Xiang Zheng
Research Assistant Professor
Hong Kong Institute of AI for Science (HKAI-Sci)
City University of Hong Kong
Chief Scientist, SciencePal 2.0
Google Scholar | GitHub | CityUHK Scholar
I am a Research Assistant Professor at the Hong Kong Institute of AI for Science (HKAI-Sci), City University of Hong Kong. I also work closely with Prof. Xingjun Ma at the Institute of Trustworthy Embodied AI, Fudan University. My research develops robust and efficient RL algorithms for trustworthy science, computer-use, and embodied agents. I also collaborate closely with industry: my research has contributed to ByteDance’s AgentArmor agent-safety framework, Foxconn Research Institute’s FoxBrain foundation model (in collaboration with NVIDIA), and HKAI-Sci’s SciencePal 2.0 self-evolving science agent. I have been honored to receive the prestigious CityUHK Presidential PhD Scholarship.
I received my Ph.D. from the Department of Computer Science at City University of Hong Kong in 2024, under the guidance of Prof. Cong Wang. Prior to that, I earned my Master’s degree in Control Science and Engineering from the Department of Automation at Tsinghua University in 2019, where I was advised by Prof. Tao Zhang. I hold dual Bachelor’s degrees in Automation and Mathematics from the Shen Yuan Honors College (formerly the School of Advanced Engineering) at Beihang University, where I graduated in 2016.
I currently have 1–2 openings for Research Assistants (RAs) and Ph.D. students, co-supervised with Prof. Wei-Ying Ma, on AI for Science and Recursive Self-Improving Agents. Interested candidates are welcome to email me at xiang.zheng@cityu.edu.hk with a CV and a brief research statement.
Latest News
| Jun 16, 2026 | Giving an invited talk at the 2026 CityUDG: “Hands-on with Claude Code: Frontier Code Agents for Research and Browser/Computer Use”. |
|---|---|
| Jun 05, 2026 | Invited to speak at the 2026 Tencent Cloud AI Industry Applications Summit (China National Convention Center, Beijing) on “SciencePal 2.0: Your Self-Evolving Science Agent Team”. |
| Jun 03, 2026 | Invited as a reviewer for ACM Computing Surveys (CSUR). |
| May 23, 2026 | Invited as a reviewer for IEEE Transactions on Pattern Analysis and Machine Intelligence (TPAMI). |
| May 14, 2026 | Received the ICML 2026 Gold Reviewer Award (top 25% of reviewers). |
| May 05, 2026 | Our Defense-to-Attack jailbreak study on VLMs is accepted by Pattern Recognition. |
| May 01, 2026 | Two papers accepted to ICML’26: Just Ask (curious code agents revealing system prompts in frontier LLMs) and STARE (step-wise temporal red-teaming of multi-modal toxicity). |
| Mar 31, 2026 | We release System-Prompt-Open, an open database of system prompts extracted from frontier LLMs. Check out the project website and GitHub repo. |
| Mar 28, 2026 | Our survey on embodied AI safety with 400+ papers is now available on arXiv, covering risks, attacks, and defenses across perception, cognition, planning, interaction, and agentic systems. |
| Mar 09, 2026 | Joined HKAI-Sci as Research Assistant Professor. |
| Mar 04, 2026 | Our OpenRedRL benchmark for RL-based red teaming is published in Frontiers of Computer Science. |
| Feb 20, 2026 | Our work on red teaming text-to-image generators is accepted by CVPR’26. |
| Jan 29, 2026 | Released JustAsk, a framework where curious code agents reveal system prompts in frontier LLMs. |
| Jan 15, 2026 | Our survey on large model and agent safety is published in Foundations and Trends® in Privacy and Security. |
| Jan 23, 2025 | Our work on reinforced defense for VLMs is accepted by ICLR’25. |
| Dec 14, 2024 | Our work on RL-based auditing for LLMs is accepted by AAAI’25. |
| Apr 17, 2024 | Our work on intrinsic motivation for RL is accepted by IJCAI’24. |
| Mar 22, 2024 | Our work on adversarial policy learning in RL is accepted by DSN’24. |
Selected Publications
- ICML’26STARE: Step-wise Temporal Alignment and Red-teaming Engine for Multi-modal Toxicity AttackIn International Conference on Machine Learning (ICML), 2026
- TSCAdapting Large Language Models for Encrypted Traffic Analysis Services: An Efficient Realization with Mixture of LoRA ExpertsIEEE Transactions on Services Computing, 2026
- CVPR’26GenBreak: Red Teaming Text-to-Image Generators Using Large Language ModelsIn IEEE/CVF Conference on Computer Vision and Pattern Recognition (CVPR), 2026
- FnT P&SSafety at Scale: A Comprehensive Survey of Large Model and Agent SafetyFoundations and Trends in Privacy and Security, 2026
- ASTReinforcement learning with prior policy guidance for motion planning of dual-arm free-floating space robotAerospace Science and Technology (AST), 2023
- RA-LCollision-free trajectory planning for a 6-DoF free-floating space robot via hierarchical decoupling optimizationIEEE Robotics and Automation Letters (RA-L), 2022
- IROS’21A multi-target trajectory planning of a 6-DoF free-floating space robot via reinforcement learningIn IEEE/RSJ International Conference on Intelligent Robots and Systems (IROS), 2021
- CVPR’20Clean-label backdoor attacks on video recognition modelsIn IEEE/CVF Conference on Computer Vision and Pattern Recognition (CVPR), 2020
Selected Awards and Honors
- IJCAI Travel Grant, IJCAI Organization, 2024
- Conference Grant, City University of Hong Kong, 2024
- DSN Student Travel Grant, DSN Student Travel Awards Committee, 2024
- Research Activities Fund, City University of Hong Kong, 2022
- Institutional Research Tuition Grant, City University of Hong Kong, 2020
- CityUHK Presidential PhD Scholarship (HK$1.56m for world-class PhD candidates), City University of Hong Kong, 2020
- NII MOU Research Activities Grant, National Institute of Informatics, Japan, 2018
- CSC Scholarship, China Scholarship Council, 2016
- Stars of Advanced Engineering, the highest honor at the Shen Yuan Honors College, Beihang University, 2015
Professional Activities
Program Committee Member- NeurIPS 2026
- ICML 2026
- ICLR 2025, 2026
- AAAI 2025, 2026
- MM 2025, 2026
- CVPR 2026
- ECCV 2026
- ICRA 2026
- ACM Computing Surveys (CSUR)
- IEEE Transactions on Pattern Analysis and Machine Intelligence (TPAMI)
- IEEE Transactions on Dependable and Secure Computing (TDSC)
- IEEE Transactions on Services Computing (TSC)
- IEEE Transactions on Computers (TC)
- ACL 2026
- NeurIPS 2025
- ICNP 2025
- ESORICS 2022
- AsiaCCS 2022
- RAID 2021
- IEEE Internet of Things Journal (IoT-J)
Research & Work Experience
Visiting Researcher @ Xi'an Jiaotong University- Supervised by Prof. Chao Shen
- Sep 2022 - Aug 2023, Xi'an, China
- May 2020 - Aug 2020, Xi'an, China
- Supervised by Prof. Chao Shen & Prof. Xingjun Ma
- Nov 2019 - Feb 2020, Xi'an, China
- Supervised by Prof. Tetsunari Inamura
- Feb 2018 - May 2018, Tokyo, Japan
- Supervised by Prof. Elias Aboutanios
- Feb 2016 - June 2016, Sydney, Australia
Teaching Assistant
- CS5293, Topics on Information Security, Semester B 2023/24, Code for Tutorial
- CS4394, Information Security and Management, Semester A 2023/24
- CS4293 / CS5293, Topics in Cybersecurity / Topics on Information Security, Semester B 2021/22
- CS4394 / CS5294, Information Security and Management, Semester A 2021/22
- CS4293 / CS6290, Topics in Cybersecurity / Privacy-enhancing Technologies, Semester B, 2020/21
- CS2310 / CS2311, Computer Programming, Semester A, 2020/21