Publications

See also Google Scholar and DBLP


2026

“I Wonder if These Warnings Are Accurate”: Security and Privacy Advice in Nine Majority World Countries
Collins W. Munyendo, Veronica A. Rivera, Jackie Hu, Emmanuel Tweneboah, Amna Shahnawaz, Karen Sowon, Dilara Kekulluoglu, Marcos Silva, Yue Deng, Mercy Omeiza, Gayatri Priyadarsini Kancherla, Maria Rosario Niniz Silva, Maryam Mustafa, Abhishek Bichhawat, Francisco Marmolejo-Cossio, Elissa M. Redmiles, Yixin Zou
47th IEEE Symposium on Security and Privacy (Oakland), May 2026


2025

Fall-through Semantics for Mitigating Timing-based Side Channel Leaks
Aniket Mishra and Abhishek Bichhawat
45th IARCS Annual Conference on Foundations of Software Technology and Theoretical Computer Science (FSTTCS), December 2025

Johnny Can’t Revoke Consent Either: Measuring Compliance of Consent Revocation on the Web
Gayatri Priyadarsini, Nataliia Bielova, Cristiana Santos and Abhishek Bichhawat
Proceedings on Privacy Enhancing Technologies (PoPETS), July 2025

On the Prevalence and Usage of Commit Signing on GitHub: A Longitudinal and Cross-Domain Study
Anupam Sharma, Sreyashi Karmakar, Gayatri Priyadarsini, and Abhishek Bichhawat
International Conference on Evaluation and Assessment in Software Engineering (EASE), June 2025

Least Privilege Access for Persistent Storage Mechanisms in Web Browsers
Gayatri Priyadarsini, Dishank Goel and Abhishek Bichhawat
The ACM Web Conference (WWW), April 2025

A Unified Browser-Based Consent Management Framework
Gayatri Priyadarsini and Abhishek Bichhawat
47th International Conference on Software Engineering (New Ideas and Emerging Results), April 2025

Worst-Case Response Time Analysis for Periodic Programs with Nested Locks
Harshit Ramolia, Siddhesh Kanawade and Abhishek Bichhawat
18th Innovations in Software Engineering Conference (ISEC), February 2025


2024

Online Authentication Habits of Indian Users
Pratyush Choudhary, Subhrajit Das, Mukul Paras Potta, Prasuj Das and Abhishek Bichhawat
1st International Conference on Building a Secure and Empowered Cyberspace (BuildSec), December 2024

ICISS 2024 Web Privacy Perceptions Amongst Indian Users
Gayatri Priyadarsini, Anshika Saxena, Aditi Dey, Prakriti and Abhishek Bichhawat
20th International Conference on Information Systems Security (ICISS), December 2024


2023

Tainted Secure Multi-Execution to Restrict Attacker Influence
McKenna McCall, Abhishek Bichhawat and Limin Jia
ACM Conference on Computer and Communications Security (CCS), November 2023

Layered Symbolic Security Analysis in DY*
Karthikeyan Bhargavan, Abhishek Bichhawat, Pedram Hosseyni, Ralf Küsters, Klaas Pruiksma, Guido Schmitz, Clara Waldmann and Tim Würtele
28th European Symposium on Research in Computer Security (ESORICS), September 2023

Towards Usable Security Analysis Tools for Trigger-Action Programming
McKenna McCall, Eric Zeng, Faysal Hossain Shezan, Mitchell Yang, Lujo Bauer, Abhishek Bichhawat, Camille Cobb, Limin Jia and Yuan Tian
Nineteenth Symposium on Usable Privacy and Security (SOUPS), August 2023


2022

Compositional Information Flow Monitoring for Reactive Programs
McKenna McCall, Abhishek Bichhawat and Limin Jia
IEEE European Symposium on Security and Privacy (EuroS&P), June 2022

Noise: A Library of Verified High-Performance Secure Channel Protocol Implementations*
Son Ho, Jonathan Protzenko, Abhishek Bichhawat and Karthikeyan Bhargavan
IEEE Symposium on Security and Privacy (Oakland), May 2022


2021

A Tutorial-Style Introduction to DY*
Karthikeyan Bhargavan, Abhishek Bichhawat, Quoc Huy Do, Pedram Hosseyni, Ralf Küsters, Guido Schmitz and Tim Würtele
Protocols, Strands, and Logic. Lecture Notes in Computer Science, vol 13066, November 2021

An In-Depth Symbolic Security Analysis of the ACME Standard
Karthikeyan Bhargavan, Abhishek Bichhawat, Quoc Huy Do, Pedram Hosseyni, Ralf Küsters, Guido Schmitz and Tim Würtele
Proceedings of the ACM Conference on Computer and Communications Security (CCS), November 2021

Permissive Runtime Information Flow Control in the Presence of Exceptions
Abhishek Bichhawat, Vineet Rajani, Deepak Garg and Christian Hammer
Journal of Computer Security (JCS), 2021

DY: A Modular Symbolic Verification Framework for Executable Cryptographic Protocol Code*
Karthikeyan Bhargavan, Abhishek Bichhawat, Quoc Huy Do, Pedram Hosseyni, Ralf Küsters, Guido Schmitz and Tim Würtele
Proceedings of the IEEE European Symposium on Security and Privacy (EuroS&P), September 2021

Gradual Security Types and Gradual Guarantees
Abhishek Bichhawat, McKenna McCall and Limin Jia
Proceedings of the 34th IEEE Computer Security Foundations Symposium (CSF), June 2021

Automating Audit with Policy Inference
Abhishek Bichhawat, Matt Fredrikson and Jean Yang
Proceedings of the 34th IEEE Computer Security Foundations Symposium (CSF), June 2021


2020

Contextual and Granular Policy Enforcement in Database-backed Applications
Abhishek Bichhawat, Matt Fredrikson, Jean Yang and Akash Trehan
Proceedings of the 15th ACM Asia Conference on Computer and Communications Security (AsiaCCS), 2020


2018

Practical Dynamic Information Flow Control
Abhishek Bichhawat
PhD Thesis, Saarland University, 2018


2017

WebPol: Fine-grained Information Flow Policies for Web Browsers
Abhishek Bichhawat, Vineet Rajani, Jinank Jain, Deepak Garg and Christian Hammer
Proceedings of the 22nd European Symposium on Research in Computer Security (ESORICS), 2017


2015

Information Flow Control for Event Handling and the DOM in Web Browsers 🏆
Vineet Rajani, Abhishek Bichhawat, Deepak Garg and Christian Hammer
Proceedings of the 28th IEEE Computer Security Foundations Symposium, 2015
RS3 Best Paper Award

Post-dominator Analysis for Precisely Handling Implicit Flows
Abhishek Bichhawat
Companion Proceedings of the 37th IEEE International Conference on Software Engineering (ICSE), May 2015
Extended Abstract


2014

Generalizing Permissive-Upgrade in Dynamic Information Flow Analysis
Abhishek Bichhawat, Vineet Rajani, Deepak Garg and Christian Hammer
Proceedings of the ACM 9th Workshop on Programming Languages and Analysis for Security (PLAS), July 2014

Exception Handling for Dynamic Information Flow Control
Abhishek Bichhawat
Companion Proceedings of the 36th IEEE International Conference on Software Engineering (ICSE), May 2014
Extended Abstract

Information Flow Control in WebKit’s JavaScript Bytecode
Abhishek Bichhawat, Vineet Rajani, Deepak Garg and Christian Hammer
Proceedings of the 3rd International Conference on Principles of Security and Trust (POST@ETAPS), April 2014


2011

Security Architecture for Virtual Machines
Udaya Tupakula, Vijay Varadharajan and Abhishek Bichhawat
Proceedings of the 11th International Conference on Algorithms and Architectures for Parallel Processing (ICA3PP), October 2011