Academic homepage · Personal blog · Email
I'm Vincent, a master's student at Huazhong University of Science and Technology and a member of Security Pride.
My research focuses on LLM systems security and static program analysis. I build security tools and research prototypes, and enjoy understanding how things work by reading their source.
- Research: language-model systems, vulnerability analysis, and evidence-driven checker refinement.
- Engineering: security automation, developer tools, and reproducible experiments.
- Industry experience: security engineering at StepFun in Shanghai; R&D at ByteDance in Hangzhou.
| Project | What it does |
|---|---|
| dvwa-skills | A Codex skill for authorized web-lab and CTF assessments, with evidence collection, repeatable workflows, and clear reports. |
| ccfa-skills | Research-figure tooling for CS papers: benchmark plots, multi-panel figures, SVG/PDF/PNG export, and layout checks. |
| AutoTCPReassemble | Reconstructs TCP streams from PCAP captures, with workflows for vulnerability and malicious-code analysis. |
More research context and experience on my academic homepage · Notes and experiments on my blog.
Languages Python · Go · C / C++ · JavaScript / TypeScript
Tools Linux · Git · Docker · CodeQL · Clang Static Analyzer
GitHub activity & language statistics
Academic · Blog · CSDN · Bilibili · yimou@hust.edu.cn

