Publications

2026

  1. arXiv
    Toward Stronger Code Watermarking: A Grammar-Driven Approach to Optimizing the Trade-off Between Quality and Detectability
    Licheng Yu, Aiwei Liu, and Songze Li
    2026
  2. ACL Findings 2026
    MASH: Evading Black-Box AI-Generated Text Detectors via Style Humanization
    Yongtong Gu, Songze Li, and Xia Hu
    In Findings of the Association for Computational Linguistics: ACL 2026 , 2026
  3. USENIX Security 2026
    When the Aggregator Cheats: Data-Free Backdoors in Federated LLM-based QA Systems
    Chenqing Zhu, Yanbo Dai, Yulong Tian, and 2 more authors
    In 35th USENIX Security Symposium (USENIX Security 26) , 2026
  4. arXiv
    When Efficiency Backfires: Cascading LLMs Trigger Cascade Failure under Adversarial Attack
    Zehan Sun, Dingfan Chen, and Songze Li
    2026
  5. arXiv
    Cross-Modal Backdoors in Multimodal Large Language Models
    Runhe Wang, Li Bai, Haibo Hu, and 1 more author
    2026
  6. TOSEM 2026
    Navigating the risks: A survey of security and privacy threats in LLM-based agents
    Yuyou Gan, Yong Yang, Zhe Ma, and 10 more authors
    ACM Transactions on Software Engineering and Methodology, 2026
  7. AAAI 2026
    DoBlock: Blocking Malicious Association Propagation for Backdoor-Robust Federated Learning Under Domain Skew
    Zhou Tan, Yirui Huang, Duanshu Fang, and 4 more authors
    In Proceedings of the AAAI Conference on Artificial Intelligence , 2026
  8. AAAI 2026
    Tackling resource-constrained and data-heterogeneity in federated learning with double-weight sparse pack
    Qiantao Yang, Liquan Chen, Mingfu Xue, and 1 more author
    In Proceedings of the AAAI Conference on Artificial Intelligence , 2026
  9. arXiv
    CIBER: A Comprehensive Benchmark for Security Evaluation of Code Interpreter Agents
    Lei Ba, Qinbin Li, and Songze Li
    2026
  10. arXiv
    Beauty and the Beast: Imperceptible Perturbations Against Diffusion-Based Face Swapping via Directional Attribute Editing
    Yilong Huang, and Songze Li
    2026
  11. ACM MM 2026
    Noise as a Probe: Membership Inference Attacks on Diffusion Models Leveraging Initial Noise
    Puwei Lian, Yujun Cai, Songze Li, and 1 more author
    In ACM International Conference on Multimedia (ACM MM) , 2026
  12. arXiv
    Attributing and Exploiting Safety Vectors through Global Optimization in Large Language Models
    Fengheng Chu, Jiahao Chen, Yuhong Wang, and 4 more authors
    2026
  13. TDSC 2026
    Sleight: Hidden Data Privacy Breaches in Federated Learning
    Xueluan Gong, Yuji Wang, Shuike Li, and 5 more authors
    IEEE Transactions on Dependable and Secure Computing, 2026
  14. arXiv
    CODE: A Contradiction-Based Deliberation Extension Framework for Overthinking Attacks on Retrieval-Augmented Generation
    Xiaolei Zhang, Xiaojun Jia, Liquan Chen, and 1 more author
    2026
  15. arXiv
    Knowledge-driven multi-turn jailbreaking on large language models
    Songze Li, Ruishi He, Xiaojun Jia, and 2 more authors
    2026
  16. Globecom 2026
    Coded Computing: A Transformative Framework for Edge Computing
    Songze Li, and A Salman Avestimehr
    Global Communications, 2026
  17. NDSS 2026
    Odysseus: Jailbreaking Commercial Multimodal LLM-integrated Systems via Dual Steganography
    Songze Li, Jiameng Cheng, Yiming Li, and 2 more authors
    In Network and Distributed System Security Symposium (NDSS) , 2026
  18. ICML 2026
    Enhancing Membership Inference Attacks on Diffusion Models from a Frequency-Domain Perspective
    Puwei Lian, Yujun Cai, Songze Li, and 1 more author
    In International Conference on Machine Learning (ICML) , 2026

2025

  1. arXiv
    Bi-Erasing: A Bidirectional Framework for Concept Removal in Diffusion Models
    Hao Chen, Yiwei Wang, and Songze Li
    2025
  2. arXiv
    Funcpoison: Poisoning function library to hijack multi-agent autonomous driving systems
    Yuzhen Long, and Songze Li
    2025
  3. arXiv
    Visual CoT Makes VLMs Smarter but More Fragile
    Chunxue Xu, Yiwei Wang, Yujun Cai, and 2 more authors
    2025
  4. arXiv
    Responsible diffusion: A comprehensive survey on safety, ethics, and trust in diffusion models
    Kang Wei, Xin Yuan, Fushuo Huo, and 5 more authors
    2025
  5. ICANN 2025
    MSfusion: A Dynamic Model Splitting Approach for Resource-Constrained Machines to Collaboratively Train Larger Models
    Jin Xie, Danny HK Tsang, and Songze Li
    In International Conference on Artificial Neural Networks (ICANN) , 2025
  6. CASE 2025
    Federated Learning for Deep Anomaly Detection with Noisy and Heterogeneous Data
    Ao Li, Songze Li, and Fugee Tsung
    In 2025 IEEE 21st International Conference on Automation Science and Engineering (CASE) , 2025
  7. CRYPTO 2025
    Resolving the efficiency-utility dilemma of threshold linearly homomorphic encryption via message-space adapter
    Yijia Chang, Rongmao Chen, Chao Lin, and 2 more authors
    In Annual International Cryptology Conference (CRYPTO) , 2025
  8. IWQoS 2025
    SecurePay: Enabling secure and fast payment processing for platform economy
    Junru Lin, Mingzhe Liu, Songze Li, and 1 more author
    In 2025 IEEE/ACM 33rd International Symposium on Quality of Service (IWQoS) , 2025
  9. arXiv
    Asymptotically Optimal Secure Aggregation for Wireless Federated Learning with Multiple Servers
    Zhenhao Huang, Kai Liang, Yuanming Shi, and 2 more authors
    2025
  10. TIFS 2025
    Secure Embedding Aggregation for Cross-Silo Federated Representation Learning
    Songze Li, Jiaxiang Tang, Jinbao Zhu, and 3 more authors
    IEEE Transactions on Information Forensics and Security, 2025
  11. arXiv
    TooBadRL: Trigger optimization to boost effectiveness of backdoor attacks on deep reinforcement learning
    Mingxuan Zhang, Oubo Ma, Kang Wei, and 2 more authors
    2025
  12. arXiv
    Llms cannot reliably judge (yet?): A comprehensive assessment on the robustness of llm-as-a-judge
    Songze Li, Chuokun Xu, Jiaying Wang, and 6 more authors
    2025
  13. CVPR 2025
    Dede: Detecting backdoor samples for ssl encoders via decoders
    Sizai Hou, Songze Li, and Duanyi Yao
    In 2025 IEEE/CVF Conference on Computer Vision and Pattern Recognition (CVPR) , 2025
  14. TIFS 2025
    PriRoAgg: Achieving robust model aggregation with minimum privacy leakage for federated learning
    Sizai Hou, Songze Li, Tayyebeh Jahani-Nezhad, and 1 more author
    IEEE Transactions on Information Forensics and Security, 2025
  15. arXiv
    Privacy-preserving prompt personalization in federated learning for multimodal large language models
    Sizai Hou, Songze Li, and Baturalp Buyukates
    2025
  16. ICLR 2025
    Agent-oriented planning in multi-agent systems
    Ao Li, Yuexiang Xie, Songze Li, and 3 more authors
    In International Conference on Learning Representations (ICLR) , 2025
  17. arXiv
    ReCIT: Reconstructing full private data from gradient in parameter-efficient fine-tuning of large language models
    Jin Xie, Ruishi He, Songze Li, and 2 more authors
    2025
  18. arXiv
    TrojanDam: Detection-free backdoor defense in federated learning through proactive model robustification utilizing OOD data
    Yanbo Dai, Songze Li, Zihan Gan, and 1 more author
    2025
  19. PrivateNLP 2025
    Tuni: A textual unimodal detector for identity inference in clip models
    Songze Li, Ruoxi Cheng, and Xiaojun Jia
    In Proceedings of the Sixth Workshop on Privacy in Natural Language Processing , 2025
  20. COLM 2025
    How does Watermarking Affect Visual Language Models in Document Understanding?
    Chunxue Xu, Yiwei Wang, Bryan Hooi, and 2 more authors
    In Conference on Language Modeling (COLM) , 2025
  21. arXiv
    When data manipulation meets attack goals: An in-depth survey of attacks for vlms
    Aobotao Dai, Xinyu Ma, Lei Chen, and 2 more authors
    2025
  22. USENIX Security 2025
    Arbitrary-Threshold Fully Homomorphic Encryption with Lower Complexity
    Yijia Chang, and Songze Li
    In 34th USENIX Security Symposium (USENIX Security 25) , 2025

2024

  1. TIFS 2024
    Privacy-preserving coded schemes for multi-server federated learning with straggling links
    Kai Liang, Songze Li, Ming Ding, and 2 more authors
    IEEE Transactions on Information Forensics and Security, 2024
  2. NDSS 2025
    URVFL: Undetectable data reconstruction attack on vertical federated learning
    Duanyi Yao, Songze Li, Xueluan Gong, and 2 more authors
    In The Network and Distributed System Security (NDSS) 2025 , 2024
  3. NDSS 2025
    Manifoldchain: Maximizing Blockchain Throughput via Bandwidth-Clustered Sharding
    Chunjiang Che, Songze Li, and Xuechao Wang
    2024
  4. TWC 2024
    Stochastic Coded Federated Learning: Theoretical Analysis and Incentive Mechanism Design
    Yuchang Sun, Jiawei Shao, Yuyi Mao, and 2 more authors
    IEEE Transactions on Wireless Communications, 2024
  5. ICLR 2024
    Constructing Adversarial Examples for Vertical Federated Learning: Optimal Client Corruption through Multi-Armed Bandit
    Duanyi YAO, Songze Li, Ye XUE, and 1 more author
    In The Twelfth International Conference on Learning Representations , 2024
  6. USENIX Security 2024
    BackdoorIndicator: Leveraging OOD Data for Proactive Backdoor Detection in Federated Learning
    Songze Li, and Yanbo Dai
    CoRR, 2024
  7. arXiv
    Towards Client Driven Federated Learning
    Songze Li, and Chenqing Zhu
    CoRR, 2024
  8. arXiv
    Identity Inference from CLIP Models using Only Textual Data
    Songze Li, Ruoxi Cheng, and Xiaojun Jia
    CoRR, 2024
  9. arXiv
    Leveraging Label Information for Stealthy Data Stealing in Vertical Federated Learning
    Duanyi Yao, Songze Li, Xueluan Gong, and 2 more authors
    CoRR, 2024
  10. arXiv
    FedMeS: Personalized Federated Continual Learning Leveraging Local Memory
    Jin Xie, Chenqing Zhu, and Songze Li
    CoRR, 2024
  11. arXiv
    OmniLytics+: A Secure, Efficient, and Affordable Blockchain Data Market for Machine Learning through Off-Chain Processing
    Songze Li, Mingzhe Liu, and Mengqi Chen
    2024
  12. TCOM 2024
    On Exploiting Network Topology for Hierarchical Coded Multi-task Learning
    Haoyang Hu, Songze Li, Minquan Cheng, and 3 more authors
    IEEE Transactions on Communications, 2024

2023

  1. JSAC 2023
    SwiftAgg+: Achieving Asymptotically Optimal Communication Loads in Secure Aggregation for Federated Learning
    Tayyebeh Jahani-Nezhad, Mohammad Ali Maddah-Ali, Songze Li, and 1 more author
    IEEE Journal on Selected Areas in Communications, 2023
  2. ICML 2023
    Chameleon: Adapting to Peer Images for Planting Durable Backdoors in Federated Learning
    Yanbo Dai, and Songze Li
    In Proceedings of the 40th International Conference on Machine Learning , 2023
  3. ICML 2023
    FedVS: Straggler-Resilient and Privacy-Preserving Vertical Federated Learning for Split Models
    Songze Li, Duanyi Yao, and Jin Liu
    In Proceedings of the 40th International Conference on Machine Learning , 2023
  4. TIFS 2023
    Information-Theoretically Private Matrix Multiplication From MDS-Coded Storage
    Jinbao Zhu, Songze Li, and Jie Li
    IEEE Transactions on Information Forensics and Security, 2023
  5. TCOM 2023
    Communication-Efficient Coded Computing for Distributed Multi-Task Learning
    Haoyang Hu, Youlong Wu, Yuanming Shi, and 3 more authors
    IEEE Transactions on Communications, 2023
  6. ITW 2023
    Coded Distributed Computing for Hierarchical Multi-task Learning
    Haoyang Hu, Songze Li, Minquan Cheng, and 1 more author
    In 2023 IEEE Information Theory Workshop (ITW) , 2023
  7. arXiv
    Generalized Lagrange Coded Computing: A Flexible Computation-Communication Tradeoff for Resilient, Secure, and Private Computation
    Jinbao Zhu, Hengxuan Tang, Songze Li, and 1 more author
    2023
  8. NeurIPS Workshop
    Active Few-shot Learning For RouteNet-Fermi
    Xiaoyi Fu, Menghan Shao, Songze Li, and 1 more author
    In Proceedings of the 2nd on Graph Neural Networking Workshop 2023 , Paris, France, 2023
  9. GLOBECOM 2023
    Multi-Server Secure Aggregation with Unreliable Communication Links
    Kai Liang, Songze Li, Ming Ding, and 1 more author
    In GLOBECOM 2023 - 2023 IEEE Global Communications Conference , 2023
  10. ISIT 2023
    Secure Gradient Aggregation for Wireless Multi-Server Federated Learning
    Zhenhao Huang, Songze Li, Kai Liang, and 1 more author
    In 2023 IEEE International Symposium on Information Theory (ISIT) , 2023
  11. ISIT 2023
    Secure Embedding Aggregation for Federated Representation Learning
    Jiaxiang Tang, Jinbao Zhu, Songze Li, and 1 more author
    In 2023 IEEE International Symposium on Information Theory (ISIT) , 2023

2022

  1. MLSys 2022
    LightSecAgg: a Lightweight and Versatile Design for Secure Aggregation in Federated Learning
    Jinhyun So, Chaoyang He, Chien-Sheng Yang, and 5 more authors
    In Proceedings of Machine Learning and Systems , 2022
  2. NeurIPS 2022
    DReS-FL: Dropout-Resilient Secure Federated Learning for Non-IID Clients via Secret Data Sharing
    Jiawei Shao, Yuchang Sun, Songze Li, and 1 more author
    In Advances in Neural Information Processing Systems , 2022
  3. ISIT 2022
    SwiftAgg: Communication-Efficient and Dropout-Resistant Secure Aggregation for Federated Learning with Worst-Case Security Guarantees
    Tayyebeh Jahani-Nezhad, Mohammad Ali Maddah-Ali, Songze Li, and 1 more author
    In 2022 IEEE International Symposium on Information Theory (ISIT) , 2022
  4. ISIT 2022
    Stochastic Coded Federated Learning with Convergence and Privacy Guarantees
    Yuchang Sun, Jiawei Shao, Songze Li, and 2 more authors
    In 2022 IEEE International Symposium on Information Theory (ISIT) , 2022
  5. TIT 2022
    Symmetric Private Polynomial Computation From Lagrange Encoding
    Jinbao Zhu, Qifa Yan, Xiaohu Tang, and 1 more author
    IEEE Transactions on Information Theory, 2022
  6. JSIT 2022
    A Systematic Approach Towards Efficient Private Matrix Multiplication
    Jinbao Zhu, and Songze Li
    IEEE Journal on Selected Areas in Information Theory, 2022
  7. ISIT 2022
    Generalized Lagrange Coded Computing: A Flexible Computation-Communication Tradeoff
    Jinbao Zhu, and Songze Li
    In 2022 IEEE International Symposium on Information Theory (ISIT) , 2022
  8. arXiv
    Secure Federated Clustering
    Songze Li, Sizai Hou, Baturalp Buyukates, and 1 more author
    2022
  9. arXiv
    Fully Privacy-Preserving Federated Representation Learning via Secure Embedding Aggregation
    Jiaxiang Tang, Jinbao Zhu, Songze Li, and 2 more authors
    2022

2021

  1. TIFS 2021
    PolyShard: Coded Sharding Achieves Linearly Scaling Efficiency and Security Simultaneously
    Songze Li, Mingchao Yu, Chien-Sheng Yang, and 3 more authors
    IEEE Transactions on Information Forensics and Security, 2021
  2. Lightsecagg: Rethinking secure aggregation in federated learning
    Chien-Sheng Yang, Jinhyun So, Chaoyang He, and 1 more author
    2021
  3. FL-ICML 2021
    OmniLytics: A Blockchain-based Secure Data Market for Decentralized Machine Learning
    Jiacheng Liang, Wensi Jiang, and Songze Li
    CoRR, 2021
  4. TCOM 2021
    Compressed Coded Distributed Computing
    Ahmed Roushdy Elkordy, Songze Li, Mohammad Ali Maddah-Ali, and 1 more author
    IEEE Transactions on Communications, 2021

2020

  1. NeurIPS SpicyFL workshop
    FedML: A Research Library and Benchmark for Federated Machine Learning
    Chaoyang He, Songze Li, Jinhyun So, and 17 more authors
    2020
  2. FC 2020
    Coded Merkle Tree: Solving Data Availability Attacks in Blockchains
    Mingchao Yu, Saeid Sahraei, Songze Li, and 3 more authors
    In Financial Cryptography and Data Security , 2020
  3. arXiv
    TaiJi: Longest Chain Availability with BFT Fast Confirmation
    Songze Li, and David Tse
    2020

2019

  1. AISTATS 2019
    Lagrange Coded Computing: Optimal Design for Resiliency, Security, and Privacy
    Qian Yu, Songze Li, Netanel Raviv, and 3 more authors
    In Proceedings of the Twenty-Second International Conference on Artificial Intelligence and Statistics , 2019
  2. PODC 2019
    Coded State Machine – Scaling State Machine Execution under Byzantine Faults
    Songze Li, Saeid Sahraei, Mingchao Yu, and 3 more authors
    In Proceedings of the 2019 ACM Symposium on Principles of Distributed Computing , Toronto ON, Canada, 2019

2018

  1. TIT 2018
    A Fundamental Tradeoff Between Computation and Communication in Distributed Computing
    Songze Li, Mohammad Ali Maddah-Ali, Qian Yu, and 1 more author
    IEEE Transactions on Information Theory, 2018
  2. NeurIPS 2018
    Pipe-SGD: A Decentralized Pipelined SGD Framework for Distributed Deep Net Training
    Youjie Li, Mingchao Yu, Songze Li, and 3 more authors
    In Advances in Neural Information Processing Systems , 2018
  3. IPDPSW 2018
    Near-Optimal Straggler Mitigation for Distributed Gradient Methods
    Songze Li, Seyed Mohammadreza Mousavi Kalan, A. Salman Avestimehr, and 1 more author
    In 2018 IEEE International Parallel and Distributed Processing Symposium Workshops (IPDPSW) , 2018
  4. NeurIPS 2018
    GradiVeQ: Vector Quantization for Bandwidth-Efficient Gradient Aggregation in Distributed CNN Training
    Mingchao Yu, Zhifeng Lin, Krishna Narra, and 6 more authors
    In Advances in Neural Information Processing Systems , 2018
  5. arXiv
    Polynomially Coded Regression: Optimal Straggler Mitigation via Data Encoding
    Songze Li, Seyed Mohammadreza Mousavi Kalan, Qian Yu, and 2 more authors
    CoRR, 2018
  6. ISIT 2018
    Compressed Coded Distributed Computing
    Songze Li, Mohammad Ali Maddah-Ali, and A. Salman Avestimehr
    In 2018 IEEE International Symposium on Information Theory (ISIT) , 2018

2017

  1. IEEE Commun Mag
    Coding for Distributed Fog Computing
    Songze Li, Mohammad Ali Maddah-Ali, and A. Salman Avestimehr
    IEEE Communications Magazine, 2017
  2. TON 2017
    A Scalable Framework for Wireless Distributed Computing
    Songze Li, Qian Yu, Mohammad Ali Maddah-Ali, and 1 more author
    IEEE/ACM Transactions on Networking, 2017
  3. IPDPSW 2017
    Coded TeraSort
    Songze Li, Sucha Supittayapornpong, Mohammad Ali Maddah-Ali, and 1 more author
    In 2017 IEEE International Parallel and Distributed Processing Symposium Workshops (IPDPSW) , 2017
  4. ICC 2017
    How to optimally allocate resources for coded distributed computing?
    Qian Yu, Songze Li, Mohammad Ali Maddah-Ali, and 1 more author
    In 2017 IEEE International Conference on Communications (ICC) , 2017
  5. ISIT 2017
    Communication-aware computing for edge processing
    Songze Li, Mohammad Ali Maddah-Ali, and A. Salman Avestimehr
    In 2017 IEEE International Symposium on Information Theory (ISIT) , 2017
  6. FWC 2017
    Architectures for coded mobile edge computing
    Songze Li, Mohammad Ali Maddah-Ali, and A. Salman Avestimehr
    In 2017 IEEE Fog World Congress (FWC) , 2017

2016

  1. GC Wkshps2016
    A Unified Coding Framework for Distributed Computing with Straggling Servers
    Songze Li, Mohammad Ali Maddah-Ali, and A. Salman Avestimehr
    In 2016 IEEE Globecom Workshops (GC Wkshps) , 2016
  2. 54th Annual Allerton
    Coded Distributed Computing: Straggling Servers and Multistage Dataflows
    Songze Li, Mohammad Ali Maddah-Ali, and A. Salman Avestimehr
    In 2016 54th Annual Allerton Conference on Communication, Control, and Computing (Allerton) , 2016
  3. GLOBECOM 2016
    Edge-Facilitated Wireless Distributed Computing
    Songze Li, Qian Yu, Mohammad Ali Maddah-Ali, and 1 more author
    In 2016 IEEE Global Communications Conference (GLOBECOM) , 2016
  4. ACSSC 2016
    Coded distributed computing: Fundamental limits and practical challenges
    Songze Li, Qian Yu, Mohammad Ali Maddah-Ali, and 1 more author
    In 2016 50th Asilomar Conference on Signals, Systems and Computers , 2016
  5. SEC 2016
    Poster Abstract: A Scalable Coded Computing Framework for Edge-Facilitated Wireless Distributed Computing
    Songze Li, Qian Yu, Mohammad Ali Maddah-Ali, and 1 more author
    In 2016 IEEE/ACM Symposium on Edge Computing (SEC) , 2016

2015

  1. 53rd Annual Allerton
    Coded MapReduce
    Songze Li, Mohammad Ali Maddah-Ali, and A. Salman Avestimehr
    In 2015 53rd Annual Allerton Conference on Communication, Control, and Computing (Allerton) , 2015
  2. ISIT 2016
    Rover-to-orbiter communication in Mars: Taking advantage of the varying topology
    Songze Li, David T.H. Kao, and A. Salman Avestimehr
    In 2015 IEEE International Symposium on Information Theory (ISIT) , 2015

2014

  1. ICASSP 2014
    Power allocation for Gaussian multiple access channel with noisy cooperative links
    Songze Li, Emrah Akyol, and Urbashi Mitra
    In 2014 IEEE International Conference on Acoustics, Speech and Signal Processing (ICASSP) , 2014

2013

  1. ICASSP 2013
    Cooperative spectrum sharing with joint receiver decoding
    Songze Li, Urbashi Mitra, and Ashish Pandharipande
    In 2013 IEEE International Conference on Acoustics, Speech and Signal Processing , 2013

2012

  1. CISS 2012
    Jointly cooperative decode-and-forward relaying for secondary spectrum access
    Songze Li, Urbashi Mitra, Vishnu Ratnam, and 1 more author
    In 2012 46th Annual Conference on Information Sciences and Systems (CISS) , 2012