My name is Grigoris Ntousakis, born and raised in Chania, Crete. I hold a Master of Science in Computer Science from Brown University,
where I conducted research under the guidance of Professor Nikos Vasilakis and Professor Vasileios Kemerlis.
My research interests include computer security—with a particular focus on AI agent security—programming languages, dynamic program analysis, and techniques for improving software development workflows.
Interests. Dynamic Analysis, Security, Programming Languages
Interests. Dynamic Analysis, Security, Programming Languages
Education
- Brown University MSc in Computer Science (May 2026) Providence, USA Thesis: Securing MCP-based Agent Workflows
- Technical University of Crete (TUC) MSc in Computer Science and Engineering (Sept. 2024) Chania, Greece Thesis: Applying Dynamic Coarse-Grained Library Interposition to Security
- Technical University of Crete (TUC) BSc in Electrical and Computer Engineering (Sept. 2020) Chania, Greece Thesis: Coarse-Grained Dynamic Analysis of Software Libraries
Experience
-
IBM Research
Security Research Intern (May 2025 - Aug. 2025)
Yorktown Heights, NY
- Conducted security research on LLM agents, focusing on threat modeling and data leakage prevention.
- Designed and built systems that analyze agent behavior to infer and enforce runtime security policies, mitigating data leakage and other agent-specific risks.
-
Telecommunication Systems Research Institute (TSI)
Research Scientist (Mar. 2021 - Sept. 2024)
Chania, Greece
- Led development of PRINCIPALS, a novel architecture for safe programmability and adaptability in 5G networks, strengthening security through primitives such as DGA analysis and TLS fingerprinting.
- Automated Kubernetes cluster deployment with Ansible and Vagrant for rapid R&D provisioning across multiple VMs, significantly reducing setup time for large-scale testing.
- Containerized cybersecurity primitives with Docker, streamlining their deployment and management across 5G infrastructure.
-
Brown University
Visiting Research Fellow (Mar. 2023 - Nov. 2023)
Providence, USA
- Designed and implemented a novel system combining dynamic and static analysis for enforcing more expressive and fine-grained security policies.
- Developed a language-level system-call filtering mechanism to strengthen syscall safety guarantees for untrusted code.
- Co-led development of BinWrap, a hybrid protection framework against native Node.js add-ons.
-
Aegis Technologies Ltd.
Cyber Security Engineer (Jan. 2022 - Jan. 2023)
Remote, Singapore
- Implemented a high-performance deep packet inspection (DPI) engine, improving threat detection accuracy for the network monitoring and threat intelligence product.
- Collaborated with a 15-person engineering team to optimize packet processing and build protocol-specific parsing modules.
Projects
- BinWrap paper code blog Hybrid sandbox that isolates native Node.js add-ons from the host process, containing memory-unsafe C/C++ code without requiring changes to existing application APIs. Node.js, Native Add-ons (N-API), Sandboxing ★ Distinguished Paper Award, ASIA CCS 2023 ★
- MIR paper code arxiv Runtime privilege-reduction system that strips write access from executable memory pages to block dynamic library compromise in Node.js applications. Node.js, Dynamic Linking, Memory Protection (RWX)
- Lya paper code Module-level dynamic analysis framework for dynamic languages that instruments third-party dependencies via module recontextualization, with no changes to application code. JavaScript, Dynamic Program Analysis, Module Systems ★ Distinguished Paper Award, ESEC/FSE 2021 ★
- HoneyChart paper code Automated deployment and lifecycle management for honeypots on Kubernetes, letting small security teams run threat-intelligence infrastructure with minimal operational overhead. Kubernetes, Honeypots
- PRINCIPALS Architecture for safe programmability and adaptability in 5G networks, strengthening security through primitives such as DGA analysis and TLS fingerprinting, containerized and deployed across multi-VM research clusters. Go, Python, Docker, Kubernetes, Ansible, Vagrant
Publications
- Controlling Opaque-Component Effects with Semisolates and Try pdf code Evangelos Lamprou, Tianyu (Ezri) Zhu, Di Jin, Grigoris Ntousakis, Georgios Liargkovas, Calvin Eng, Konstantinos Kallas, Michael Greenberg, and Nikos Vasilakis 20th USENIX Symposium on Operating Systems Design and Implementation (OSDI ‘26), Seattle, WA, USA ★ Received Best Paper Award ★
- Securing MCP-based Agent Workflows pdf Grigoris Ntousakis, Julian James Stephen, Michael V. Le, Sai Sree Laya Chukkapalli, Teryl Taylor, Ian M Molloy, and Frederico Araujo Practical Adoption Challenges of ML for Systems (PACMI ’25), Seoul, Korea
- Automated Annotation Inference for MCP-based Agents pdf Grigoris Ntousakis, Julian James Stephen, Michael V. Le, Sai Sree Laya Chukkapalli, Teryl Taylor, and Frederico Araujo 1st Workshop on Systems for Agentic AI (SAA ’25), Seoul, Korea
- Lexo: Eliminating Stealthy Supply-Chain Attacks via LLM-Assisted Program Regeneration pdf arxiv Evangelos Lamprou, Julian Dai, Grigoris Ntousakis, Martin C. Rinard, and Nikos Vasilakis arXiv
- BinWrap: Hybrid Protection Against Native Node.js Add-ons pdf code blog George Christou, Grigoris Ntousakis, Eric Lahtinen, Sotiris Ioannidis, Vasileios P. Kemerlis, and Nikos Vasilakis 18th ACM Asia Conference on Computer and Communications Security (ASIA CCS 2023), Melbourne, Australia ★ Received Distinguished Paper Award ★
- HoneyChart: Automated Honeypot Management Over Kubernetes pdf code George Kokolakis, Grigoris Ntousakis, Irodotos Karatsoris, Spiros Antonatos, Manos Athanatos, and Sotiris Ioannidis 3rd International Workshop on Cyber-Physical Security for Critical Infrastructures Protection (CPS4CIP 2022), Copenhagen, Denmark
- A Systematic Analysis of the Event-Stream Incident pdf code Iosif Arvanitis, Grigoris Ntousakis, Sotiris Ioannidis, and Nikos Vasilakis ACM 15th European Workshop on Systems Security (EuroSec 2022), Rennes, France
- Preventing Dynamic Library Compromise on Node.js via RWX-Based Privilege Reduction pdf code arxiv Nikos Vasilakis, Cristian-Alexandru Staicu, Grigoris Ntousakis, Konstantinos Kallas, Ben Karel, André DeHon, and Michael Pradel ACM Conference on Computer and Communications Security (CCS 2021), Virtual Event, Republic of Korea
- Efficient Module-Level Dynamic Analysis for Dynamic Languages with Module Recontextualization pdf code Nikos Vasilakis, Grigoris Ntousakis, Veit Heller, and Martin Rinard 29th ACM Joint European Software Engineering Conference & Symposium on the Foundations of Software Engineering (ESEC/FSE 2021), Virtual Event, Greece ★ Received Distinguished Paper Award ★
Talks / Demos
- Detecting Third-Party Library Problems with Combined Program Analysis pdf Grigoris Ntousakis, Sotiris Ioannidis, and Nikos Vasilakis ACM Conference on Computer and Communications Security (CCS 2021), Virtual Event, Republic of Korea
- Library-Oriented Dynamic Analysis with Lya Nikos Vasilakis, and Grigoris Ntousakis ACM 25th International Conference on Functional Programming (ICFP 2020), Virtual Event, USA
Awards
- Best Paper Award July 2026 - OSDI 2026
- RSA Conference Security Scholar March 2026 - RSA Conference
- Noteworthy Artifact Reviewer August 2025 - USENIX Security 2025
- Artifact Ninja August 2025 - USENIX Security 2025
- Gerondelis Foundation Scholarship June 2025 - Gerondelis Foundation
- Distinguished Paper Award July 2023 - ASIA CCS 2023
- UniWA CTF - 1st Place July 2022 - University of West Attica
- Distinguished Paper Award August 2021 - ESEC/FSE 2021
- Pancretan Scholarship of Excellence December 2020 - Pancretan Endowment Fund
Service
- Network and Distributed System Security (NDSS '26) Artifact Evaluation Committee (Feb 2026) San Diego, USA
- ACM Transactions on Software Engineering and Methodology (TOSEM) Invited Reviewer (Jan 2026) Remote
- 34th USENIX Security Symposium (USENIX Security '25) Artifact Evaluation Committee (August 2025) Seattle, USA
- 2025 USENIX Annual Technical Conference (ATC '25) Artifact Evaluation Committee (July 2025) Boston, USA
- 18th European Workshop on Systems Security (EuroSec '25) Publication Chair (March 2025) Rotterdam, Netherlands
- 17th European Workshop on Systems Security (EuroSec '24) Publicity Chair (April 2024) Athens, Greece