All experience
Role
Research Intern, Software Security
Period
Sept 2025 - Jul 2026
Location
Montpellier, France

What I built

  • Designed a new graph representation that exposes the authorisation architecture of REST applications.
  • Architected a hybrid GNN detector for IDOR and missing access-control vulnerabilities (CWE-639).
  • Engineered an AI system using LangChain that automates systematic mapping studies while keeping the researcher in the loop.
  • Conducted systematic mapping studies of the vulnerability detection and remediation techniques and categories in the research domain.

Outcomes

  • 2 co-authored research papers

    Under review at Information and Software Technology

Stack

  • Python
  • Graph Neural Networks
  • LangChain
  • OpenAI SDK
  • Context engineering
  • OWASP
  • Burp Suite
  • Zoom

Research papers

  • Under review · Information and Software Technology

    Detecting broken access control (CWE-639) in REST applications with an authorisation graph and a hybrid GNN

  • Under review · Information and Software Technology

    Automating systematic mapping studies with an LLM pipeline while keeping the researcher in the loop

Topics shown, not titles. Titles and links will be added on publication.