Publications
Peer-Reviewed#
Characterizing robocalls with multiple vantage pointsSathvik Prasad, Aleksandr Nahapetyan, Bradley Reaves
Proceedings of the IEEE Symposium on Security and Privacy, 2025
[PDF]
JSHint: Revealing API Usage to Improve Detection of Malicious JavaScript
Shaown Sarker, Kasimir Schulz, Aleksandr Nahapetyan, Anupam Das, Alexandros Kapravelos
Proceedings of the Information Security Conference (ISC), 2024
[PDF]
On SMS Phishing Tactics and Infrastructure
Aleksandr Nahapetyan, Sathvik Prasad, Kevin Childs, Adam Oest, Yeganeh Ladwig, Alexandros Kapravelos, Brad Reaves
Proceedings of the IEEE Symposium on Security and Privacy, 2024
[PDF]
ARGUS: A Framework for Staged Static Taint Analysis of GitHub Workflows and Actions
Siddharth Muralee, Igibek Koishybayev, Aleksandr Nahapetyan, Greg Tystahl, Brad Reaves, Antonio Bianchi, William Enck, Alexandros Kapravelos, Aravind Machiry
Proceedings of the USENIX Security Symposium, 2023
[PDF] [Code] [Website]
Characterizing the Security of Github CI Workflows
Igibek Koishybayev, Aleksandr Nahapetyan, Raima Zachariah, Siddharth Muralee, Brad Reaves, Alexandros Kapravelos, Aravind Machiry
Proceedings of the USENIX Security Symposium, 2022
[PDF] [Code] [Website]
Preprints & Posters#
Waaa! Web Adversaries Against Agentic BrowsersSohom Datta, Aleksandr Nahapetyan, William Enck, Alexandros Kapravelos
arXiv:2605.05509 [cs.CR], 2026
[PDF]
Characterizing Phishing Pages by JavaScript Capabilities
Aleksandr Nahapetyan, Kanv Khare, Kevin Schwarz, Bradley Reaves, Alexandros Kapravelos
arXiv:2509.13186 [cs.CR], 2025
[PDF]
Poster: Looking at the landscape of SMS Phishing
Aleksandr Nahapetyan, Kevin Childs, Sathvik Prasad, Bradley Reaves and Alexandros Kapravelos
Network and Distributed System Security Symposium (NDSS), 2022
[PDF]