] Y Zhao, SHC Cheung, B Zang, B Zhu, A note on the Cramer-Damgård identification scheme, International Workshop on Internet and Network Economics, 385-390 (2005)
- [148] X Wang, B Zhu, S Li, A novel privacy and copyright protection enforced peer-to-peer network, International Conference on Digital Rights Management, 298-310 (2005)
- [149] BB Zhu, Y Yang, CW Chen, S Li, Optimal packetization of fine granularity scalability codestreams for error-prone channels, IEEE International Conference on Image Processing 2005, 2, II-185 (2005)
- [150] BB Zhu, S Li, Content and License Roaming for eHome DRM Applications, IEEE Consumer Communications & Networking Conference (CCNC) Workshop on … (2005)
- [151] BB Zhu, MD Swanson, AH Tewfik, When seeing isn't believing [multimedia authentication technologies], IEEE Signal Processing Magazine, 21(2), 40-49 (2004)
- [152] B Zhu, C Yuan, S Li, Scalable, error resilient DRM for scalable media, US Patent App. 10/405, 973 (2004)
- [153] A Tewfik, MD Swanson, B Zhu, Digital watermark detecting with weighting functions, US Patent 6,751, 337 (2004)
- [154] B Zhu, C Yuan, Y Wang, S Li, Fully scalable encryption for scalable multimedia, US Patent App. 10/405, 970 (2004)
- [155] BB Zhu, MD Swanson, S Li, Encryption and authentication for scalable multimedia: Current state of the art and challenges, Proc. SPIE, 5601, 157-170 (2004)
- [156] BB Zhu, M Feng, S Li, An efficient key scheme for layered access control of MPEG-4 FGS video, IEEE International Conference on Multimedia and Expo (ICME) (2004)
- [157] J Wu, BB Zhu, S Li, F Lin, A secure image authentication algorithm with pixel-level tamper localization, 2004 International Conference on Image Processing, 2004. ICIP'04., 3, 1573-1576 (2004)
- [158] J Wu, BB Zhu, S Li, F Lin, Efficient oracle attacks on Yeung-Mintzer and variant authentication schemes, IEEE International Conference on Multimedia and Expo (ICME) (2004)
- [159] J Wu, BB Zhu, S Li, F Lin, New attacks on sari image authentication system, Security, Steganography, and Watermarking of Multimedia Contents VI, 5306 (2004)
- [160] C Yuan, BB Zhu, Y Wang, S Li, Y Zhong, Efficient and fully scalable encryption for MPEG-4 FGS, 2003 IEEE International Symposium on Circuits and Systems (ISCAS), 2, II-II (2003)
- [161] C Yuan, BB Zhu, M Su, X Wang, S Li, Y Zhong, Layered access control for MPEG-4 FGS video, Proceedings 2003 International Conference on Image Processing (2003)
- [162] BB Zhu, MD Swanson, Multimedia authentication and watermarking, Multimedia Information Retrieval and Management: Technological Fundamentals … (2003)
- [163] G Gu, BB Zhu, S Li, S Zhang, PLI: A new framework to protect digital content for P2P networks, International Conference on Applied Cryptography and Network Security, 206-216 (2003)
- [164] A Tewfik, MD Swanson, B Zhu, Multimedia data embedding, US Patent 6,442, 283 (2002)
- [165] MD Swanson, B Zhu, AH Tewfik, Multiresolution and object-based video watermarking using perceptual models, Wavelet, Subband and Block Transforms in Communications and Multimedia, 323-350 (2002)
- [166] AH Tewfik, MD Swanson, B Zhu, Digital watermarking to resolve multiple claims of ownership, US Patent 6,272, 634 (2001)
- [167] AH Tewfik, MD Swanson, B Zhu, Method and apparatus for scene-based video watermarking, US Patent 6,226, 387 (2001)
- [168] AH Tewfik, MD Swanson, B Zhu, Method and apparatus for video watermarking using perceptual masks, US Patent 6,282, 299 (2001)
- [169] AH Tewfik, MD Swanson, B Zhu, L Boney, Method and apparatus for embedding data, including watermarks, in human perceptible sounds, US Patent 6,061, 793 (2000)
- [170] AH Tewfik, MD Swanson, B Zhu, Method and apparatus for embedding data, including watermarks, in human perceptible images, US Patent 6,031, 914 (2000)
- [171] MD Swanson, B Zhu, AH Tewfik, Current state of the art, challenges and future directions for audio watermarking, Proceedings IEEE International Conference on Multimedia Computing and … (1999)
- [172] B Zhu, E Yang, AH Tewfik, Arithmetic coding with dual symbol sets and its performance analysis, IEEE transactions on Image Processing, 8(12), 1667-1676 (1999)
- [173] B Zhu, Coding and data hiding for multimedia, University of Minnesota (1999)
- [174] AH Tewfik, MD Swanson, B Zhu, Data embedding in audio: Where do we stand, IEEE International Conference on Acoustics, Speech, and Signal (1999)
- [175] MD Swanson, B Zhu, AH Tewfik, L Boney, Robust audio watermarking using perceptual masking, Signal processing, 66(3), 337-355 (1998)
- [176] MD Swanson, B Zhu, AH Tewfik, Multiresolution scene-based video watermarking using perceptual models, IEEE journal on selected areas in communications, 16(4), 540-550 (1998)
- [177] MD Swanson, B Zhu, AH Tewfik, Audio watermarking and data embedding–current state of the art, challenges and future directions, Multimedia and Security Workshop at ACM Multimedia, 41 (1998)
- [178] MD Swanson, B Zhu, AH Tewfik, Data hiding for video-in-video, Proceedings of International Conference on Image Processing, 2, 676-679 (1997)
- [179] MD Swanson, B Zhu, B Chau, AH Tewfik, Object-based transparent video watermarking, Proceedings of First Signal Processing Society Workshop on Multimedia Signal … (1997)
- [180] MD Swanson, B Zhu, B Chau, AH Tewfik, Multiresolution video watermarking using perceptual models and scene segmentation, Proceedings of International Conference on Image Processing, 2, 558-561 (1997)
- [181] B Zhu, AH Tewfik, Media compression via data hiding, Conference Record of the Thirty-First Asilomar Conference on Signals … (1997)
- [182] B Zhu, MD Swanson, AH Tewfik, Image coding by folding, Proceedings of International Conference on Image Processing, 2, 665-668 (1997)
- [183] MD Swanson, B Zhu, AH Tewfik, Video data hiding for video-in-video and other applications, Multimedia Storage and Archiving Systems II, 3229, 32 (1997)
- [184] MD Swanson, B Zhu, AH Tewfik, Transparent robust image watermarking, Proceedings of 3rd IEEE International Conference on Image Processing, 3, 211-214 (1996)
- [185] MD Swanson, B Zhu, AH Tewfik, Robust data hiding for images, 7th Digital Signal Processing Workshop (DSP 96), 37-40 (1996)
- [186] B Zhu, MD Swanson, AH Tewfik, Transparent robust authentication and distortion measurement technique for images, 1996 IEEE Digital Signal Processing Workshop Proceedings, 45-48 (1996)
- [187] B Zhu, E Yang, AH Tewfik, JC Kieffer, Efficient coding of wavelet trees and its applications in image coding, Visual Communications and Image Processing'96, 2727, 512-523 (1996)
- [188] B Zhu, E Yang, AH Tewfik, Dual set arithmetic coding and its applications to image coding, 1996 8th European Signal Processing Conference (EUSIPCO 1996), 1-4 (1996)
- [189] B Zhu, AH Tewfik, ON Gerek, Low bit rate near transparent image coding, PROCEEDINGS-SPIE THE INTERNATIONAL SOCIETY FOR OPTICAL ENGINEERING, 173-173 (1995)
- [190] B Zhu, AH Tewfik, ON Gerek, Image coding with mixed representations and visual masking, International Conference on Acoustics, Speech, and Signal Processing (1995)
- [191] B Zhu, AH Tewfik, MA Colestock, ON Gerek, AE Cetin, Image coding with wavelet representations, edge information and visual masking, Proceedings., International Conference on Image Processing, 1, 582-585 (1995)
- [192] C He, H Hu, X Yu, BB Zhu, H Hu, S Sun, D Gu, S Wang, Tampering Detection for Pre-trained Encoders Using Fingerprintwins
- [193] S Li, X Ma, P Hu, X Bai, S Lu, D Zhang, BB Zhu, Towards Reliable Transferability of Targeted Adversarial Attacks against Model Discrepancy
- [194] P Hu, J Zheng, X Ma, X Bai, S Li, S Lu, D Zhang, BB Zhu, Camouflage Patching: Effective Jailbreak Attacks on Single-and Multimodal LLMs
Update Time: 2026-09-03 08:00:07