Latest News

  • 2025.09.01: TECP: Token-Entropy Conformal Prediction for LLMs was accepted by Mathematics.
  • 2025.09.01: TECP: Token-Entropy Conformal Prediction for LLMs was released on arXiv.
  • 2025.08.07: One remote code execution vulnerability was collected by the CNVD Vulnerability Database.
  • 2025.07.01: I completed my internship as an IoT Security Engineer at Hillstone Networks Co., Ltd.
  • 2025.06.27: One remote code execution vulnerability was collected by CNNVD.

Biography

I am an undergraduate student at Shenzhen MSU-BIT University, majoring in Electronic and Computer Engineering. I also serve as the president of the university's Computer Association.

My research interests focus on information security, trustworthy artificial intelligence, multimodal large language models, natural language processing, embodied intelligence, and uncertainty analysis.

I have worked on binary vulnerability exploitation, IoT security, reverse engineering, privacy risks in document understanding models, and uncertainty estimation for large language models.

Research Interests

  • Trustworthy and privacy-preserving multimodal large language models
  • Document understanding, key information extraction, and privacy leakage analysis
  • Uncertainty estimation and conformal prediction for large language models
  • Embodied intelligence and navigation world models
  • Binary security, IoT security, reverse engineering, and vulnerability exploitation

Selected Publications

TECP
TECP: Token-Entropy Conformal Prediction for LLMs
Beining Xu, et al.
Mathematics, 2025

This work introduces Token-Entropy Conformal Prediction, a framework that uses token-level entropy as a logit-free and reference-free uncertainty measure, and integrates it into a split conformal prediction pipeline.

Education

  • Shenzhen MSU-BIT University, B.Eng. in Electronic and Computer Engineering, 2023-2027.

Awards

  • Bronze Medal, 2024 CCPC Guangzhou Invitational Contest.
  • CNVD Vulnerability Certificate: CNVD-2025-14134.
  • CNVD Vulnerability Certificate: CNVD-2025-13986.
  • CNVD Vulnerability Certificate: CNVD-2025-16003.
  • CNVD Vulnerability Certificate: CNVD-2025-13939.
  • CNNVD Vulnerability Certificate: CNNVD-2025-99097845.

Security and Vulnerability Reports

CNVD certificate
CNVD Certificate: Remote Code Execution Vulnerability
CNVD Vulnerability Database Collection

A remote code execution vulnerability was discovered through binary analysis, stack overflow exploitation, return address overwrite, and repeated debugging.

CNNVD certificate
CNNVD Certificate: Remote Code Execution Vulnerability
Assembly-Level Debugging and Remote Code Execution

This report focuses on binary-level vulnerability analysis and exploitation.

SQL injection
SQL Injection Vulnerability in Sourcecodester Sentiment Based Movie Success Rating Prediction System
CVE-2024-52675

A SQL injection vulnerability was discovered and reported.

D-Link vulnerability
Binary Vulnerability in D-Link DI-8100
CVE-2025-5228

A binary vulnerability was discovered and reported in the D-Link DI-8100 device.

Experience

  • Hillstone Networks Co., Ltd., IoT Security Engineer Intern, May 2025 to July 2025.
  • Key contributions include CNVD certificates, CNNVD certificates, vulnerability technology tracking articles, and product vulnerability reports.
  • President of the Computer Association, Shenzhen MSU-BIT University.
CCPC Guangzhou Invitational Contest
2024 CCPC Guangzhou Invitational Contest
Bronze Medal

Awarded a bronze medal in the 2024 CCPC Guangzhou Invitational Contest.

Hillstone internship
Hillstone Networks Co., Ltd. Internship Experience
IoT Security Engineer Intern

The internship focused on IoT device vulnerability research, CNVD and CNNVD submissions, and vulnerability technology tracking.