Zichuan Li ζεε·
zichuan7 AT illinois DOT edu
OR zichuan DOT li AT outlook DOT com
|
Welcome! I am a My research focuses on the intersection of AI security and system security, e.g., identifying and mitigating security issues in emerging AI applications and systems, and leveraging AI techniques to help address long-standing challenges in traditional system and software security. |
|
| Github | Telegram | Blog | CV | Calendar |
|---|
News
Industry Experience
|
2024.05 ~ 2024.08
Vector35 Inc.
Summer Intern
Built and imporved UEFI plugin for Binary Ninja. Advanced UEFI Analysis with Binary Ninja, The Fallback Type Library |
|
|
2022.06 ~ 2022.08
OPPO Telecom.
Summer Intern
Researched on Android clipboard privacy protection method. |
|
Publications
2026
[5]What's in Your Agent's Context? Context Privilege Escalation Attacks against AI Agent Harness
pdfdemobib
arXiv:2609.01222
See our attack demos exploiting agent harness like Claude Code, Codex, Gemini and more!
[4]Characterizing the Ecosystem of Open-Source Uncensored Large Language Models: Supply Chain, Governance, and Risks
pdfbib
ACM Internet Measurement Conference (IMC), Karlsruhe, Germany, October 12-16, 2026
[3]Les Dissonances: Cross-Tool Harvesting and Polluting in Pool-of-Tools Empowered LLM Agents
pdfcodebib
Network and Distributed System Security Symposium (NDSS) 2026, San Diego, California, USA, February 24-27, 2026
Second place in LLM Agent Hackathon competition.
2025
[2]HarnessAgent: Scaling Automatic Fuzzing Harness Construction with Tool-Augmented LLM Pipelines
pdfbib
arXiv:2512.03420
[1]Safeguard-by-Development: A Privacy-Enhanced Development Paradigm for Multi-Agent Collaboration Systems
pdfbib
arXiv:2505.04799
First place in AgentX competition. Adopted by AG2.
Vulnerability Credits
Acer: CVE-2022-30426, CVE-2022-41415, CVE-2022-40080
Asus: Product Security Hall of Fame, July 2023
Lenovo: CVE-2022-48181, CVE-2022-48188, CVE-2023-34419, CVE-2023-4028, CVE-2023-4029, CVE-2023-43577, CVE-2023-43578, CVE-2023-43579, CVE-2023-43580, CVE-2023-43581, CVE-2023-43575, CVE-2023-43576, CVE-2023-43571, CVE-2023-43572, CVE-2023-43573, CVE-2023-43574, CVE-2023-43567, CVE-2023-43568, CVE-2023-43569, CVE-2023-43570, CVE-2023-5075
Netgear: CVE-2022-30079, CVE-2022-30078
Phoenix: CVE-2024-1598
Honors & Awards
Teaching & Services
- Reviewer
Transactions on Information Forensics & Security (TIFS)2023, 2024
- Sub-reviewer
Network and Distributed System Security (NDSS) Symposium2025, 2026ACM Conference on Computer and Communications Security (CCS)2025IEEE Symposium on Security and Privacy (S&P)2024, 2025Proceedings on Privacy Enhancing Technologies Symposium (PETS)2024, 2025Workshop on Secure and Trustworthy Superapps (SaTS)2023, 2024, 2025USENIX Symposium on Vehicle Security and Privacy (VehicleSec)2025Mobile Networks and Applications2021Journal of Cybersecurity2021
- Artifact Evaluation Committee
USENIX Security Symposium2025ACM Conference on Computer and Communications Security (CCS)2025
- Teaching experience
- AT IU
INFO-I 433 Secure Protocol, Indiana University Bloomington, Teaching Assistant2024 Spring, 2025 Spring
- AT WHU
Software Security, Wuhan University, Teaching Assistant2020 FallSoftware Security, Online Mooc, Teaching Assistant2021 Spring
- AT IU
- Organizing Committee
9th XDef Network and Information Security Protection Summit8th XDef Network and Information Security Protection Summit