Publications
Our research work is regularly submitted and published at security and measurement conference venues. Our previous works got published at highly selective and top-tier conferences such as S&P [‘24x2], USENIX Security [‘25x2, ‘21], NDSS [‘18,’17], WWW [‘25], and IMC [‘22x2,’20,’19] as well as other reputable venues such as EuroS&P [‘23], DIMVA [‘22], AsiaCCS [‘16] and ESORICS [‘13].
“Please don’t send that bot anything”: A Mixed-methods Study of Personal Impersonation Attacks Targeting Digital Payments on Social Media
Hoang Dai Nguyen , Sumit Dhungana , Madhulika Itha , Phani Vadrevu
34th USENIX Security Symposium (USENIX Security) 2025
Seattle, U.S.A. 2025
Acceptance Rate: 442 / 2400 (18.4%)
Doubly Dangerous: Evading Phishing Reporting Systems by Leveraging Email Tracking Techniques
Anish Chand , Nick Nikiforakis , Phani Vadrevu
34th USENIX Security Symposium (USENIX Security) 2025
Seattle, U.S.A. 2025
Acceptance Rate: 442 / 2400 (18.4%)
The ACM Web Conference (formerly, WWW) 2025
Hoang Dai Nguyen , Phani Vadrevu
Breaking the Shield: Analyzing and Attacking Canvas Fingerprinting Defenses in the in-the-wild
Sydney, Australia 2025
Acceptance Rate: 409 / 2062 (19.8%)
Conning the Crypto Conman: End-to-End Analysis of Cryptocurrency-based Technical Support Scams
Bhupendra Acharya , Muhammad Saad , Antonio Emanuele Cinà , Lea Schönherr , Hoang Dai Nguyen , Adam Oest , Phani Vadrevu , Thorsten Holz
2024 IEEE Symposium on Security and Privacy (SP)
San Francisco, U.S.A. 2024
Acceptance Rate: 258 / 1449 (17.8%)
C-Frame: Characterizing and Measuring in-the-wild CAPTCHA Attacks
Hoang Dai Nguyen , Karthika Subramani , Bhupendra Acharya , Roberto Perdisci , Phani Vadrevu
2024 IEEE Symposium on Security and Privacy (SP)
San Francisco, U.S.A. 2024
Acceptance Rate: 258 / 1449 (17.8%)
Understanding, Measuring, and Detecting Modern Technical Support Scams
Jienan Liu , Pooja Pun , Phani Vadrevu , Roberto Perdisci
8th IEEE European Symposium on Security and Privacy (Euro S&P)
Delft, Netherlands 2023
Acceptance Rate: 63 / 176 (35.8%)
PhishInPatterns: Measuring Elicited User Interactions at Scale on Phishing Websites
Karthika Subramani , William Melicher , Oleksii Starov , Phani Vadrevu , Roberto Perdisci
22nd ACM Internet Measurement Conference (IMC)
Nice, France 2022
Acceptance Rate: 56 / 212 (26.4%)
Your Speaker or My Snooper? Measuring the Effectiveness of Web Audio Browser Fingerprints
Shekhar Chalise , Hoang Dai Nguyen , Phani Vadrevu
22nd ACM Internet Measurement Conference (IMC)
Nice, France 2022
Acceptance Rate: 56 / 212 (26.4%)
A Human in Every APE: Delineating and Evaluating the Human Analysis Systems of Anti-Phishing Entities
Bhupendra Acharya , Phani Vadrevu
The 19th Conference on Detection of Intrusions and Malware & Vulnerability Assessment (DIMVA)
Cagliari, Italy 2022
Acceptance Rate: 11 / 39 (28.2%)
PhishPrint: Evading Phishing Detection Crawlers by Prior Profiling
Bhupendra Acharya , Phani Vadrevu
30th USENIX Security Symposium (USENIX Security)
Virtual 2021
Acceptance Rate: 246 / 1316 (18.7%)
When Push Comes to Ads: Measuring the Rise of (Malicious) Push Advertising
Karthika Subramani , Xingzi Yuan , Omid Setayeshfar , Phani Vadrevu , Kyu Hyung Lee , Roberto Perdisci
20th ACM Internet Measurement Conference (IMC)
Virtual 2020
Acceptance Rate: 53 / 216 (24.5%)
What You See is NOT What You Get: Discovering and Tracking Ad-Driven Social Engineering Attack Campaigns
Phani Vadrevu , Roberto Perdisci
19th ACM Internet Measurement Conference (IMC)
Amsterdam, Netherlands 2019
Acceptance Rate: 38 / 197 (19.3%)
JSgraph: Enabling Reconstruction of Web Attacks via Efficient Tracking of Live In-Browser JavaScript Executions
Bo Li , Phani Vadrevu , Kyu Hyung Lee , Roberto Perdisci
25th Annual Network and Distributed System Security Symposium (NDSS)
San Diego, U.S.A. 2018
Acceptance Rate: 71 / 331 (21.5%)
Enabling Reconstruction of Attacks on Users via Efficient Browsing Snapshots
Phani Vadrevu , Jienan Liu , Bo Li , Babak Rahbarinia , Kyu Hyung Lee , Roberto Perdisci
24th Annual Network and Distributed System Security Symposium (NDSS)
San Diego, U.S.A. 2017
Acceptance Rate: 68 / 423 (16.1%)
MAXS: Scaling malware execution with sequential multi-hypothesis testing
Phani Vadrevu , Roberto Perdisci
11th ACM on Asia Conference on Computer and Communications Security (AsiaCCS)
Xi'an, China 2016
Acceptance Rate: 73 / 350 (20.9%)
Measuring and detecting malware downloads in live network traffic
Phani Vadrevu , Babak Rahbarinia , Roberto Perdisci , Kang Li , Manos Antonakakis
European Symposium on Research in Computer Security (ESORICS)
Egham, U.K. 2013
Acceptance Rate: 43 / 242 (17.8%)