Publications
Preprints
  • Cas Cremers, Erik Pallas, and Aleksi Peltonen. Secure Protocol Composition under Dynamic Corruption: Scaling Up Symbolic Analysis of Real-World Security Protocols. 2026. To appear in USENIX Security 2026. ePrint:2026/900

  • Cas Cremers, Abhinav Nakarmi, Aleksi Peltonen, and Eyal Ronen. 3PaaS: Privacy-Preserving Post-Compromise Security as a Service. 2026. To appear in ACM CCS 2026. ePrint:2026/1353

  • Cas Cremers, Aleksi Peltonen, and Mang Zhao. An Extended Hierarchy of Security Notions for Threshold Signature Schemes and Automated Analysis of Protocols That Use Them. 2024. To appear in ACM CCS 2026. ePrint:2024/1920.


Conference and Journal Papers
  • Jacopo Bufalino, Jose Luis Martin-Navarro, Aleksi Peltonen, and Tuomas Aura. Helm-ET: Reducing Exposure to Lateral Movement in Kubernetes Artifacts. In Proceedings of the 18th IEEE International Conference on Cloud Computing (CLOUD). 2025 doi:10.1109/CLOUD67622.2025.00021

  • Abu Shohel Ahmed, Aleksi Peltonen, Mohit Sethi, and Tuomas Aura. Security Analysis of the Consumer Remote SIM Provisioning Protocol. ACM Transactions on Privacy and Security, 27(3). 2024 doi:10.1145/3663761

  • Charles Koutcheme, Artturi Tilanterä, Aleksi Peltonen, Arto Hellas, and Lassi Haaranen. Exploring How Students Solve Open-ended Assignments: A Study of SQL Injection Attempts in a Cybersecurity Course. In Proceedings of the 27th ACM Conference on Innovation and Technology in Computer Science Education Vol. 1, ITiCSE ‘22. 2022 doi:3502718.3524748

  • Aleksi Peltonen, Ralf Sasse, and David Basin. A Comprehensive Formal Analysis of 5G Handover. In Proceedings of the 14th ACM Conference on Security and Privacy in Wireless and Mobile Networks (WiSec ‘21). 2021 doi:10.1145/3448300.3467823

  • Aleksi Peltonen, Eduardo Inglés, Sampsa Latvala, Dan Garcia-Carrillo, Mohit Sethi, and Tuomas Aura. Enterprise Security for the Internet of Things (IoT): Lightweight Bootstrapping with EAP-NOOB. Sensors, 20(21). 2020 doi:10.3390/s20216101

  • Aleksi Peltonen, Mohit Sethi, and Tuomas Aura. Formal verification of misbinding attacks on secure device pairing and bootstrapping. Journal of Information Security and Applications (JISA), 51. 2020 doi:10.1016/j.jisa.2020.102461

  • Mohit Sethi, Aleksi Peltonen, and Tuomas Aura. Misbinding Attacks on Secure Device Pairing and Bootstrapping. In Proceedings of the 2019 ACM Asia Conference on Computer and Communications Security (AsiaCCS ‘19). 2019 doi:10.1145/3321705.3329813


Standards
  • Tuomas Aura, Mohit Sethi, and Aleksi Peltonen. Nimble Out-of-Band Authentication for EAP (EAP-NOOB). RFC 9140 doi:10.17487/RFC9140