助理教授 & TokenTorrent 创始人

Monash University

糜相行博士,现任蒙纳士大学软件系统与网络安全系助理教授,领导可信智能体与网络安全研究实验室。同时为 TokenTorrent(苍源智能)创始人,致力于打造智能体的安全中间件与基础设施,将前沿安全研究成果转化为可落地的商业产品。

加入蒙纳士之前,曾任中国科学技术大学计算机学院特任教授(2021–2025),并在纽约州立大学布法罗分校担任长聘轨助理教授(2021)。进入学术界前,在 Meta/Facebook 安全基础设施部门任研究科学家(2019–2021),主导构建大规模分布式模糊测试平台,对全产品线进行持续性安全测试,并与位置诚信及站点诚信团队合作,开发针对恶意代理流量和虚假社交互动的检测方案。职业生涯早期,曾任百度高级软件工程师(2014–2015),负责百度糯米团购及外卖等位置服务平台的用户管理体系设计与开发,积累了构建互联网规模服务的实战经验。

研究愿景是为智能体系统及其运行的数字环境注入信任。围绕大语言模型、AI智能体与新兴网络基础设施,系统性地发现安全风险,并结合机器学习与密码学原语构建实用化防御方案。代表性研究方向包括AI智能体红队测试与安全审计、去中心化网络基础设施安全、网络代理与匿名通信、以及隐私保护的有害内容检测与防治。

兴趣爱好
  • 可信AI与智能体安全
  • 网络安全
  • 安全测量
  • 应用密码学
教育经历
  • Ph.D in Computer Science, 2015 - 2019

    Indiana University Bloomington

  • B.E. in Software Engineering, 2009 - 2013

    Beijing Institute of Technology

研究项目

Residential Proxy Ecosystem

2019 -- 2025

The first to systematically uncover and measure the residential proxy (RESIP) ecosystem, revealing how millions of compromised residential hosts are abused as proxy exits for cybercrime — and how …

5 papers 2 datasets 1 tools

Security of AI Agents

2017 -- 2026

The first to uncover systemic security vulnerabilities in voice assistant ecosystems — including voice squatting, voice masquerading, and command hijacking attacks — and to expose how in-context …

4 papers 2 datasets 1 tools 1 award(s)

Detection & Measurement of Online Abuse

2017 -- 2025

Building systematic, data-driven measurement pipelines to discover, measure, and understand diverse online abuse operations at Internet scale — from bulletproof hosting and search poisoning to SMS …

8 papers 3 datasets 3 tools 1 award(s)

Decentralized Network Infrastructure Security

2023 -- 2026

The first empirical security measurements of emerging decentralized network infrastructures — including decentralized cloud storage, peer-assisted content delivery, and open edge computing platforms — …

5 papers 1 datasets 2 tools

学术论文

(2026). ICL-EVADER: Zero-Query Black-Box Evasion Attacks on In-Context Learning and Their Defenses. In WWW'26.

代码 Arxiv

(2026). Okara: Detection and Attribution of TLS Man-in-the-Middle Vulnerabilities in Android Apps with Foundation Models. In ACISP'26.

代码 数据集 项目 Arxiv

(2026). Pepper: High-bandwidth and Scalable Anonymous Broadcast with Cryptographic Privacy. In IFIPSEC'26.

(2025). Port Forwarding Services Are Forwarding Security Risks. In EuroSP'25.

代码 项目 Arxiv

(2024). Dissecting Open Edge Computing Platforms: Ecosystem, Usage, and Security Risks. In ACSAC'24.

代码 项目 Arxiv

毕业学生

  • Ronghong Huang, MPhil 2025 → Software Engineer at Tencent

  • Yue Xue, MPhil 2025 → Software Engineer at ADBC (Agricultural Development Bank of China)

  • Yong Fang, MPhil 2025 → Software Engineer at CSNWD Group

  • Yu Bi, MPhil 2024 → Security Engineer at Meituan

  • Mingshuo Yang, MPhil 2024 → Software Engineer at Huawei

  • Mingkai Li, BS 2023 → PhD at Columbia University

  • Ying Li, MPhil 2023 → PhD at UCLA

  • Hanliang Jiang, BS 2023 → Master at UIUC

  • Wenxin Rong, BS 2022 → PhD at University of Delaware

经历

 
 
 
 
 
创始人
Jul 2026 – 现在 安徽 合肥
构建智能体安全中间件与基础设施,将前沿安全研究成果产品化。
 
 
 
 
 
助理教授
蒙纳士大学 (Monash University)
Dec 2025 – 现在 Clayton, 澳大利亚
 
 
 
 
 
特任教授
中国科学技术大学
Sep 2021 – Dec 2025 安徽 合肥
 
 
 
 
 
长聘轨助理教授
Jan 2021 – Aug 2021 纽约, 美国
 
 
 
 
 
研究科学家
Jun 2019 – Jan 2021 加利福尼亚, 美国
构建大规模分布式模糊测试平台,支撑全产品线持续性安全测试。
开发针对恶意代理流量与虚假社交互动的检测方案。
 
 
 
 
 
计算机科学博士
Aug 2015 – May 2019 印第安纳, 美国
安全与网络研究。
因入职及COVID-19疫情影响,于2020年6月完成答辩。
 
 
 
 
 
高级软件工程师
May 2014 – Jun 2015 北京
负责百度糯米(团购及外卖等位置服务)用户管理系统的设计与开发,并迁移至百度统一账户体系。
 
 
 
 
 
软件工程学士
Sep 2009 – Jun 2013 北京
软件工程本科