ImageNet classifiers with state-of-the-art adversarial robustness against the strongest attackers.
Preprint, 2018

A batch-independent alternative to Batch Normalization.
European Conference on Computer Vision (ECCV), 2018 (Oral), Best Paper Honorable Mention

Workshop in International Conference on Learning Representations (ICLR), 2018

Advances in Neural Information Processing Systems (NIPS), 2017 (Oral)

Award-winning solution for training AI to play FPS games.
International Conference on Learning Representations (ICLR), 2017

Comprehensive results on low bitwidth neural network.
Tech Report, 2016

Open Source Projects

More at github.

A neural net training interface on TensorFlow, with focus on speed + flexibility.

Black-box adversarial attacks on AWS/Azure’s public face recognition APIs, the first successful attack of its kind.

The best-performing open source TensorFlow reimplementation of Faster/Mask/Cascade R-CNN.

Panorama stitching written from scratch in C++.

Real time 3D pose estimation from stereo camera.

Dump wechat message history from Android phones by reverse-engineering.

Photorealistic rendering with Monte Carlo path tracing.

Work Experience

March 2017 – Present
Menlo Park

Research Engineer

Facebook AI Research

January 2016 – April 2016

Research Assistant

Oculus Research

October 2014 – August 2015


Megvii (aka Face++)

April 2014 – July 2014

Software Engineering Intern



  • Winner of defense track in Competition on Adversarial Attacks and Defenses (CAAD) 2018.

    We trained an ImageNet classifier with state-of-the-art robustness against adversarial attacks. Competition

  • Winner of CTF in Competition on Adversarial Attacks and Defenses (CAAD) CTF 2018.

    We performed successful adversarial attacks / defenses against other teams during the on-site competition. Competition Media (Chinese)

  • Best Paper Honorable Mention award in ECCV 2018. Announcement

  • Google Open Source Peer Bonus in 2017. Announcement

  • Winner of VizDoom AI Competition in CIG 2016.

    Our Doom bot, “F1”, beat all other competitors in a death match by a large margin. Competition Media Video

  • Champion of Student Cluster Competition in both ISC 2015 and ASC 2015.

    Optimize software and hardware for low-power high-performance computation. Media Media

  • Finalist in SIGMOD Programming Contest in SIGMOD 2014.

    Design and implement a large social network database to support efficient queries. Competition Slides Poster

  • Capture the Flags (CTF, a form of security competition): 11th in SECCON CTF 2014, 8th in Codegate CTF 2015, 5th in DEFCON CTF 2015 as a team member of blue-lotus.