Xiuming Liu

Biography

Hello everyone, my name is Xiuming Liu (刘修铭, in Chinese). I am currently a master’s student at Shanghai Jiao Tong University (2025.09 – 2028.03), advised by Associate Professor Shuo Wang. I previously completed my undergraduate studies in Information Security at the College of Cryptology and Cyber Science, Nankai University.

My research aims to build safe, reliable, and transparent AI systems, with the goal of creating a more trustworthy AI environment that addresses pressing societal needs in privacy protection, decision-making transparency, and system robustness.

Research Interests

  • Security for single-modal and multi-modal large language models
  • Multi-agent collaborative systems and their security
  • Interpretability of artificial intelligence

I have organized the lab materials for the Information Security major courses at Nankai University, as well as the lecture notes and past exam papers for theoretical courses. Detailed content can be found at Baidu Cloud.

News

  • CareerI joined Ant Group as an intern.
  • AwardOur team "Marco Polo" (advised by Prof. Yong Qin, led by Mingjie Qi) won both the Intermediate and Advanced tracks of the "Agent Decision-Making Algorithm"(智能体决策算法, in Chinese) category at the 2025 Tencent Kaiwu AI Global Open Challenge(腾讯开悟人工智能全球公开赛暨第七届全国高校计算机能力挑战赛人工智能赛, in Chinese)!
  • PaperPaper “Quantifying Large Language Model Attacks Through the Lens of Model Cognition” (first-authored) accepted by USENIX Security 2026 (CCF-A, one of the top four security conferences) — see you in Baltimore!
  • AwardOur project "Multimodal Large Model-Driven Transparent Diagnosis Pod for Precision Gastrointestinal Disease Screening" won the National Excellence Award at the 2025 National Disruptive Technology Innovation Competition(全国颠覆性技术创新大赛, in Chinese), ranking among the top entries out of over 2,200 submissions nationwide!
  • AwardOur project "‘Youan: Multi-Agent AI Chain for End-to-End Disaster Response" was crowned Raft Master (Top Prize) in the AI Track of the 2025 China Youth Sci-Tech Innovation “Open Competition for Key Projects” Challenge under SH-23: "Multimodal-based Catastrophe Early Warning and Loss Mitigation".
  • CareerI am leaving Ant Group's Cryptology Lab after a great internship.
  • PaperPaper “SoK: Robustness in Large Language Models against Jailbreak Attacks” (with Feiyue Xu) accepted by IEEE S&P 2026 (CCF-A, one of the top four security conferences).
  • ResearchMy research has been officially registered with the China Copyright Protection Center, and the technology has been successfully deployed by a cybersecurity unit, achieving tangible results in real-world applications. Many thanks to all collaborators and mentors for their invaluable support and guidance!
  • UpdateAfter communicating with GitHub's support team for a full month, the website has finally been restored!
  • ResourceI have organized the lab materials for the Information Security major courses at Nankai University, as well as the lecture notes and past exam papers for theoretical courses. Detailed content can be found at Baidu Cloud.
  • AwardOur case study on "Multimodal Large Models Empowering Early Screening and Accurate Diagnosis of Serious Diseases" was awarded the "AI & SDGs: Top 10 Beacon Initiatives" at the 2025 World Artificial Intelligence Conference.
  • CareerI joined Ant Group's Cryptology Lab as an intern.
  • EducationI obtained a Bachelor of Engineering degree from Nankai University.

Education

Research & Industry Experience

Wuxi Blockchain Advanced Research Center

Artificial Intelligence and Data Security Lab

Supervisor: Shuo Wang

2025.01 – 2025.06Wuxi, China

Featured Publications

My name is highlighted in bold.

Under Review2026

How Far Does the Poison Travel? Benchmarking Protocol Exploits Across Long-Horizon Tasks in Multi-Agent Systems

Xiuming Liu

PROTOECHO evaluates whether protocol exploits in multi-agent systems propagate beyond local acceptance to cause end-to-end task and user harm.

USENIX Security2026

Quantifying Large Language Model Attacks Through the Lens of Model Cognition

Xiuming Liu*, Chaoxiang He*, Xuanran Yu, Jichen Chai, Feiyue Xu, Sheng Hang, Hanqing Hu, Bin Benjamin Zhu, Hongsheng Hu, Shi-Feng Sun, Dawu Gu, Shuo Wang

  • Discovery of "Cognitive Dissonance" in LLMs: Revealed a systematic recognition-enforcement gap where intermediate hidden states can distinguish harmful intent with 90%+ accuracy, yet the final decoder often prioritizes instruction-following over internal safety signals.
  • Quantitative Attack & Trajectory Metrics: Developed the Attack Consistency Index (ACI) and layer-wise cognitive drift metrics.
  • Lightweight Multi-Layer Sentinel: Introduced a robust mechanism under 5M parameters that maintains over 94% detection accuracy under white-box adaptive attacks.
IEEE S&P2026

SoK: Robustness in Large Language Models against Jailbreak Attacks

Feiyue Xu, Hongsheng Hu, Chaoxiang He, Sheng Hang, Hanqing Hu, Xiuming Liu, Yubo Zhao, Zhengyan Zhou, Bin Benjamin Zhu, Shi-Feng Sun, Dawu Gu, Shuo Wang

  • Security Cube Evaluation Framework: Designed a holistic evaluation paradigm integrating 14 quantitative metrics across attacker, defender, and judge axes.
  • Large-scale Empirical Benchmarking: Studied 13 representative attacks and 5 defenses across model scales from 7B to 671B using more than 48,000 attack attempts.
  • Systematic Taxonomy: Systematized seven attack types and five stages of defense deployment.

Selected Projects

  • Systematically organize the principles, attack techniques, detection, and defense methods of various vulnerabilities.
  • Track high-risk CVE cases, combining reproduction environments and exploitation chain analysis.
  • Provide learning materials tailored to different technical skill levels.
  • Pool community efforts to collaboratively build an open and shared vulnerability encyclopedia.
  • Designed a “multi-modality fusion encoder + WARM expert agent swarm + panoramic cockpit with safety foundation” tripartite architecture to tackle data fusion, cross-phase coordination, and trustworthiness in AI-driven disaster response.
  • Enabled real-time, voice-controlled AR-assisted field operations for frontline responders.
  • Deployed the system in public safety, insurance assessment, and healthcare domains.
  • Awarded Raft Master (Top Prize) in the AI Track of the 2025 China Youth Sci-Tech Innovation “Open Competition for Key Projects” Challenge.

“Mingqi” Medical Imaging Large Model Matrix

Subproject Leader
  • Multi-granularity features + domain-specific LLM → endoscopic reports with more than 20% higher semantic similarity.
  • Enhanced cross-modal image-text retrieval via fine-tuned PMC-CLIP, achieving more than 30% higher accuracy.
  • Built a 20-hour Mandarin medical speech corpus, reducing ASR false positive rate by more than 20%.
  • Built a multimodal evaluation framework across six gastrointestinal endoscopy diagnosis tasks, analyzing model failures and validating gains from in-context examples and fine-tuning.
  • Recognized as one of the Top 10 AI Application Scenarios at the 2nd Belt and Road Sci-Tech Exchange Conference and awarded Top 10 Outstanding Cases of AI for Sustainable Development.
  • Developed a lightweight automation tool that fetches the latest arXiv papers daily and delivers them directly to Lark group chats via a custom bot.
  • Features include scheduled fetching, customizable topic filters, LLM-powered paper summarization and translation, and influence prediction.
  • Designed multi-level attack strategies to expose vulnerabilities in T2I models.
  • Implemented a unified attack and evaluation framework for efficient and stealthy rewriting of harmful prompts.
  • Participated in framework design and attack-scheme testing; built an attack knowledge base and automatic prompt sanitization.
  • Supervisor: Chao Zhang, Associate Professor, Tenured, Deputy Director of Institute for Network Sciences, Tsinghua University.
  • Web3_MLM is a subset of the MLM project, providing an intelligent reverse analysis solution for Solidity smart contracts.
  • Constructed a high-quality dataset containing Solidity source code, assembly code, and bytecode at contract-level and function-level granularity.

Awards & Honors

Double Championship, 2025 Tencent Kaiwu AI Global Open Challenge2025.12
National Excellence Award, National Disruptive Technology Innovation Competition2025.11
Raft Master (Top Prize), China Youth Sci-Tech Innovation Challenge2025.10
Top 10 Outstanding Cases of AI for Sustainable Development2025.07
Outstanding Student Party Member of Nankai University2025.06
Head of Red Flag Party Branch of Nankai University2025.06
Zhou Enlai Scholarship · Highest scholarship of Nankai University2025.05
First Prize of Yun'an Cryptography Innovation Scholarship2025.04
National Scholarship · Top 1%2024.12
Outstanding Student of Nankai University2024.12
Ninety-five Core Scholarship, Nankai University2024.12
Outstanding Student Cadre of Tianjin2024.12
Third Prize, National College Students' Computer System Ability Competition2024.08
Head of the “I Do Practical Things for My Classmates” Excellent Project2024.06
Second Prize, Tianjin Division of National College Students' Mathematical Modeling Competition2023.11
National Scholarship · Top 1%2022.12

Professional Service

Reviewer IEEE TIFS, IEEE TDSC, IEEE EuroS&P, and related security/AI venues
Teaching Assistant Advanced Mathematics, Operating Systems, Advanced Language Programming (C++), Fundamentals of Artificial Intelligence

Contact

Email

  • lxmliu2002 [at] 126.com
  • lxmliu2002 [at] gmail.com
  • lxmliu2002 [at] sjtu.edu.cn
  • lxmliu2002 [at] mail.nankai.edu.cn
  • liuxiuming.lxm [at] antgroup.com

Beyond Academics

I like music, billiards, traveling and badminton. At the same time, I am also keen to try various positions of student work. I am a warm-hearted person. If you encounter any problems, you can always come to me and I will do my best to help you.

Nankai University logo Ant Group logo Shanghai Jiao Tong University logo Ant Group logo