To Internet Or Not To Internet: Ethics Opinions On Internet Usage,
2013
University of Georgia School of Law Library
To Internet Or Not To Internet: Ethics Opinions On Internet Usage, Sharon Bradley
Continuing Legal Education Presentations
Considers the ethical implications of using email to communicate with clients, using cloud storage for legal files, and tracking people related to a case via the Internet . Highlights recent state bar ethics committee decisions.
Finding A Virtual Trail: Investigative Research On The Web,
2013
University of Georgia School of Law Library
Finding A Virtual Trail: Investigative Research On The Web, Suzanne R. Graham
Continuing Legal Education Presentations
Provides tips and resources for finding information about people and businesses on the Internet. Focuses on finding vital data, asset information, and criminal history.
Rolling In The Deep, Dark Web: Advanced Internet Searching,
2013
University of Georgia School of Law Library
Rolling In The Deep, Dark Web: Advanced Internet Searching, Anne Burnett
Continuing Legal Education Presentations
Shares effective search strategies to improve search engine results and discusses efforts to capture and index more of the deep web for retrieval.
Stochastic Modeling And Time-To-Event Analysis Of Voip Traffic,
2013
DePaul University
Stochastic Modeling And Time-To-Event Analysis Of Voip Traffic, Imad Al Ajarmeh
College of Computing and Digital Media Dissertations
Voice over IP (VoIP) systems are gaining increased popularity due to the cost effectiveness, ease of management, and enhanced features and capabilities. Both enterprises and carriers are deploying VoIP systems to replace their TDM-based legacy voice networks. However, the lack of engineering models for VoIP systems has been realized by many researchers, especially for large-scale networks. The purpose of traffic engineering is to minimize call blocking probability and maximize resource utilization. The current traffic engineering models are inherited from the legacy PSTN world, and these models fall short from capturing the characteristics of new traffic patterns. The objective of this …
Evaluating The Effectiveness Of Ip Hopping Via An Address Routing Gateway,
2013
Air Force Institute of Technology
Evaluating The Effectiveness Of Ip Hopping Via An Address Routing Gateway, Ryan A . Morehart
Theses and Dissertations
This thesis explores the viability of using Internet Protocol (IP) address hopping in front of a network as a defensive measure. This research presents a custom gateway-based IP hopping solution called Address Routing Gateway (ARG) that acts as a transparent IP address hopping gateway. This thesis tests the overall stability of ARG, the accuracy of its classifications, the maximum throughput it can support, and the maximum rate at which it can change IPs and still communicate reliably. This research is accomplished on a physical test network with nodes representing the types of hosts found on a typical, corporate-style network. Direct …
Modeling Cyber Situational Awareness Through Data Fusion,
2013
Air Force Institute of Technology
Modeling Cyber Situational Awareness Through Data Fusion, Evan L. Raulerson
Theses and Dissertations
Cyber attacks are compromising networks faster than administrators can respond. Network defenders are unable to become oriented with these attacks, determine the potential impacts, and assess the damages in a timely manner. Since the observations of network sensors are normally disjointed, analysis of the data is overwhelming and time is not spent efficiently. Automation in defending cyber networks requires a level of reasoning for adequate response. Current automated systems are mostly limited to scripted responses. Better defense tools are required. This research develops a framework that aggregates data from heterogeneous network sensors. The collected data is correlated into a single …
Rf Emitter Tracking And Intent Assessment,
2013
Air Force Institute of Technology
Rf Emitter Tracking And Intent Assessment, Benjamin J. Kuhar
Theses and Dissertations
Current research in employing pattern recognition techniques in a wireless sensor network (WSN) to detect anomalous or suspicious behavior is limited. The purpose of this research was to determine the feasibility of an accurate tracking and intent assessment system of unknown or foreign radio frequency (RF) emitters in close proximity to and within military installations as a method for physical security. 22 position tracks were collected using a hand-held Global Positioning System (GPS) unit and a training data set from five different features was generated for each position track. Each collected position track was individually classified as suspicious or non-suspicious …
Rootkit Detection Using A Cross-View Clean Boot Method,
2013
Air Force Institute of Technology
Rootkit Detection Using A Cross-View Clean Boot Method, Bridget N. Flatley
Theses and Dissertations
In cyberspace, attackers commonly infect computer systems with malware to gain capabilities such as remote access, keylogging, and stealth. Many malware samples include rootkit functionality to hide attacker activities on the target system. After detection, users can remove the rootkit and associated malware from the system with commercial tools. This research describes, implements, and evaluates a clean boot method using two partitions to detect rootkits on a system. One partition is potentially infected with a rootkit while the other is clean. The method obtains directory listings of the potentially infected operating system from each partition and compares the lists to …
Using Rf-Dna Fingerprints To Discriminate Zigbee Devices In An Operational Environment,
2013
Air Force Institute of Technology
Using Rf-Dna Fingerprints To Discriminate Zigbee Devices In An Operational Environment, Clay K. Dubendorfer
Theses and Dissertations
This research was performed to expand AFIT's Radio Frequency Distinct Native Attribute (RF-DNA) fingerprinting process to support IEEE 802.15.4 ZigBee communication network applications. Current ZigBee bit-level security measures include use of network keys and MAC lists which can be subverted through interception and spoofing using open-source hacking tools. This work addresses device discrimination using Physical (PHY) waveform alternatives to augment existing bit-level security mechanisms. ZigBee network vulnerability to outsider threats was assessed using Receiver Operating Characteristic (ROC) curves to characterize both Authorized Device ID Verification performance (granting network access to authorized users presenting true bit-level credentials) and Rogue Device Rejection …
Cognitive Augmentation For Network Defense,
2013
Air Force Institute of Technology
Cognitive Augmentation For Network Defense, James E. Emge
Theses and Dissertations
Traditionally, when a task is considered for automation it is a binary decision, either the task was completely automated or it remains manual. LOA is a departure from the tradition use of automation in cyber defense. When a task is automated, it removes the human administrator from the performance of the task, compromising their SA of the state of the network. When the administrator loses SA of the network performance and its current state, failure recovery time becomes much longer. This is because the administrators must orient themselves to the current state of the network at the time of failure …
Learning Enterprise Malware Triage From Automatic Dynamic Analysis,
2013
Air Force Institute of Technology
Learning Enterprise Malware Triage From Automatic Dynamic Analysis, Jonathan S. Bristow
Theses and Dissertations
Adversaries employ malware against victims of cyber espionage with the intent of gaining unauthorized access to information. To that end, malware authors intentionally attempt to evade defensive countermeasures based on static methods. This thesis analyzes a dynamic analysis methodology for malware triage that applies at the enterprise scale. This study captures behavior reports from 64,987 samples of malware randomly selected from a large collection and 25,591 clean executable files from operating system install media. Function call information in sequences of behavior generate feature vectors from behavior reports from the les. The results of 64 experiment combinations indicate that using more …
Mobile Network Defense Interface For Cyber Defense And Situational Awareness,
2013
Air Force Institute of Technology
Mobile Network Defense Interface For Cyber Defense And Situational Awareness, James C. Hannan
Theses and Dissertations
Today's computer networks are under constant attack. In order to deal with this constant threat, network administrators rely on intrusion detection and prevention services (IDS) (IPS). Most IDS and IPS implement static rule sets to automatically alert administrators and resolve intrusions. Network administrators face a difficult challenge, identifying attacks against a vast number of benign network transactions. Also after a threat is identified making even the smallest policy change to the security software potentially has far-reaching and unanticipated consequences. Finally, because the administrator is primarily responding to alerts they may lose situational awareness of the network. During this research a …
Emulation Of Industrial Control Field Device Protocols,
2013
Air Force Institute of Technology
Emulation Of Industrial Control Field Device Protocols, Robert M. Jaromin
Theses and Dissertations
It has been shown that thousands of industrial control devices are exposed to the Internet, however, the extent and nature of attacks on such devices remains unknown. The first step to understanding security problems that face modern supervisory control and data acquisition (SCADA) and industrial controls networks is to understand the various attacks launched on Internet-connected field devices. This thesis describes the design and implementation of an industrial control emulator on a Gumstix single-board computer as a solution. This emulator acts as a decoy field device, or honeypot, intended to be probed and attacked via an Internet connection. Evaluation techniques …
Development Of A Response Planner Using The Uct Algorithm For Cyber Defense,
2013
Air Force Institute of Technology
Development Of A Response Planner Using The Uct Algorithm For Cyber Defense, Michael P. Knight
Theses and Dissertations
A need for a quick response to cyber attacks is a prevalent problem for computer network operators today. There is a small window to respond to a cyber attack when it occurs to prevent significant damage to a computer network. Automated response planners offer one solution to resolve this issue. This work presents Network Defense Planner System (NDPS), a planner dependent on the effectiveness of the detection of the cyber attack. This research first explores making classification of network attacks faster for real-time detection, the basic function Intrusion Detection System (IDS) provides. After identifying the type of attack, learning the …
A Multi Agent System For Flow-Based Intrusion Detection,
2013
Air Force Institute of Technology
A Multi Agent System For Flow-Based Intrusion Detection, David A . Ryan
Theses and Dissertations
The detection and elimination of threats to cyber security is essential for system functionality, protection of valuable information, and preventing costly destruction of assets. This thesis presents a Mobile Multi-Agent Flow-Based IDS called MFIREv3 that provides network anomaly detection of intrusions and automated defense. This version of the MFIRE system includes the development and testing of a Multi-Objective Evolutionary Algorithm (MOEA) for feature selection that provides agents with the optimal set of features for classifying the state of the network. Feature selection provides separable data points for the selected attacks: Worm, Distributed Denial of Service, Man-in-the-Middle, Scan, and Trojan. This …
Airborne Network Data Availability Using Peer To Peer Database Replication On A Distributed Hash Table,
2013
Air Force Institute of Technology
Airborne Network Data Availability Using Peer To Peer Database Replication On A Distributed Hash Table, Trevor J. Vranicar
Theses and Dissertations
The concept of distributing one complex task to several smaller, simpler Unmanned Aerial Vehicles (UAVs) as opposed to one complex UAV is the way of the future for a vast number of surveillance and data collection tasks. One objective for this type of application is to be able to maintain an operational picture of the overall environment. Due to high bandwidth costs, centralizing all data may not be possible, necessitating a distributed storage system such as mobile Distributed Hash Table (DHT). A difficulty with this maintenance is that for an Airborne Network (AN), nodes are vehicles and travel at high …
Network Intrusion Dataset Assessment,
2013
Air Force Institute of Technology
Network Intrusion Dataset Assessment, David J. Weller-Fahy
Theses and Dissertations
Research into classification using Anomaly Detection (AD) within the field of Network Intrusion Detection (NID), or Network Intrusion Anomaly Detection (NIAD), is common, but operational use of the classifiers discovered by research is not. One reason for the lack of operational use is most published testing of AD methods uses artificial datasets: making it difficult to determine how well published results apply to other datasets and the networks they represent. This research develops a method to predict the accuracy of an AD-based classifier when applied to a new dataset, based on the difference between an already classified dataset and the …
Applying Mobile Application Development To Help Dementia And Alzheimer Patients,
2013
Pace University
Applying Mobile Application Development To Help Dementia And Alzheimer Patients, Jean F. Coppola Phd, Marc A. Kowtko, Christina Yamagata, Shannon Joyce
Wilson Center for Social Entrepreneurship
Caregiver anecdotes attest that music and photographs play an important role for family members diagnosed with Alzheimer’s disease (AD), even those with severe AD. Tablets and iPads, which are prevalent, can be utilized with dementia patients in portraying favorite music and family photographs via apps developed in close partnership with geriatric facilities. This study addresses cognitive functioning and quality of life for people diagnosed with dementia via technology. Research has shown that technology instruments such as iPods, help stimulate those with dementia. This study focuses on innovative devices such as iPads and tablets, which are mainstream and easy to use, …
Substantive Collaboration: Are We Ready To Lead?,
2013
University of Nebraska - Lincoln
Substantive Collaboration: Are We Ready To Lead?, Mark Askren
Information Technology Services: Publications
Although MOOCs have received the most attention in higher education this year, another issue is affecting colleges and universities and the IT community on a much broader scale: the perception that the higher education business model is “broken.” This isn’t an IT problem by definition, but IT leaders have not contributed effectively to a solution. At least not yet. So what can we, as IT leaders, do individually and collectively to change the outcome? The answer is clear. We have to collaborate. Substantially. And in ways that are far-reaching and very challenging. We have to change our core processes and …
Automatic Detection Of Abnormal Behavior In Computing Systems,
2013
University of Kentucky
Automatic Detection Of Abnormal Behavior In Computing Systems, James Frank Roberts
Theses and Dissertations--Computer Science
I present RAACD, a software suite that detects misbehaving computers in large computing systems and presents information about those machines to the system administrator. I build this system using preexisting anomaly detection techniques. I evaluate my methods using simple synthesized data, real data containing coerced abnormal behavior, and real data containing naturally occurring abnormal behavior. I find that the system adequately detects abnormal behavior and significantly reduces the amount of uninteresting computer health data presented to a system administrator.
