研究员 朱斌

朱斌

研究员
单位: 北京雁栖湖应用数学研究院
研究方向: 人工智能
办公室: A3-3-202
邮箱: zhubin@bimsa.cn

个人简介

一位在微软任职超过24年的首席研究员(其中22年服务于微软亚洲研究院,3年投身产品团队),并拥有4年多媒体水印初创公司联合创始人兼首席科学家的创业经验。其研究领导力覆盖可信AI、AI安全、应用安全系统、隐私计算、用户认证、验证码、Web系统及多媒体安全等领域,研究成果不仅成功转移至微软产品(如勒索软件防御、恶意脚本检测、钓鱼欺诈识别、Bing索引压缩等),还在USENIX Security、IEEE S&P、NeurIPS、ICML、CVPR等顶级会议发表大量论文。近期专注于M365 Copilot和Bing核心搜索的研发,主导LLM推理、提示优化、评估框架及安全就绪工作,同时领导微软安全未来倡议(SFI)和安全学习社区,擅长定义模糊问题、指导培养学生,并推动与中国、韩国、美国高校及产品团队的合作。

教育经历

  • -- - 1998 | 明尼苏达大学 | 电气工程,辅修计算机科学 | 博士
  • -- - 1993 | 明尼苏达大学 | 电气工程 | 硕士
  • -- - 1986 | 中国科学技术大学 | 物理学 | 学士

工作经历

  • 2024 - 2026 | 微软(M365 Core) | 首席研究员
  • 2023 - 2024 | 微软(Bing核心搜索) | 首席研究员
  • 2001 - 2023 | 微软亚洲研究院(MSRA) | 研究员 / 高级研究员 / 首席研究员
  • 1997 - 2001 | Cognicity, Inc. | 首席科学家、联合创始人

出版物

  • [1] S Guan, J Wang, J Bian, B Zhu, JG Lou, H Xiong, Evaluating llm-based agents for multi-turn conversations: A survey, ACM Transactions on Intelligent Systems and Technology, 17(4), 1-40 (2026)
  • [2] H He, Y Li, BB Zhu, D Wen, R Cheng, FCM Lau, Fact2Fiction: Targeted poisoning attack to agentic fact-checking system, Proceedings of the AAAI Conference on Artificial Intelligence, 40(37), 30943 … (2026)
  • [3] F Xu, H Hu, C He, S Hang, H Hu, X Liu, Y Zhao, Z Zhou, BB Zhu, SF Sun, ..., SoK: Robustness in Large Language Models against Jailbreak Attacks, IEEE Symposium on Security and Privacy (SP), 118-137 (2026)
  • [4] X Liu, C He, X Yu, J Chai, F Xu, S Hang, H Hu, BB Zhu, H Hu, SF Sun, ..., Quantifying Large Language Model Attacks Through the Lens of Model Cognition, USENIX Security Symposium (2026)
  • [5] Y Cai, C He, H Hu, R Liu, BB Zhu, D Zhang, C Hong, Z Huang, S Sun, ..., DP-RAG: An Efficient Full-Process Differential Privacy Implementation in Retrieval-Augmented Generation, IEEE Transactions on Information Forensics and Security (2026)
  • [6] Y Wu, X Bai, S Li, P Hu, Z Zhou, Z Wang, X Ma, S Lu, Y Li, J Xuan, ..., Targeted Counterfactual Fingerprinting for Black-Box LLM Ownership Verification, arXiv, 2608.08195 (2026)
  • [7] J Yi, Y Xie, J He, R Ye, J Huang, B Zhu, S Rintel, Y Xie, X Xie, F Wu, Learning behavior accounts for background-related advantage in AI-assisted education, arXiv, 2607.10101 (2026)
  • [8] J Chen, Q Chu, H Yuan, T Gong, K Zhang, NH Yu, D Zhang, BB Zhu, PVDI: Preserving Vital and Disrupting Irrelevant Latent Attentions for Robust Backdoor Defense, IEEE Transactions on Information Forensics and Security (2026)
  • [9] H Yuan, BB Zhu, Q Chu, T Gong, N Yu, D Zhang, ABDP: Adversarial Backdoor Detection and Purification, IEEE Transactions on Information Forensics and Security (2026)
  • [10] Z Ling, P Hu, X Gao, X Ma, M Zhou, J Feng, S Lu, D Zhang, BB Zhu, Sirens' Whisper: Inaudible Near-Ultrasonic Jailbreaks of Speech-Driven LLMs, arXiv, 2603.13847 (2026)
  • [11] J Yi, Y Xie, B Zhu, E Kiciman, G Sun, X Xie, F Wu, Benchmarking and defending against indirect prompt injection attacks on large language models, Proceedings of the 31st ACM SIGKDD Conference on Knowledge Discovery and … (2025)
  • [12] S Yang, H Guo, S Hu, B Zhu, Y Fu, S Lyu, X Wu, X Wang, CrossDF: improving cross-domain deepfake detection with deep information decomposition, Frontiers in big Data, 8, 1669488 (2025)
  • [13] S Li, C He, X Ma, BB Zhu, S Wang, H Hu, D Zhang, L Yu, Enhancing adversarial transferability with checkpoints of a single model’s training, IEEE/CVF Conference on Computer Vision and Pattern Recognition (2025)
  • [14] X Bai, P Hu, X Ma, L Yu, D Zhang, Q Zhang, BB Zhu, ESF: Efficient sensitive fingerprinting for black-box tamper detection of large language models, Findings of the Association for Computational Linguistics: ACL, 2025, 10477-10494 (2025)
  • [15] X Bai, S Li, X Ma, BB Zhu, D Zhang, L Yu, SDBF: Steep-Decision-Boundary Fingerprinting for Hard-Label Tampering Detection of DNN Models, IEEE/CVF Conference on Computer Vision and Pattern Recognition (2025)
  • [16] P Hu, X Bai, X Ma, C He, D Zhang, BB Zhu, RESF: Regularized-Entropy-Sensitive Fingerprinting for Black-Box Tamper Detection of Large Language Models, Proceedings of the 2025 Conference on Empirical Methods in Natural Language (2025)
  • [17] S Hang, C He, H Hu, H Hu, BB Zhu, SF Sun, D Gu, S Wang, Malicious Image Analysis via Vision-Language Segmentation Fusion: Detection, Element, and Location in One-shot, arXiv, 2512.04599 (2025)
  • [18] S Li, Z Li, X Ma, X Bai, P Hu, D Zhang, BB Zhu, Consensus-Robust Transfer Attacks via Parameter and Representation Perturbations, The Thirty-ninth Annual Conference on Neural Information Processing Systems (2025)
  • [19] J Yi, R Ye, Q Chen, BB Zhu, S Chen, D Lian, G Sun, X Xie, F Wu, On the vulnerability of safety alignment in open-access llms, Findings of the Association for Computational Linguistics: ACL, 2024, 9236-9260 (2024)
  • [20] LY Yurong Wu, Yan Gao, Bin Benjamin Zhu, Zineng Zhou, Xiaodi Sun, Sheng Yang ..., StraGo: Harnessing Strategic Guidance for Prompt Optimization, Findings of the Association for Computational Linguistics: EMNLP, 2024, 10043 … (2024)
  • [21] C He, X Ma, BB Zhu, Y Zeng, H Hu, X Bai, H Jin, D Zhang, DorPatch: Distributed and occlusion-robust adversarial patch to evade certifiable defenses, Network and Distributed System Security Symposium (NDSS), 2024 (2024)
  • [22] LY Sheng Yang, Yurong Wu, Yan Gao, Zineng Zhou, Bin Benjamin Zhu, Xiaodi Sun ..., AMPO: Automatic Multi-Branched Prompt Optimization, Conference on Empirical Methods in Natural Language Processing, 20267–20279 (2024)
  • [23] W Yin, BB Zhu, Y Xie, P Zhou, D Feng, Backdoor attacks on bimodal salient object detection with rgb-thermal data, Proceedings of the 32nd ACM International Conference on Multimedia, 4110-4119 (2024)
  • [24] P Zheng, H Chen, S Hu, B Zhu, J Hu, CS Lin, X Wu, S Lyu, G Huang, ..., Few-shot learning for misinformation detection based on contrastive models, Electronics, 13(4), 799 (2024)
  • [25] B Xiaofan, C He, X Ma, BB Zhu, H Jin, Intersecting-boundary-sensitive fingerprinting for tampering detection of DNN models, Forty-first International Conference on Machine Learning (2024)
  • [26] L Zhang, H Chen, S Hu, B Zhu, CS Lin, X Wu, J Hu, X Wang, X-transfer: A transfer learning-based framework for gan-generated fake image detection, 2024 International Joint Conference on Neural Networks (IJCNN), 1-8 (2024)
  • [27] C He, X Bai, X Ma, BB Zhu, P Hu, J Fu, H Jin, D Zhang, Towards stricter black-box integrity verification of deep neural network models, Proceedings of the 32nd ACM International Conference on Multimedia, 9875-9884 (2024)
  • [28] C He, Y Zeng, X Ma, BB Zhu, Z Li, S Li, H Jin, MysticMask: Adversarial mask for impersonation attack against face recognition systems, 2024 IEEE International Conference on Multimedia and Expo (ICME), 1-6 (2024)
  • [29] W Peng, J Yi, F Wu, S Wu, BB Zhu, L Lyu, B Jiao, T Xu, G Sun, X Xie, Are you copying my model? protecting the copyright of large language models for eaas via backdoor watermark, Proceedings of the 61st Annual Meeting of the Association for Computational … (2023)
  • [30] S Park, S Han, F Wu, S Kim, B Zhu, X Xie, M Cha, Feddefender: Client-side attack-tolerant federated learning, Proceedings of the 29th ACM SIGKDD conference on knowledge discovery and … (2023)
  • [31] S Han, S Park, F Wu, S Kim, B Zhu, X Xie, M Cha, Towards attack-tolerant federated learning via critical parameter analysis, 2023 IEEE/CVF International Conference on Computer Vision (ICCV), 4976-4985 (2023)
  • [32] J Yi, F Wu, B Zhu, J Yao, Z Tao, G Sun, X Xie, UA-FedRec: Untargeted attack on federated news recommendation, Proceedings of the 29th ACM SIGKDD conference on knowledge discovery and … (2023)
  • [33] J Fu, X Ma, BB Zhu, P Hu, R Zhao, Y Jia, P Xu, H Jin, D Zhang, Focusing on Pinocchio’s Nose: A Gradients Scrutinizer to Thwart Split-Learning Hijacking Attacks Using Intrinsic Attributes, Network and Distributed System Security (NDSS) Symposium (2023)
  • [34] H Chen, P Zheng, X Wang, S Hu, B Zhu, J Hu, X Wu, S Lyu, Harnessing the power of text-image contrastive models for automatic detection of online misinformation, IEEE/CVF Conference on Computer Vision and Pattern Recognition (2023)
  • [35] L Zhang, H Chen, S Hu, B Zhu, X Wu, J Hu, X Wang, X-transfer: A transfer learning-based framework for robust gan-generated fake image detection, arXiv, 2310.04639 (2023)
  • [36] Y Xiang, X Wang, S Hu, B Zhu, X Huang, X Wu, S Lyu, Rmbench: Benchmarking deep reinforcement learning for robotic manipulator control, IEEE/RSJ International Conference on Intelligent Robots and Systems (2023)
  • [37] X Wang, Z Luo, J Hu, C Feng, S Hu, B Zhu, X Wu, S Lyu, Deep reinforcement learning for image-to-image translation, arXiv, 2309.13672 (2023)
  • [38] C Feng, J Hu, X Wang, S Hu, B Zhu, X Wu, H Zhu, S Lyu, Controlling neural style transfer with deep reinforcement learning, Proceedings of the Thirty-Second International Joint Conference on … (2023)
  • [39] J Hu, Z Luo, C Feng, S Hu, B Zhu, X Wu, X Li, H Zhu, S Lyu, X Wang, RL-I2IT: Image-to-image translation with deep reinforcement learning, arXiv, 2309.13672 (2023)
  • [40] L Huang, W Cui, B Zhu, H Zhang, Visually analysing the fairness of clustered federated learning with non-iid data, 2023 International Joint Conference on Neural Networks (IJCNN), 01-10 (2023)
  • [41] Y Xie, S Hu, X Wang, Q Liao, B Zhu, X Wu, S Lyu, Attacking important pixels for anchor-free detectors, arXiv, 2301.11457 (2023)
  • [42] X Zhang, X Wang, C Shi, Z Yan, X Li, B Kong, S Lyu, B Zhu, J Lv, Y Yin, ..., De-gan: Domain embedded gan for high quality face image inpainting, Pattern Recognition, 124, 108415 (2022)
  • [43] W Pu, J Hu, X Wang, Y Li, S Hu, B Zhu, R Song, Q Song, X Wu, S Lyu, Learning a deep dual-level network for robust DeepFake detection, Pattern Recognition, 130, 108832 (2022)
  • [44] Y Zhang, Y Wang, H Zhang, B Zhu, S Chen, D Zhang, Onelabeler: A flexible system for building data labeling tools, Proceedings of the 2022 CHI conference on human factors in computing systems (2022)
  • [45] Y Ko, B Zhu, J Kim, Fuzzing with automatically controlled interleavings to detect concurrency bugs, Journal of Systems and Software, 191, 111379 (2022)
  • [46] C Liu, X Ma, S Cao, J Fu, BB Zhu, Privacy-preserving motion detection for HEVC-compressed surveillance video, ACM Transactions on Multimedia Computing, Communications, and Applications … (2022)
  • [47] J Fu, BB Zhu, H Zhang, Y Zou, S Ge, W Cui, Y Wang, D Zhang, X Ma, ..., Chartstamp: Robust chart embedding for real-world applications, Proceedings of the 30th ACM International Conference on Multimedia, 2786-2795 (2022)
  • [48] J Yi, F Wu, H Zhang, B Zhu, T Qi, G Sun, X Xie, Robust quantity-aware aggregation for federated learning, arXiv, 2205.10848 (2022)
  • [49] D Lin, Y Fu, X Wang, S Hu, B Zhu, Q Song, X Wu, S Lyu, Contrastive class-specific encoding for few-shot object detection, IEEE International Conference on Multimedia and Expo (ICME), 1-6 (2022)
  • [50] S Ji, N Park, D Na, B Zhu, J Kim, Defending against attacks tailored to transfer learning via feature distancing, Computer Vision and Image Understanding, 223, 103533 (2022)
  • [51] B Zhu, H Zhang, Y Tang, H Huang, S Ge, Data embedding and data extraction in image, US Patent App. 17/615, 087 (2022)
  • [52] Q Liao, Y Li, X Wang, B Kong, B Zhu, S Lyu, Y Yin, Q Song, X Wu, Imperceptible adversarial examples for fake image detection, arXiv, 2106.01615 (2021)
  • [53] Q Liao, X Wang, B Kong, S Lyu, B Zhu, Y Yin, Q Song, X Wu, Transferable adversarial examples for anchor free object detection, arXiv, 2106.01618 (2021)
  • [54] C He, BB Zhu, X Ma, H Jin, S Hu, Feature-indistinguishable attack to circumvent trapdoor-enabled defense, Proceedings of the 2021 ACM SIGSAC Conference on Computer and Communications (2021)
  • [55] J Fu, B Zhu, W Cui, S Ge, Y Wang, H Zhang, H Huang, Y Tang, D Zhang, ..., Chartem: Reviving chart images with data embedding, IEEE Transactions on Visualization and Computer Graphics, 27(2), 337-346 (2020)
  • [56] Y Qian, FKP Soong, BB Zhu, Audio human interactive proof based on text-to-speech and semantics, US Patent 10,319, 363 (2019)
  • [57] Y Tang, B Zhu, X Ma, PT Mathiopoulos, X Xie, H Huang, Decoding homomorphically encrypted flac audio without decryption, ICASSP (2019)
  • [58] T Kang, S Ji, H Jeong, B Zhu, J Kim, WearAuth: wristwear-assisted user authentication for smartphones using wavelet-based multi-resolution analysis, IEICE TRANSACTIONS on Information and Systems, 102(10), 1976-1992 (2019)
  • [59] C Liu, D Zou, P Luo, BB Zhu, H Jin, A heuristic framework to detect concurrency vulnerabilities, Proceedings of the 34th annual computer security applications conference (2018)
  • [60] X Ma, B Zhu, T Zhang, S Cao, H Jin, D Zou, Efficient privacy-preserving motion detection for HEVC compressed video in cloud video surveillance, IEEE INFOCOM (2018)
  • [61] X Ma, H Peng, H Jin, B Zhu, Privacy-preserving cloud-based video surveillance with adjustable granularity of privacy protection, 25th IEEE International Conference on Image Processing (ICIP), 4133-4137 (2018)
  • [62] X Ma, C Liu, S Cao, BB Zhu, JPEG decompression in the homomorphic encryption domain, Proceedings of the 26th ACM international conference on Multimedia, 905-913 (2018)
  • [63] J Shao, M Feng, BB Zhu, Fair payment protocol with semi-trusted third party, US Patent 9,563, 881 (2017)
  • [64] J Liu, BB Zhu, Q Li, S Li, N Xu, Image-based CAPTCHA exploiting context in object recognition, US Patent 9,317, 676 (2016)
  • [65] F Xue, BB Zhu, W Chu, Malicious uniform resource locator detection, US Patent 9,178, 901 (2015)
  • [66] BB Zhu, R Guo, M Feng, A Pan, Component-oriented architecture for web mashups, US Patent 9,009, 657 (2015)
  • [67] BB Zhu, L Xu, Manipulable human interactive proofs, US Patent 8,990, 959 (2015)
  • [68] BB Zhu, F Xue, Machine-learning based classification of user accounts based on email addresses and other account information, US Patent 9,189, 746 (2015)
  • [69] BB Zhu, M Yang, X Yang, S Li, Multi-touch text input, US Patent 10,126, 941 (2015)
  • [70] BB Zhu, K Zhang, Structure-based adaptive document caching, US Patent 9,195, 773 (2015)
  • [71] W Li, B Zhu, N Xu, J Liu, Overlay human interactive proof system and techniques, US Patent 8,935, 767 (2015)
  • [72] T Seyed, XD Yang, A Tang, S Greenberg, J Gu, B Zhu, X Cao, Ciphercard: a token-based approach against camera-based shoulder surfing attacks on common touchscreen devices, IFIP Conference on Human-Computer Interaction, 436-454 (2015)
  • [73] B Zhu, L Zhang, G Xu, Y Xu, System and Method for Application Sharing, US Patent App. 13/932, 208 (2015)
  • [74] LR Zhang, B Zhu, ZJ Zhou, HJ Wang, G Xu, L Zhu, Online and offline cooperation to obtain input to augment recording of meeting, US Patent App. 14/077, 483 (2015)
  • [75] BB Zhu, J Yan, G Bao, M Yang, N Xu, Captcha as graphical passwords—A new security primitive based on hard AI problems, IEEE transactions on information forensics and security, 9(6), 891-904 (2014)
  • [76] Q Ye, Y Chen, B Zhu, The robustness of a new 3D CAPTCHA, 11th IAPR International Workshop on Document Analysis Systems, 319-323 (2014)
  • [77] BB Zhu, J Yan, D Wei, M Yang, Security analyses of click-based graphical passwords via image point memorability, Proceedings of the 2014 ACM SIGSAC Conference on Computer and Communications (2014)
  • [78] A Pan, K Zhang, B Zhu, Disassembling an executable binary, US Patent 8,869, 109 (2014)
  • [79] BB Zhu, H Choi, H Lee, Detection and categorization of malicious URLs, US Patent 8,521, 667 (2013)
  • [80] W Chu, BB Zhu, F Xue, X Guan, Z Cai, Protect sensitive sites from phishing attacks using features extractable from inaccessible phishing URLs, 2013 IEEE international conference on communications (ICC), 1990-1994 (2013)
  • [81] BB Zhu, A Pan, K Zhang, S Li, Cooperative rendering cache for mobile browser, US Patent 8,539, 338 (2013)
  • [82] BB Zhu, G Bao, M Yang, N Xu, Security primitives employing hard artificial intelligence problems, US Patent App. 13/273, 841 (2013)
  • [83] BB Zhu, D Wei, M Yang, J Yan, Security implications of password discretization for click-based graphical passwords, Proceedings of the 22nd international conference on World Wide Web, 1581-1591 (2013)
  • [84] W Li, BB Zhu, H Xin, N Xu, J Liu, Tearing and conformal transformation human interactive proof, US Patent 8,359, 394 (2013)
  • [85] BB Zhu, J Yan, Towards new security primitives based on hard AI problems, Cambridge International Workshop on Security Protocols (2013)
  • [86] J Seo, S Cha, B Zhu, D Bae, PC worm detection system based on the correlation between user interactions and comprehensive network behaviors, IEICE TRANSACTIONS on Information and Systems, 96(8), 1716-1726 (2013)
  • [87] B Zhu, M Feng, X Yin, Y Yang, Y Zhang, J Shao, Mobile device assisted secure computer network communication, US Patent 8,209, 744 (2012)
  • [88] BB Zhu, M Feng, Distributed single sign on technologies including privacy protection and proactive updating, US Patent 9,118, 463 (2012)
  • [89] A Pan, K Zhang, H Long, BB Zhu, Secure control flows by monitoring control transfers, US Patent 8,117, 660 (2012)
  • [90] S Li, Y Yang, BB Zhu, R Guo, L Yang, Comprehensive human computation framework, US Patent 9,424, 516 (2012)
  • [91] A Tewfik, B Zhu, M Swanson, Embedding data in audio and detecting embedded data in audio, US Patent 8,306, 811 (2012)
  • [92] BB Zhu, M Feng, A Pan, Y Kong, NC Sherman, H Fan, R Guo, J Benaloh, Security-enhanced log in, US Patent 8,140, 855 (2012)
  • [93] A Pan, BB Zhu, K Zhang, L Wang, Parallel web page processing, US Patent App. 12/914, 638 (2012)
  • [94] BB Zhu, Q Dai, Human User Verification, US Patent App. 13/091, 964 (2012)
  • [95] A Tewfik, B Zhu, M Swanson, Watermarking using multiple watermarks and keys, including keys dependent on the host signal, US Patent 8,131, 007 (2012)
  • [96] J Shao, B Zhu, M Feng, Efficient certified email protocol, US Patent 8,341, 410 (2012)
  • [97] A Tewfik, MD Swanson, B Zhu, Multimedia data embedding and decoding, US Patent 8,103, 051 (2012)
  • [98] A Tewfik, B Zhu, M Swanson, Video watermarking using temporal analysis, US Patent 8,155, 375 (2012)
  • [99] A Tewfik, B Zhu, M Swanson, Embedding data in and detecting embedded data from video objects, US Patent 8,090, 142 (2012)
  • [100] H Choi, BB Zhu, H Lee, Detecting malicious web links and identifying their attack types, 2nd USENIX Conference on web application development (WebApps 11) (2011)
  • [101] B Zhu, X Wang, S Li, Peer-to-peer networks with protections, US Patent 7,987, 368 (2011)
  • [102] B Zhu, M Feng, Content encryption schema for integrating digital rights management with encrypted multicast, US Patent 7,978, 848 (2011)
  • [103] B Zhu, CW Chen, S Li, Y Yang, MPEG-4 encryption enabling transcoding without decryption, US Patent 7,953, 224 (2011)
  • [104] BB Zhu, J Yan, Q Li, C Yang, J Liu, N Xu, M Yi, K Cai, Attacks and design of image recognition CAPTCHAs, Proceedings of the 17th ACM conference on Computer and communications (2010)
  • [105] B Zhu, T Chen, S Li, Distributed single sign-on service, US Patent 7,690, 026 (2010)
  • [106] K Zhang, L Wang, A Pan, BB Zhu, Smart caching for web browsers, Proceedings of the 19th international conference on World wide web, 491-500 (2010)
  • [107] B Zhu, Y Yang, S Li, Locally interative encryption generating compliant ciphertext for general syntax specifications, US Patent 7,769, 168 (2010)
  • [108] J Shao, M Feng, B Zhu, Z Cao, P Liu, The security model of unidirectional proxy re-signature with private re-signature key, Australasian Conference on Information Security and Privacy, 216-232 (2010)
  • [109] B Zhu, M Feng, R Guo, Securing Communications for Web Mashups, US Patent App. 12/351, 198 (2010)
  • [110] B Zhu, M Feng, S Li, Secure key management for scalable codestreams, US Patent 7,644, 445 (2010)
  • [111] A Pan, BB Zhu, J Cao, Z Li, J Wang, Diagnosis of application performance problems via analysis of thread dependencies, US Patent App. 12/141, 948 (2009)
  • [112] M Feng, BB Zhu, J Shao, Unidirectional multi-use proxy re-signature process, US Patent App. 12/146, 480 (2009)
  • [113] B Zhu, M Feng, S Li, Elliptic curve point multiplication, US Patent 7,602, 907 (2009)
  • [114] M Feng, BB Zhu, Digital rights management system protecting consumer privacy, US Patent App. 11/970, 161 (2009)
  • [115] B Zhu, R Guo, M Feng, A Pan, System to facilitate online shopping, US Patent App. 12/129, 701 (2009)
  • [116] X Zhang, B Zhu, System and Method for Separated Image Compression, US Patent App. 12/425, 255 (2009)
  • [117] K Zhang, L Wang, X Guo, A Pan, BB Zhu, WPBench: a benchmark for evaluating the client-side performance of web 2.0 applications, Proceedings of the 18th international conference on World wide web, 1111-1112 (2009)
  • [118] Y Yang, BB Zhu, R Guo, L Yang, S Li, N Yu, A comprehensive human computation framework: with application to image labeling, Proceedings of the 16th ACM international conference on Multimedia, 479-488 (2008)
  • [119] A Tewfik, MD Swanson, B Zhu, Digital watermarking of tonal and non-tonal components of media signals, US Patent 7,454, 034 (2008)
  • [120] B Zhu, J Wu, S Li, Secure image authentication with discrete level tamper localization, US Patent 7,454, 797 (2008)
  • [121] M Feng, B Zhu, A DRM system protecting consumer privacy, IEEE Consumer Communications and Networking Conference, 1075-1079 (2008)
  • [122] R Guo, BB Zhu, M Feng, A Pan, B Zhou, Compoweb: a component-oriented web architecture, Proceedings of the 17th international conference on World Wide Web, 545-554 (2008)
  • [123] B Zhu, M Feng, F Liu, L Hu, Analysis on AACS'Traitor Tracing Against Mix-and-Match Attacks, IEEE Consumer Communications and Networking Conference, 1097-1101 (2008)
  • [124] Y Yang, BB Zhu, S Li, N Yu, Efficient and Syntax-Compliant JPEG 2000 Encryption Preserving Original Fine Granularity of Scalability, EURASIP Journal on Information Security, 2007(1), 056365 (2007)
  • [125] M Feng, B Zhu, When DRM Meets Restricted Multicast: A Content Encryption Key Scheme for Multicast Encryption and DRM, IEEE Consumer Communications and Networking Conference, 1048-1052 (2007)
  • [126] J Shao, M Feng, B Zhu, Z Cao, An efficient certified email protocol, Information security: 10th international conference, ISC, 2007, Valparaíso … (2007)
  • [127] F Wu, X Sun, G Bai, B Zhu, File storage for scalable media, US Patent App. 11/170, 765 (2006)
  • [128] M Feng, BB Zhu, C Zhao, S Li, Signed MSB-set comb method for elliptic curve point multiplication, International Conference on Information Security Practice and Experience (2006)
  • [129] B Zhu, S Li, Y Yang, Jpeg2000 syntax-compliant encryption with full scalability, US Patent App. 11/419, 468 (2006)
  • [130] BB Zhu, Multimedia encryption, Multimedia Security Technologies for Digital Rights Management, 75-109 (2006)
  • [131] B Zhu, Y Yang, S Li, Ciphertext switching for syntax compliant encryption, US Patent App. 11/081, 279 (2006)
  • [132] BB Zhu, Y Yang, S Li, An efficient key scheme for multiple access of JPEG 2000 and motion JPEG 2000 enabling truncations., CCNC, 1124(1128) (2006)
  • [133] BB Zhu, Scalable Encryption and Multi-Access Control for Multimedia, Multimedia Security Technologies for Digital Rights Management, 275-302 (2006)
  • [134] BB Zhu, C Yuan, Y Wang, S Li, Scalable protection for MPEG-4 fine granularity scalability, IEEE transactions on multimedia, 7(2), 222-233 (2005)
  • [135] B Zhu, G Gu, S Li, Digital rights management system, US Patent App. 10/685, 234 (2005)
  • [136] B Zhu, M Feng, S Li, Scalable layered access control for multimedia, US Patent App. 10/869, 280 (2005)
  • [137] A Tewfik, MD Swanson, B Zhu, Transactional watermarking, US Patent 6,915, 481 (2005)
  • [138] M Feng, BB Zhu, M Xu, S Li, Efficient Comb Elliptic Curve Multiplication Methods Resistant to Power Analysis., IACR Cryptol. ePrint Arch., 2005, 222 (2005)
  • [139] BB Zhu, Y Yang, S Li, JPEG 2000 syntax-compliant encryption preserving full scalability, IEEE International Conference on Image Processing 2005, 3, III-636 (2005)
  • [140] BB Zhu, S Li, M Feng, A framework of scalable layered access control for multimedia, IEEE International Symposium on Circuits and Systems (ISCAS), 2703-2706 (2005)
  • [141] BB Zhu, S Li, Y Yang, JPEG 2000 encryption enabling fine granularity scalability without decryption, IEEE International Symposium on Circuits and Systems (ISCAS), 6304-6307 (2005)
  • [142] T Chen, BB Zhu, S Li, X Cheng, Threspassport–a distributed single sign-on service, International Conference on Intelligent Computing, 771-780 (2005)
  • [143] BB Zhu, Y Yang, T Chen, A DRM system supporting what you see is what you pay, International Conference on Digital Rights Management, 341-355 (2005)
  • [144] BB Zhu, M Feng, S Li, Secure key management for flexible digital rights management of scalable codestreams, IEEE 7th Workshop on Multimedia Signal Processing, 1-4 (2005)
  • [145] BB Zhu, Y Yang, CW Chen, S Li, Fine granularity scalability encryption of MPEG-4 FGS bitstreams, IEEE 7th Workshop on Multimedia Signal Processing, 1-4 (2005)
  • [146] Z Zhao, M Lin, Y Lin, B Zhu, L Huang, X Gao, A codec with full scalabilities based on SVC technique, IEEE International Symposium on Communications and Information Technology … (2005)
  • [147] Y Zhao, SHC Cheung, B Zang, B Zhu, A note on the Cramer-Damgård identification scheme, International Workshop on Internet and Network Economics, 385-390 (2005)
  • [148] X Wang, B Zhu, S Li, A novel privacy and copyright protection enforced peer-to-peer network, International Conference on Digital Rights Management, 298-310 (2005)
  • [149] BB Zhu, Y Yang, CW Chen, S Li, Optimal packetization of fine granularity scalability codestreams for error-prone channels, IEEE International Conference on Image Processing 2005, 2, II-185 (2005)
  • [150] BB Zhu, S Li, Content and License Roaming for eHome DRM Applications, IEEE Consumer Communications & Networking Conference (CCNC) Workshop on … (2005)
  • [151] BB Zhu, MD Swanson, AH Tewfik, When seeing isn't believing [multimedia authentication technologies], IEEE Signal Processing Magazine, 21(2), 40-49 (2004)
  • [152] B Zhu, C Yuan, S Li, Scalable, error resilient DRM for scalable media, US Patent App. 10/405, 973 (2004)
  • [153] A Tewfik, MD Swanson, B Zhu, Digital watermark detecting with weighting functions, US Patent 6,751, 337 (2004)
  • [154] B Zhu, C Yuan, Y Wang, S Li, Fully scalable encryption for scalable multimedia, US Patent App. 10/405, 970 (2004)
  • [155] BB Zhu, MD Swanson, S Li, Encryption and authentication for scalable multimedia: Current state of the art and challenges, Proc. SPIE, 5601, 157-170 (2004)
  • [156] BB Zhu, M Feng, S Li, An efficient key scheme for layered access control of MPEG-4 FGS video, IEEE International Conference on Multimedia and Expo (ICME) (2004)
  • [157] J Wu, BB Zhu, S Li, F Lin, A secure image authentication algorithm with pixel-level tamper localization, 2004 International Conference on Image Processing, 2004. ICIP'04., 3, 1573-1576 (2004)
  • [158] J Wu, BB Zhu, S Li, F Lin, Efficient oracle attacks on Yeung-Mintzer and variant authentication schemes, IEEE International Conference on Multimedia and Expo (ICME) (2004)
  • [159] J Wu, BB Zhu, S Li, F Lin, New attacks on sari image authentication system, Security, Steganography, and Watermarking of Multimedia Contents VI, 5306 (2004)
  • [160] C Yuan, BB Zhu, Y Wang, S Li, Y Zhong, Efficient and fully scalable encryption for MPEG-4 FGS, 2003 IEEE International Symposium on Circuits and Systems (ISCAS), 2, II-II (2003)
  • [161] C Yuan, BB Zhu, M Su, X Wang, S Li, Y Zhong, Layered access control for MPEG-4 FGS video, Proceedings 2003 International Conference on Image Processing (2003)
  • [162] BB Zhu, MD Swanson, Multimedia authentication and watermarking, Multimedia Information Retrieval and Management: Technological Fundamentals … (2003)
  • [163] G Gu, BB Zhu, S Li, S Zhang, PLI: A new framework to protect digital content for P2P networks, International Conference on Applied Cryptography and Network Security, 206-216 (2003)
  • [164] A Tewfik, MD Swanson, B Zhu, Multimedia data embedding, US Patent 6,442, 283 (2002)
  • [165] MD Swanson, B Zhu, AH Tewfik, Multiresolution and object-based video watermarking using perceptual models, Wavelet, Subband and Block Transforms in Communications and Multimedia, 323-350 (2002)
  • [166] AH Tewfik, MD Swanson, B Zhu, Digital watermarking to resolve multiple claims of ownership, US Patent 6,272, 634 (2001)
  • [167] AH Tewfik, MD Swanson, B Zhu, Method and apparatus for scene-based video watermarking, US Patent 6,226, 387 (2001)
  • [168] AH Tewfik, MD Swanson, B Zhu, Method and apparatus for video watermarking using perceptual masks, US Patent 6,282, 299 (2001)
  • [169] AH Tewfik, MD Swanson, B Zhu, L Boney, Method and apparatus for embedding data, including watermarks, in human perceptible sounds, US Patent 6,061, 793 (2000)
  • [170] AH Tewfik, MD Swanson, B Zhu, Method and apparatus for embedding data, including watermarks, in human perceptible images, US Patent 6,031, 914 (2000)
  • [171] MD Swanson, B Zhu, AH Tewfik, Current state of the art, challenges and future directions for audio watermarking, Proceedings IEEE International Conference on Multimedia Computing and … (1999)
  • [172] B Zhu, E Yang, AH Tewfik, Arithmetic coding with dual symbol sets and its performance analysis, IEEE transactions on Image Processing, 8(12), 1667-1676 (1999)
  • [173] B Zhu, Coding and data hiding for multimedia, University of Minnesota (1999)
  • [174] AH Tewfik, MD Swanson, B Zhu, Data embedding in audio: Where do we stand, IEEE International Conference on Acoustics, Speech, and Signal (1999)
  • [175] MD Swanson, B Zhu, AH Tewfik, L Boney, Robust audio watermarking using perceptual masking, Signal processing, 66(3), 337-355 (1998)
  • [176] MD Swanson, B Zhu, AH Tewfik, Multiresolution scene-based video watermarking using perceptual models, IEEE journal on selected areas in communications, 16(4), 540-550 (1998)
  • [177] MD Swanson, B Zhu, AH Tewfik, Audio watermarking and data embedding–current state of the art, challenges and future directions, Multimedia and Security Workshop at ACM Multimedia, 41 (1998)
  • [178] MD Swanson, B Zhu, AH Tewfik, Data hiding for video-in-video, Proceedings of International Conference on Image Processing, 2, 676-679 (1997)
  • [179] MD Swanson, B Zhu, B Chau, AH Tewfik, Object-based transparent video watermarking, Proceedings of First Signal Processing Society Workshop on Multimedia Signal … (1997)
  • [180] MD Swanson, B Zhu, B Chau, AH Tewfik, Multiresolution video watermarking using perceptual models and scene segmentation, Proceedings of International Conference on Image Processing, 2, 558-561 (1997)
  • [181] B Zhu, AH Tewfik, Media compression via data hiding, Conference Record of the Thirty-First Asilomar Conference on Signals … (1997)
  • [182] B Zhu, MD Swanson, AH Tewfik, Image coding by folding, Proceedings of International Conference on Image Processing, 2, 665-668 (1997)
  • [183] MD Swanson, B Zhu, AH Tewfik, Video data hiding for video-in-video and other applications, Multimedia Storage and Archiving Systems II, 3229, 32 (1997)
  • [184] MD Swanson, B Zhu, AH Tewfik, Transparent robust image watermarking, Proceedings of 3rd IEEE International Conference on Image Processing, 3, 211-214 (1996)
  • [185] MD Swanson, B Zhu, AH Tewfik, Robust data hiding for images, 7th Digital Signal Processing Workshop (DSP 96), 37-40 (1996)
  • [186] B Zhu, MD Swanson, AH Tewfik, Transparent robust authentication and distortion measurement technique for images, 1996 IEEE Digital Signal Processing Workshop Proceedings, 45-48 (1996)
  • [187] B Zhu, E Yang, AH Tewfik, JC Kieffer, Efficient coding of wavelet trees and its applications in image coding, Visual Communications and Image Processing'96, 2727, 512-523 (1996)
  • [188] B Zhu, E Yang, AH Tewfik, Dual set arithmetic coding and its applications to image coding, 1996 8th European Signal Processing Conference (EUSIPCO 1996), 1-4 (1996)
  • [189] B Zhu, AH Tewfik, ON Gerek, Low bit rate near transparent image coding, PROCEEDINGS-SPIE THE INTERNATIONAL SOCIETY FOR OPTICAL ENGINEERING, 173-173 (1995)
  • [190] B Zhu, AH Tewfik, ON Gerek, Image coding with mixed representations and visual masking, International Conference on Acoustics, Speech, and Signal Processing (1995)
  • [191] B Zhu, AH Tewfik, MA Colestock, ON Gerek, AE Cetin, Image coding with wavelet representations, edge information and visual masking, Proceedings., International Conference on Image Processing, 1, 582-585 (1995)
  • [192] C He, H Hu, X Yu, BB Zhu, H Hu, S Sun, D Gu, S Wang, Tampering Detection for Pre-trained Encoders Using Fingerprintwins
  • [193] S Li, X Ma, P Hu, X Bai, S Lu, D Zhang, BB Zhu, Towards Reliable Transferability of Targeted Adversarial Attacks against Model Discrepancy
  • [194] P Hu, J Zheng, X Ma, X Bai, S Li, S Lu, D Zhang, BB Zhu, Camouflage Patching: Effective Jailbreak Attacks on Single-and Multimodal LLMs
更新时间: 2026-09-03 09:00:11