4 papers
An Analysis of Architectural and Operational Dynamics of Phishkits in the Wild
Behzad Ousat, Mohammad Ali Tofighi, Estefan Schafir +1
Phishing attacks have always been a favored vector for adversaries to defraud users, bypass modern defense mechanisms, and penetrate critical systems. Among all the elements contri…
Broken Gates: Re-evaluating Web Bot Defenses in the Age of LLM Agents
Behzad Ousat, Nikita Turkmen, Lalchandra Rampersaud +2
LLM-based browser agents are rapidly changing the threat landscape for web security. Unlike traditional automation frameworks that execute predefined scripts, these agents can auto…
Open Source, Open Threats? Investigating Security Challenges in Open-Source Software
Seyed Ali Akhavani, Behzad Ousat, Amin Kharraz
Open-source software (OSS) has become increasingly more popular across different domains. However, this rapid development and widespread adoption come with a security cost. The gro…
In-Application Defense Against Evasive Web Scans through Behavioral Analysis
Behzad Ousat, Mahshad Shariatnasab, Esteban Schafir +2
Web traffic has evolved to include both human users and automated agents, ranging from benign web crawlers to adversarial scanners such as those capable of credential stuffing, com…