Software Security, Software Engineering, Database and Large Language Models.
Currently, my research focuses on (1) Database Testing: enhancing the reliability and security of database systems using advanced software testing techniques, particularly addressing testing in multi-dialect environments and developing efficient test oracles; (2) Efficient Text-to-SQL Systems: building efficient Text-to-SQL systems focused on generating high-performance and low-hallucination SQL queries; (3) Security in Open Source Software Ecosystems: investigating security issues in open-source software ecosystems, with a focus on improving the security of libraries and reducing vulnerabilities; and (4) Security of LLMs- and Agent-based Systems: focusing on LLM-based applications/agent security such as jailbreak and prompt injection.
Education
2022-09 ~ 2025.06
Master's degree in Computer Science and Technology, Xiamen University
# means equal contribution. * means corresponding author.
Patents
Patent No: CN119807057A
Large Language Model-Based Method, Apparatus, and Computer-Readable Medium for Database Test Case Expansion.
Patent No: CN118035274A
The method and device for processing SQL statements.
Patent No: CN115016840B
Method and Device for Dependency Conflict Resolution Based on Call Graph
Patent No: CN114780109B
Method for automated parsing and installation of third-party library dependencies in Python projects.
Academic Service
Journal Reviewer: IEEE Transactions on Information Forensics & Security (TIFS) 2025
Journal Reviewer: IEEE Transactions on Software Engineering (TSE) 2025
Industry Experience
Ant Group, Shenzhen, China (May 2024 - Aug 2024): Research Intern, working on LLM-aided bug detection.
Talks
DLBENCH: A Comprehensive Benchmark for SQL Translation with Large Language Models (conference talk), hosted by ASE25, Souel, Novermber 2025
QTRAN: Extending Metamorphic-Oracle based Logical Bug Detection Techniques for Multiple-DBMS Dialect Support (conference talk), hosted by Issta25, Trondheim, June 2025
Automating and Enhancing DBMS Testing: From SQL Generation and Transformation to Simplification (invited talk), hosted by Cyber Security Research Center, Nanyang Technological University, Singapore, Jan 2025
SQLess: Dialect-agnostic SQL Query Simplification (invited talk), hosted by Ant Technology Research Institute, Online (Public), Nov 2024