Agent security: agents built on trust. Make them secure and reliable enough to be handed real authority. SUDP (first author); SafeClaw.
Agentic forensics: agents built for trust. Put them to work for a better human society, blockchain forensics first. LOCARD (IEEE ICBC 2026, first author).
RL post-training: for a stronger AI. Study how post-training scales. ACL 2026 main; TMLR 2025 agentic-RL survey (co-first author).
agent security · agentic ai · security · blockchain
~/sky/projects/agent-security
SafeClawcredential broker for AI agents. An agent that holds your API key holds your full authority, every call, forever; here agents only ever see phantom credentials, a local proxy injects the real secret at the network edge, and sensitive calls wait for a passkey tap that becomes a single-use grant bound to one exact operation. A fully compromised agent still cannot spend your authority.co-founded 2026 · production stack built solo in three months · open sourcesafeclaw.progithubthe paper behind it
sudpSecret-Use Delegation Protocol, the protocol layer under SafeClawRust · 4 stars · arXiv 2026, first author
~/sky/projects/agentic-ai
tg-claude-botTelegram bridge for Claude Code: resume any CLI session, per-topic chats, local voice, inline-button approvalsPython · 16 stars
locardfirst agentic framework for blockchain forensics: LLM agents tracing transactions across chainsPython · 5 stars · IEEE ICBC 2026, first author
Awesome-AgenticLLM-RL-Paperspaper list companion to the TMLR 2025 agentic-RL survey; started and maintained here, later handed to a co-authormarkdown · 1898 stars
masframework for modular autonomous multi-agent systems, execution flow separated from the task graphPython · 1 star
~/sky/projects/security
EVM JOPjump-oriented programming brought to the EVM: gadget chains through JUMP, JUMPI and JUMPDEST, so a contract whose source reads clean can still carry a backdoor. Debuted as the Real World CTF 2018 Finals challenge Acoraida Monica, one solve in two days; since a canonical blockchain-CTF category, written up on CTF Wiki, and the subject of a two-part LiveOverflow video.2018 to 2019 · independent research · DEF CON 27 Blockchain Villagethe challengeslidesLiveOverflow’s solveCTF Wiki
ida-evm-enhancedIDA processor module for the EVM, extended for real-world contract reversingPython · 7 stars
ctf-eth-envdockerized private Ethereum network with an RPC proxy, for CTF challenge infrastructureJavaScript
~/sky/projects/blockchain
opmloptimistic machine learning: off-chain inference verified on-chain through a fault-proof dispute engine; core technical contributor to the standardSolidity
chainkitSolidity helper for deploying contracts from raw bytecode and reading deployed codeSolidity
standardscore technical contributor to opML, ERC-7007 (onchain AI-generated assets) and ERC-7641 (fee-sharing token); technical lead of China’s first national blockchain vulnerability scoring standard (CNVD); 3 MIIT national industry-standard research projects2018 to 2025
star counts as of september 2026
Talks
~/sky/talks/all
IEEE ICBC 2026 LOCARD: An Agentic Framework for Blockchain Forensics Brisbane · 2026
ISC Tech Forum Guide to Byzantine Traitors: New Types of Blockchain Vulnerabilities Beijing · 2020
CACE Training Course Blockchain Security, from the Basics to Practice Beijing · 2020
DEF CON 27 Village EVM Opcode JOP Las Vegas · 2019
DEF CON China 1.0 Village Practical Security of Blockchain in Industry Beijing · 2019
MiiXCon Blockchain Ecosystem Security, a Binary View Shanghai · 2019
Real World CTF Tech Forum Defeating Byzantium: Blockchain Security in Practice Beijing · 2019
BCCon A Brief Analysis of Smart-Contract Vulnerabilities Beijing · 2018
Yunqi 2050 Smart Contract Offense and Defense Hangzhou · 2018
About: career, education, honors
~/sky/about/career
since 2026 Co-founder, SafeClaw: an open-source credential broker for AI agents, so agents get scoped, per-use, user-approved delegation instead of reusable secrets. Built the production stack solo: a Rust egress proxy, an end-to-end encrypted passkey-sealed vault, a web console, and a cloud control plane.
2023 to 2025 Technical co-founder of a verifiable-AI infrastructure company. Built and led an engineering team of 10+; research and implementation of core protocols for verifiable AI systems and zero-knowledge-proof infrastructure.
2018 to 2023 Head of blockchain security, Chaitin Tech. Founded and led the practice from zero, one of the earliest such teams in China. 100+ zero-day vulnerabilities across the consensus, P2P, and verification layers of major blockchains; roughly 1M lines of code audited; 5 CVEs from smart-contract audits.
~/sky/about/education
Ph.D. Computer Science, Imperial College London, 2025 to 2027 (expected). Advised by William Knottenbelt.
M.S. Security Informatics, Johns Hopkins University.
B.S. Computer Science, Beijing Normal University.
~/sky/about/honors
DEF CON CTF World Finals, 3rd place (team)
Qiangwang Cup, national cybersecurity competition, first prize x2
ACM-ICPC Asia Regional, silver medal x2
China Undergraduate Mathematical Contest in Modeling, national first prize
China Scholarship Council full scholarship for the Johns Hopkins master’s, with thanks