Sampsa Rauti
MSc (Tech.), B.Soc.Sc.
sjprau@utu.fi Office: 452A ORCID identifier: https://orcid.org/0000-0002-1891-2353 |
software engineering; software security; privacy; proactive software security; software diversification; software resilience; intrusion detection; honeypots; web browser security; web application security; IoT security; location-based games
Sampsa Rauti is a Doctoral Student and a University Teacher currently working at the University of Turku, Finland. His research interests include software security, privacy and location-based games. He has about 70 international peer-reviewed publications, mostly in the field of software security. His work has been published in outlets such as Information & Software Technology, Computers in Human Behavior, and Journal of Cyber Security Technology. Rauti has over 12 years of teaching experience and has participated in teaching almost 50 course instances at the University of Turku.
My research focuses on the field of software engineering, more specifically proactive software security and privacy, software architectures and location-based games. My software security research has revolved around software diversification, increasing security with honeypots and other fake entities, intrusion detection, cyber attribution, web application security, IoT security, malicious browser extensions and man-in-the-browser attacks. Software privacy research has concentrated on studying how well applications on web and mobile devices respect GDPR and privacy policies and consequences of potential privacy violations. While my research often focuses on highly technical aspects of software security, I have also carried out many cross-disciplinary studies, for example applying theories of social sciences to software development and mobile games.
Currently, my teaching responsibilities include three courses: Distributed Systems and Cloud Services, Web and Mobile programming and Software Design and Architecture. I act as a responsible teacher and lecturer on these courses, and lead a small team of course assistants.
I have been involved (either as a course assistant or as a responsible teacher) in teaching almost 50 IT course instances at the University of Turku, including the following courses:
- Distributed Systems and Cloud Services (10 times)
- Software Design and Architecture (11 times)
- Web and mobile programming (5 times)
- User interfaces
- Basics of Object-Oriented Programming
- Basics of Algorithms and Programming
- Databases I
- Databases II
- XML Technologies and Applications
- Programming Languages and Paradigms
- Introduction to Game Development Tools
- Analyzing Third-Party Data Leaks on EU Healthcare Websites (2026)
- CEUR Workshop Proceedings
(A4 Refereed article in a conference publication ) - A Comparative Study of Finnish and Sri Lankan Privacy Regulations and Compliance on the Web (2025) ICISE '24: Proceedings of the 2024 9th International Conference on Information Systems Engineering Rajapaksha, Sammani; Puhtila, Panu; Heino, Timi; Rauti, Sampsa
(A4 Refereed article in a conference publication ) - Analysis of User-Privacy, Third-Party Data Sharing and Consent Mechanism on Online Pharmacy Websites in Ontario (2025) 2025 IEEE 8th International Conference on Pattern Recognition and Artificial Intelligence (PRAI) Ibodeng, Atikor; Bhutto, Zuhaibuddin; Yan, Yan; Rauti, Sampsa; Leppänen, Ville; Adelabu, Adegboola David
(A4 Refereed article in a conference publication ) - A Review of Privacy Risks of Third-Party Web Analytics (2025)
- Lecture Notes in Networks and Systems
(A4 Refereed article in a conference publication ) - Artificial Research Assistant: GPT-4 as a Categorizing Tool for Research Notes (2025)
- Lecture Notes in Networks and Systems
(A4 Refereed article in a conference publication ) - Assessing Privacy Practices on Ontario Municipal Websites (2025) 2025 22nd Annual International Conference on Privacy, Security, and Trust (PST) Adelabu, Adegboola David; Yan, Yan; Zhang, Wenjing; Rauti, Sampsa; Leppänen, Ville; Bhutto, Zuhaibuddin; Lin, Wenjun
(A4 Refereed article in a conference publication ) - Comparative Analysis of the Use of Dark Patterns in Cookie Consent Banners (2025) Horizons in Computer Science Research : Volume 26 Puhtila, Panu; Heino, Timi; Rauti, Rauti; Vuorinen, Esko; Carlsson, Robin
(A3 Refereed book chapter or chapter in a compilation book) - Device sharing features: a study on software policy approaches and platform capabilities (2025)
- International Review of Law, Computers and Technology
(A1 Refereed original research article in a scientific journal) - Examining Privacy Statements of Mobile Applications Popular Among University Students (2025)
- Lecture Notes in Networks and Systems
(A4 Refereed article in a conference publication ) - From Bytes to Booth: Exploring Privacy Concerns in Voting Advice Applications (2025) CSAE '24: Proceedings of the 8th International Conference on Computer Science and Application Engineering Rauti, Sampsa; Heino, Timi; Puhtila, Panu
(A4 Refereed article in a conference publication ) - Huomioita seurantateknologioiden käytöstä ja arkaluonteisten tietojen keräämisestä verkkosivustoilla (2025)
- Juridiikan ajankohtaiset
(D1 Professional blog post) - IDA-hanke paljasti vakavia tietovuotoja (2025)
- Suomen Akatemian Strategisen tutkimuksen blogi
(E1 Popularised blog post) - Investigating Third-Party Data Leaks and in Online Electronics Stores (2025)
- Lecture Notes in Networks and Systems
(A4 Refereed article in a conference publication ) - Sanctity at Stake: Analyzing Third-Party Data Leaks on Websites of Religious Communities (2025) Horizons in Computer Science Research : Volume 26 Lohi, Henna; Puhtila, Panu; Heino, Timi; Rajapaksha, Sammani; Rauti, Sampsa
(A3 Refereed book chapter or chapter in a compilation book) - Securing QR Codes for Data Transfer Between Applications (2025)
- Lecture Notes in Networks and Systems
(A4 Refereed article in a conference publication ) - Third-Party Data Leaks and Privacy Compliance on Finnish Government Websites (2025)
- Lecture Notes in Networks and Systems
(A4 Refereed article in a conference publication ) - Third-Party Data Leaks on the 500 Most Popular Websites (2025) ICISE '24: Proceedings of the 2024 9th International Conference on Information Systems Engineering Carlsson, Robin; Lohi, Henna; Rajapaksha, Sammani; Puhtila, Panu; Heino, Timi; Rauti, Sampsa
(A4 Refereed article in a conference publication ) - Third-Party Data Leaks on the Web: Notes on Personally Identifiable Information (2025)
- Lecture Notes in Networks and Systems
(A4 Refereed article in a conference publication ) - Third-party data leaks on websites of medical condition support associations (2025)
- Journal of Surveillance, Security and Safety
(A1 Refereed original research article in a scientific journal) - Third-Party Privacy Data Leak Analysis on Ontario Hospital Websites (2025) 2025 IEEE 8th International Conference on Pattern Recognition and Artificial Intelligence (PRAI) Kalyani, Tarun; Stewart, Justin; Yan, Yan; Rauti, Sampsa; Leppänen, Ville; Bhutto, Zuhaibuddin; Lin, Wenjun
(A4 Refereed article in a conference publication )



