I am a computer scientist and educator (and also an AI hacker) dedicated to addressing threats
to the trustworthiness and social responsibility of AI-enabled systems, while fostering the next-generation
workforce capable of auditing, characterizing, and countering these threats.
I received the Google Faculty Research Award 2023 and the Samsung Global Research (GRO) Award 2024, 2023.
I was selected as a DARPA Riser (2022) and invited as a speaker at USENIX Enigma (2021).
Hiring. I have two open PhD/MS positions on model distillation, model resilience,
and agentic systems. Please read
this page and
fill out this form if you're motivated to work with me.
Bio
I am an Assistant Professor of Computer
Science at Oregon State Univ. I earned my Ph.D. from the
University of Maryland, College Park, under the
supervision of Prof. Tudor Dumitras
in 2021, and my bachelor's degree from Seoul National
University in 2015. I spent a winter at Google Brain in 2021 (working with
Dr. Nicholas Carlini and
Dr. Alexey Kurakin) and
6-months at Frame.io in 2017 (working with
Dr. Abhinav Srivastava).
News
Aug 21, 2026
Two papers accepted to EMNLP 2026 Findings. Congratulations Jaewoo and Leo!
May 1, 2026
I will serve as an Area Chair for NeurIPS 2026.
Apr 30, 2026
Two papers are accepted to ICML 2026. Congratulations Jose and Jayoung!
Apr 15, 2026
A paper is accepted to ISSTA 2026!
Apr 1, 2026
A paper is accepted to IEEE S&P 2026. See you all at San Francisco!
Dec 9, 2025
Zach's paper on NAS poisoning is accepted to TMLR 2025. Congratulations!
Sep 23, 2025
Derek's paper on TOCTOU vulnerability in agentic systems is accepted to NeurIPS 2025 Workshop. Congratulations!
Sep 18, 2025
Zachary's paper on detoxifying LLMs is accepted to NeurIPS 2025. Congratulations!
Aug 13, 2025
A paper with Zachary's contribution is accepted to SC 2025. Congratulations!
Aug 12, 2025
Leo's Privacy-Backdoor paper is on AI4Privacy Post!
Jun 25, 2025
Dongwoo, Zach, and Aiden's paper is accepted to ICCV 2025. Congratulations!
Jun 11, 2025
A paper is accepted to IEEE TVCG 2025 and also presented in IEEE VIS 2025!
Jun 10, 2025
Two papers are accepted to ICML 2025 Workshops, Congrats Eunjin!
May 28, 2025
Leo's contribution to PII extraction is accepted to USENIX Security 2025. Great job!
May 26, 2025
Received Samsung START. Thanks Samsung!
May 19, 2025
One paper accepted to Interspeech 2025.
Apr 10, 2025
I will serve as an Area Chair for NeurIPS 2025.
Mar 10, 2025
One paper is accepted at Oakland 2025.
Feb 1, 2025
Eunjin Roh joins the lab as a PhD student. Welcome!
Jan 1, 2025
Zachary Coalson joins the lab as a PhD student. Welcome!
Dec 17, 2024
Received OSU-HP Seed Grant. Thanks HP!
Dec 13, 2024
Eunjin and Sungwoo's paper on evaluating the (adversarial) robustness of recent phishing detectors is accepted to ASIA CCS 2025. Great job!
Aug 19, 2024
One paper is accepted to ACSAC 2024
Jul 18, 2024
Delivered a keynote talk at AI Summer Security Workshop 2024
Jul 16, 2024
One paper is accepted to CIKM 2024
May 1, 2024
Two papers are accepted to ICML 2024
Mar 1, 2024
Received Samsung 2023 GRO Award. Thanks Samsung!
Feb 20, 2024
My k-12 student (Ojas)'s paper will be in COLING 2024
Feb 14, 2024
Jose's story about AI safety is on
KBVR-FM. Congrats!
Jan 16, 2024
One paper is accepted at ICLR 2024
Dec 10, 2023
One paper is accepted at AAAI 2024
Oct 12, 2023
Received Google exploreCSR Award 2023. Thanks Google Research!
Sep 21, 2023
Zachary's first paper will be in NeurIPS 2023. Congratulations!
Apr 24, 2023
One paper is accepted at ICML 2023
Apr 19, 2023
Received Google Faculty Research Award 2023. Thanks Google Research!
Mar 4, 2023
One paper is accepted at ICLR Workshop on Pitfalls of Limited Data and Computation for Trustworthy ML 2023
Jan 31, 2023
Received NSF SFS Award (co-PI). Thanks NSF!
Jan 13, 2023
One paper is accepted at ACM CHI 2023
Nov 15, 2022
One paper is accepted at IEEE SaTML 2023
Oct 25, 2022
Received Samsung 2023 GRO Award. Thanks Samsung!
Sep 14, 2022
One paper is accepted at NeurIPs 2022 [Oral]
Jul 16, 2022
One paper is accepted at IEEE VIS 2022
Jun 13, 2022
One paper is accepted at ICML Workshop on Continuous-Time Methods for ML 2022
May 10, 2022
Selected as a DARPA Riser 2022.
Show older news (39) ↓
SoK: Watermarking for AI-Generated Content
Xuandong Zhao, Sam Gunn, Miranda Christ, Jaiden Fairoze, Andres Fabrega, Nicholas Carlini,
Milad Nasr, Sanghyun Hong, Florian Tramer, Sanjam Garg, Somesh Jha, Lei Li, Yu-Xiang Wang, and Dawn Song
The 46th IEEE Symposium on Security and Privacy (IEEE S&P). 2025.
Privacy Backdoors: Enhancing Membership Inference through Poisoning Pre-trained Models
Yuxin Wen, Leo Marchyok, Sanghyun Hong, Jonas Geiping, Tom Goldstein, and Nicholas Carlini
Advances in Neural Information Processing Systems (NeurIPS). 2024.
Parameterized Physics-informed Neural Networks for Parameterized PDEs
Woojin Cho, Minju Jo, Haksoo Lim, Kookjin Lee, Dongeun Lee, Sanghyun Hong, and Noseong Park
International Conference on Machine Learning (ICML). 2024. [Oral]
Handcrafted Backdoors in Deep Neural Networks
Sanghyun Hong, Nicholas Carlini, and Alexey Kurakin
Advances in Neural Information Processing Systems (NeurIPS). 2022. [Oral]
Truth Serum: Poisoning Machine Learning Models to Reveal Their Secrets
Florian Tramèr, Reza Shokri, Ayrton San Joaquin, Hoang Le, Matthew Jagielski,
Sanghyun Hong, Nicholas Carlini (*authors ordered reverse-alphabetically)
The ACM Conference on Computer and Communications Security (CCS). 2022.
Data Poisoning Won't Save You From Facial Recognition
Evani Radiya-Dixit, Sanghyun Hong, Nicholas Carlini, and Florian Tramer
International Conference on Learning Representations (ICLR). 2022.
A Panda? No, It's a Sloth: Slowdown Attacks on Adaptive Multi-Exit Neural Network Inference
*Sanghyun Hong, *Yigitcan Kaya, Ionuţ-Vlad Modoranu, and Tudor Dumitraș (*equal contribution)
International Conference on Learning Representations (ICLR). 2021. [Spotlight]
Terminal Brain Damage: Exposing the Graceless Degradation in Deep Neural Networks Under Hardware Fault Attacks
Sanghyun Hong, Pietro Frigo, Yigitcan Kaya, Cristiano Giuffrida, and Tudor Dumitraș
Proceedings of The 28th USENIX Security Symposium (USENIX Security). 2019.
Shallow-Deep Networks: Understanding and Mitigating Network Overthinking
Yigitcan Kaya, Sanghyun Hong, and Tudor Dumitraș
International Conference on Machine Learning (ICML). 2019.
View all publications →