News

  • I will defend my habilitation (HDR) on Monday, November 2, 2026, at 2:00 PM at LORIA (Nancy). Everyone is welcome, on site or remotely: see the HDR defense page for the committee, abstract, and practical information.

  • New paper accepted at IEEE Security & Privacy 2027: DDYF: Differential Dolev-Yao Fuzzing of Cryptographic Protocols, with Tom Gouville and Steve Kremer.

  • New fully funded open positions for a postdoc, a PhD candidate, and a Master's intern.

  • My ProtoFuzz project (2023-2027) was funded by the ANR (280k euros) as a JCJC project (individual research projects coordinated by young researchers). I am looking for students (research interns, PhD students), postdocs, and engineers to join this research effort. In case you are interested, contact me via email.

Publications

See also on dblp and G Scholar

. DDYF: Differential Dolev-Yao Fuzzing of Cryptographic Protocols. S&P, 2027.

Preprint PDF

. A Comprehensive Formal Security Analysis of OPC UA. Usenix Security, 2025.

Preprint

. Election Eligibility with OpenID: Turning Authentication into Transferable Proof of Eligibility. Usenix Security, 2024.

Preprint

. Hash Gone Bad: Automated discovery of protocol attacks that exploit hash function weaknesses. Usenix Security, 2023.

Preprint Best paper award

. A Spectral Analysis of Noise: A Comprehensive, Automated, Formal Analysis of Diffie-Hellman Protocols. Usenix Security, 2020.

PDF DOI Tool Models and proofs

. Verification of Stateful Cryptographic Protocols with Exclusive OR. JCS (journal), 2020.

Preprint PDF DOI Code

. A method for unbounded verification of privacy-type properties. JCS (journal), 2019.

Preprint PDF DOI Tool

. Symbolic Analysis of Identity-Based Protocols. Festschrift Symposium in Honor of Catherine Meadows, LNCS 11565, 2019.

PDF DOI Models

. A Formal Analysis of 5G Authentication. CCS, 2018.

PDF Slides Extended version DOI Media coverage Models

. A Reduced Semantics for Deciding Trace Equivalence. LMCS (journal), 2017.

PDF DOI Code

. Mobile subscriber WiFi privacy. Security & Privacy Workshops (MoST), 2017.

PDF DOI Best paper award Models

. A method for verifying privacy-type properties: the unbounded case. Security & Privacy (Oakland), 2016.

PDF Slides DOI Tool Models

. Towards Completeness via Proof Search in the Linear Time μ-calculus. LICS, 2016.

PDF DOI

. Partial Order Reduction for Security Protocols. CONCUR, 2015.

PDF Slides DOI Code

Service

I serve in the program committee of Usenix Security (2025-), where I received a Distinguished Reviewer Award in 2026 (and was a Notable Reviewer in 2025). I have previously served in the program committee of the European Symposium on Research in Computer Security (ESORICS) (2024), ACM ASIACCS symposium (2023), the Computer Security track at the ACM Symposium on Applied Computing (SEC@SAC) (2019-2022), and the HotSpot workshop (affiliated with IEEE European Symposium on Security and Privacy) (2021). I have been an external scientific expert for the ANR (French National Agency for Research) Generic Call in 2019 and 2020, and for the Flanders Innovation & Entrepreneurship agency VLAIO (Flemish Government) in 2025. I have reviewed papers for CCS, CSF, Euro S&P, ACM TOPS, JCS, etc.

I serve as the president of the jury (2025-) of the best PhD artifact award of the GDR Sécurité. I am also in the program committee (2024-) of the Gilles Kahn Thesis Award of the Société Informatique de France (SIF) (annual award for the best French thesis in computer science). I am a local member of the Legal and Ethical Risk Assessment Committee (COERLE) of Inria. I co-organized the GDR Sécurité summer school Cyber in Nancy 2022. I was a member of the 2025 jury grading the “Info A” entrance exam of the French “Grandes Écoles” ENS.

I am the PI of the ProtoFuzz project (2023-2027) funded by ANR JCJC (280k euros). I am or was a member of the France 2030 ANR PEPR Cybersécurité (SVP) (2022-2026) and ANR Chair IA ASAP project (2020-2024). I was co-coordinator of a joint project between Huawei Technologies Singapore Research Center and ETH Zurich on 5G protocols (2018-2019). I have participated in the following projects: ANR Chair of research and teaching in artificial intelligence (ASAP), ERC Consolidator Grant SPOOC, ERC Starting Grant POPSTAR, ANR project Sequoia, ANR project ProSe, ANR JCJC project VIP.

Tools

puffin (project lead)

We designed and developed a new kind of model-guided fuzzer. The novel idea is to use the security-related Dolev-Yao formal model to guide the fuzzer towards finding logical attacks in security protocol implementations. Developed with Max Ammann (master's intern and then security engineer at Trail of Bits), Tom Gouville (PhD student), Nataël Baffou, Olivier Demengeon, and Michael Mera (research engineers). Research conducted with T. Gouville, M. Ammann, and S. Kremer.

Porridge

Porridge is a standalone OCaml library implementing Partial Order Reduction techniques for checking trace equivalence of security protocols. It is not restricted to the limited class of action-deterministic protocols as in prior works. It has been successfully integrated into two state-of-the-art verifiers DeepSec and Apte, bringing significant speedups. Theory and practical results are described in our ESORICS’18 paper.

UKano (project lead)

UKano is a tool that enables the automatic formal verification of unlinkability and anonymity for a large class of 2-agents protocols that was previously out of scope. It has been notably used to discover new attacks on ePassport protocols. I have written this tool by leveraging our new verification method proposed in our S&P’16 paper.

Supervisions

PhD students

  • (2026-) Benjamin Voisin: Dolev-Yao-Model-Guided Fuzzing of E-Voting Protocols.
  • (2026-) Arthur Outrey: Design and implementation of a hybrid-secure e-voting protocol.
  • (2023-) Tom Gouville: DY Fuzzing: Formal Dolev-Yao Models Meet Protocol Fuzz Testing.
  • (2022-) Vincent Diemunsch: Formal Analysis of Industrial Protocols.

Research engineers

  • (2026-) Nataël Baffou: support on our DY fuzzer puffin (one-year contract funded by my ANR ProtoFuzz project).
  • (2024-) Olivier Demengeon: support on our DY fuzzer puffin, 80% (funded by Inria, SED).
  • (2023-2024) Michael Mera: support on our DY fuzzer puffin, full time (funded by my ANR ProtoFuzz project).
  • (2022) Anselme Goetschmann: implementation of our eligibility verifiability protocol based on OpenID Connect and our new ZK-SNARK.

Bachelor and master students

  • (2026) Benjamin Voisin (master student, ENS Rennes, France): Dolev-Yao-Model-Guided Fuzzing of E-Voting Protocols.
  • (2026) Arthur Outrey (master student, ENS Lyon, France): Design and implementation of a hybrid-secure e-voting protocol.
  • (2026) Lucie-Hélène Cuingnet (bachelor student, ENS de Paris-Saclay, France): DY Fuzzing: Feedback Metrics.
  • (2025) Maxime Lalisse (master student, Université de Lille, France): Le pastillage dans le vote électronique.
  • (2023) Benjamin Voisin (bachelor student, ENS de Rennes, France): ZKP for eligibility verification in e-voting based on OpenID.
  • (2023) Micol Giacomin (bachelor student, ENS de Paris-Saclay, France): Bit-level mutations for DY fuzzers.
  • (2023) Dominique Bazin (bachelor student, ENS de Paris, France): Proving unlinkability based on reachability-based sufficient conditions.
  • (2021) Max Ammann (master student, Technical University of Munich, Germany): DY fuzzing for testing cryptographic protocols implementations.
  • (2020) Guilhem Roy (master student, École Polytechnique, France): Symbolic-Model-Aware Fuzzing of Cryptographic Protocols.
  • (2020) Timothé Bonhoure (bachelor student, ENS Lyon, France): Improving Cryptographic Protocols Verification: The Best of Two Worlds.
  • (2020) Karan Agarwalla (bachelor student, IIT Bombay, India): Formally Comparing and Evaluating Privacy Properties.
  • (2019-2020) Paul Artigouha (master student, Mines de Nancy, France): Formalizing and verifying privacy for the security protocols from the Noise framework.
  • (2018-2019) Guillaume Girol (master student, École Polytechnique, France): Formalizing and verifying the security protocols from the Noise framework.
  • (2018-2019) Silvan Läubli (bachelor student, ETH Zurich, Switzerland): Implementing a public bulletin board for Alethea.
  • (2018-2019) Andris Suter-Dörig (bachelor student, ETH Zurich, Switzerland): Formalizing and verifying the security protocols from the Noise framework.
  • (2018) Vincent Falconieri (master student working as an academic assistant (Hiwi), ETH Zurich, Switzerland): Fuzzing authentication protocols in LTE.
  • (2017-2018) Vincent Stettler (master student working as an academic assistant (Hiwi), ETH Zurich, Switzerland): NextGen Network Security Analysis.
  • (2017) David Lanzenberger (bachelor student, ETH Zurich, Switzerland): Formal Analysis of 5G Protocols.

Open positions

Teaching

At Université de Lorraine

At Telecom Nancy

At ETH Zurich

At ENS Cachan

  • Lectures and TA on the theorem prover Coq & SAT-Solving (2015-2017),
  • TA for Logic, Software Engineering, Computability, Computer Programming & Compilation (2013-2017).

Industrial audience

  • Inria Academy masterclass on ProVerif, with Alexandre Debant and Steve Kremer, for Trail of Bits (2024), Eviden (Atos) and Idemia (2025)
  • Inria Academy masterclass on e-voting, with Alexandre Debant, for the French INSP (2025)
  • Formal Methods tutorial given to Huawei Singapore with Ralf Sasse, as part of a joint project with ETH Zurich (2017-2018)

Contact