Large Language Models For Automatic Bug Finding In Source Code Analysis H/F

il y a 5 jours


Grenoble, France CEA Temps plein

OverviewLarge language models for automatic bug finding in source code analysis H/F — Internship in Grenoble, France.CategoryMathematics, information, scientific, softwareContractInternshipJob titleLarge language models for automatic bug finding in source code analysis H/FSubjectJOIN US, TO DO WHAT?Contribute to technological innovation for clean and safe energy, health and well-being, sustainable transportation, information and communications, space exploration, safety and security: that is the mission of CEA - Leti. In the context of an ITSEF, the security evaluation of a software component requires a source code review (audit) performed by an evaluator who needs to be assisted by static analysis tools that can be configured and customized to help checking security requirements. The code analysis methodology at Leti ITSEF comprises two operations: (1) extract a piece of source code to verify a property, (2) attempt to automatically prove the property, and if the status is unknown (proof failed) search path conditions to violate the property. Such violations may reveal vulnerabilities to be exploited by malicious input data combined with fault injection.As an intern at CEA, you will work in a world-renowned research environment with teams of experts, offering a framework conducive to learning and collaboration. You will have access to state-of-the-art equipment and research resources to carry out your assignments.(1) Investigate how LLM can be used to assist evaluators in automatically finding bugs in source code, e.g., exploring how AI could assist in generating formal specifications, a long repetitive and complex process.(2) Assess how LLMs perform and can be complementary to traditional tools used for evaluation (formal methods, using Frama-C and Lazart).Literature review of LLM solutions for automatic bug finding.Test of LLMs on open benchmarks of source code containing vulnerabilities ([3,4]).Evaluation of a scope where LLMs are relevant (where they perform better than traditional tools, where they can be complementary to assist the evaluator).Proposition of a methodology to assist source code analysis with LLMs.References[2] Lacombe, G., Feliot, D., Boespflug, E. et al. Combining static analysis and dynamic symbolic execution in a toolchain to detect fault injection vulnerabilities. J Cryptogr Eng 14, 147–164 (2024). https://doi.org/10.1007/s13389-023-00310-8[3] WooKey challenge: https://wookey-project.github.io/[4] ANSSI, Amossys, EDSI, LETI, Lexfo, Oppida, Quarkslab, SERMA, Synacktiv, Thales, Trusted Labs. (2020) Inter-CESTI: Methodological and Technical Feedbacks on Hardware Devices Evaluations. https://www.sstic.org/2020/presentation/inter-cesti_methodological_and_technical_feedbacks_on_hardware_devices_evaluations/Methods / MeansLLM, IA, static code analysis, Formal methods, cybersecurityWhat do we expect from you?We are looking for a motivated and curious candidate (BAC+5) in cybersecurity to join our team. The candidate must have good programming skills (Python, C, assembly, …) and some basic knowledge in artificial intelligence, embedded system security, vulnerability exploits.A prior technical knowledge in formal methods for static code analysis is highly valued. A proactive and autonomous profile, an enthusiasm for scientific research are encouraged.We offerAn internship in the heart of the Grenoble metropolitan area, easily accessible via the CEA\'s soft mobility program.A unique research environment dedicated to topics with high societal impact.Experience in a cutting-edge field of innovation with strong industrial development potential.Training to strengthen skills or acquire new ones in embedded electronics, information technology, telecommunications, and/or cybersecurity.In accordance with the CEA\'s commitments to the integration of people with disabilities, this job is open to all. The CEA offers accommodations and/or organizational possibilities for inclusion of workers with disabilities.SiteGrenobleJob locationGrenobleLocationGrenobleLanguagesNot specifiedPrepared diplomaBAC+5 preferredRequester02/02/2026General informationThe French Alternative Energies and Atomic Energy Commission (CEA) is a key player in research, development and innovation in four main areas: defence and security, nuclear energy, technological research for industry, and fundamental research in physical and life sciences. The CEA collaborates with academic and industrial partners and is established in ten centers across France. The ITSEF at CEA-Leti provides security evaluations for industrial products to obtain certification and conducts security tests and audits of design and production sites. #J-18808-Ljbffr



  • Grenoble, Auvergne-Rhône-Alpes, France CEA Temps plein

    Position descriptionCategoryMathematics, information, scientific, softwareContractInternshipJob titleLarge language models for automatic bug finding in source code analysis H/FSubjectJOIN US, TO DO WHAT?Contribute to technological innovation for clean and safe energy, health and well-being, sustainable transportation, information and communications, space...


  • Grenoble, Auvergne-Rhône-Alpes, France CEA Temps plein

    General information Organisation The French Alternative Energies and Atomic Energy Commission (CEA) is a key player in research, development and innovation in four main areas :• defence and security,• nuclear energy (fission and fusion),• technological research for industry,• fundamental research in the physical sciences and life sciences.Drawing...


  • Grenoble, France CEA Temps plein

    A leading research organization is seeking a motivated intern in Grenoble for an exciting opportunity to work on large language models for code analysis. You will collaborate with experts in a cutting-edge environment, focusing on technological innovation in cybersecurity. Strong programming skills and a BAC+5 or equivalent in a related field are required....


  • Grenoble, France CEA Temps plein

    Position description **Category**: - Mathematics, information, scientific, software **Contract**: - Postdoc **Job title**: - POSTDOC (M/F) - Modeling and Analysis of Prospective Scenarios for Hydrogen in France and Germany **Subject**: - The use of hydrogen produced by electrolysis, along with its derivatives (such as synthetic methanol and synthetic...


  • Grenoble, France CEA Temps plein

    POSTDOC (M/F) - Modeling and Analysis of Prospective Scenarios for Hydrogen in France and Germany Category: Mathematics, information, scientific, softwareContract: Postdoc Overview The use of hydrogen produced by electrolysis along with its derivatives is a key solution to decarbonise sectors such as steel industry, sea and air transport. The French–German...


  • Grenoble, Auvergne-Rhône-Alpes, France CEA Temps plein

    Position descriptionCategoryMathematics, information, scientific, softwareContractPostdocJob titlePOSTDOC (M/F) - Modeling and Analysis of Prospective Scenarios for Hydrogen in France and GermanySubjectThe use of hydrogen produced by electrolysis, along with its derivatives (such as synthetic methanol and synthetic kerosene), is one of the solutions...


  • Grenoble, France France Life Imaging Temps plein

    Type de structure : The Grenoble Institute of Neurosciences mission is to understand the functioning of both central and peripheral nervous systems and to Propose innovative therapies for neurological, neuromuscular and psychiatric disorders.Research at the GIN spans from brain development to adult brain plasticity, from the molecular to the most integrated...

  • Internship in Ai

    il y a 2 jours


    Grenoble, France CEA Temps plein

    Position description **Category**: - Mathematics, information, scientific, software **Contract**: - Internship **Job title**: - Internship in AI & LLM Adaptation of What-if Simulations for Business Processes H/F **Subject**: - AI & LLM Adaptation of What-if Simulations for Business Processes **Contract duration (months)**: - 6 **Job...

  • Computing Scientist

    il y a 1 semaine


    Grenoble, France ILL Temps plein

    **Computing Scientist** **Context** The Institut Laue-Langevin (ILL), situated in Grenoble, France, is Europe's leading research facility for scientific research using neutrons. Every year, we host over 2000 visits by scientists, who come to the Institute to carry out world-class research. The Computing for Science (CS) Group develops and maintains software...


  • Grenoble, France France Life Imaging Temps plein

    Type de structure : We offer a stimulating research environment gathering experts in Image processing, Neurosciences & Neuroimaging, Advanced Statistical and Machine Learning methods from CREATIS, Grenoble Institute of Neurosciences (GIN) and INRIA. The PhD position is granted by the “Défi IA” program sponsored by la Région Auvergne Rhône-Alpes.The...