Sizhe Chen’s homepage


Hi! I am a CS Ph.D. student at the Department of EECS, UC Berkeley, where I am fortunately advised by Prof. David Wagner. I am part of the Wagner Lab, Security Group, and Berkeley AI Research. I got my M.Eng. and B.Eng. (Summa Cum Laude) from Shanghai Jiao Tong University supervised by Prof. Xiaolin Huang. I also had a great time visiting UW, NEU, UCSC, and interning at Tencent, Meta AI FAIR. I was the chief director of three 1K-spectator concerts. See more experiences/publications on my CV.

My research focuses on AI security in real-world applications. I am currently interested in behavior control of large language models for trustworthiness, e.g., prompt injection defense (arXiv’24, arXiv’23) and rule-following (arXiv’23). I have also worked on poison (ICLR’23, ICLR’23) & query (TAI’23) & transfer (TPAMI’22, PR’22, ICASSP’23) attacks and black-box (NeurIPS’22, TIST’23) & white-box (CVPR’22, CVPRW’23) defenses on computer vision models. Feel free to drop me an email if you would like to chat on research and/or PhD application (previous SoP).

Selected Publications

  • StruQ: Defending Against Prompt Injection with Structured Queries
    Sizhe Chen, Julien Piet, Chawin Sitawarin, David Wagner
  • One-Pixel Shortcut: On the Learning Preference of Deep Neural Networks
    Shutong Wu*, Sizhe Chen*, Cihang Xie, Xiaolin Huang
    ICLR’23 (Spotlight)
  • Adversarial Attack on Attackers: Post-Process to Mitigate Black-Box Score-Based Attacks
    Sizhe Chen, Zhehao Huang, Qinghua Tao, Yingwen Wu, Cihang Xie, Xiaolin Huang
  • Universal Adversarial Attack on Attention and the Resulting Dataset DAmageNet
    Sizhe Chen, Zhengbao He, Chengjin Sun, Jie Yang, Xiaolin Huang
  • Subspace Adversarial Training
    Tao Li, Yingwen Wu, Sizhe Chen, Kun Fang, Xiaolin Huang
    CVPR’22 (Oral)


  • UC Berkeley CS Faculty Hiring Committee: 2024
  • Conference Reviewer: NeurIPS’23, ICML’24, ICLR’23/24, CVPR’23/24, ICCV’23, ECCV’22/24, ACCV’24
  • Journal Reviewer: IEEE TPAMI, IEEE TNNLS, Machine Learning, Pattern Recognition, Neurocomputing


  • Departmental Fellowship of EECS, UC Berkeley, 2023.
  • Travel Support in NeurIPS’22, ICLR’23.
  • National Scholarship (Top 0.2% national-wide), 2021 and 2022.
  • Extraordinary Bachelor’s Thesis (Top 1% in Shanghai Jiao Tong University), 2020.