Photo: Deborah Rose/UVa

I am a 4th year PhD student in the Department of Computer Science at the University of Virginia, co-advised by Prof. David Evans and Prof. Yanjun Qi. I'm currently working on Adversarial Machine Learning. Previously I was an engineer at NISL, Tsinghua University.

Please check my CV and Google Scholar profile.


Automatically Evading Classifiers

NDSS '16
Weilin Xu, Yanjun Qi, David Evans

Machine learning is widely used to develop classifiers for security tasks. However, the robustness of these methods against motivated adversaries is uncertain. In this work, we propose a generic method to evaluate the robustness of classifiers under attack. The key idea is to stochastically manipulate a malicious sample to find a variant that preserves the malicious behavior but is classified as benign by the classifier. We present a general approach to search for evasive variants and report on results from experiments using our ...

[ Paper ] [ Slides ] [ Code ] [ Website ] [ 中文简介 ]

Feature Squeezing

Weilin Xu, David Evans, Yanjun Qi

We propose a new strategy, feature squeezing, that can be used to harden DNN models by detecting adversarial examples. Feature squeezing reduces the search space available to an adversary by coalescing samples that correspond to many different feature vectors in the original space into a single sample....

[ Paper ] [ Code ] [ Website ]


Neural Network Playground

TA for CS6316/4501, Fall 2016

We used a customized Tensorflow Playground in the machine learning course.

[ Note ] [ Playground@UVa ]

Rust Class

TA for CS4414, Fall 2013 and Spring 2014

I assisted Prof. David Evans in developing an undergraduate operating system course (focus on system programming), which is the first course to use the Rust programming language.

[ Website ]

Fun Experience

Coming to America: how Google Summer of Code helped change my life

I was invited by Fyodor, the author of Nmap to write a post in the Google Open Source Blog introducing my exciting experience with the Google Summer of Code program.

[ Post ]

