Open Access. Powered by Scholars. Published by Universities.®
- Institution
-
- China Simulation Federation (3880)
- TÜBİTAK (3106)
- Wright State University (1814)
- University of Nebraska - Lincoln (1069)
- University of Texas at El Paso (859)
-
- Washington University in St. Louis (733)
- Technological University Dublin (732)
- California Polytechnic State University, San Luis Obispo (722)
- Brigham Young University (641)
- Old Dominion University (584)
- Embry-Riddle Aeronautical University (563)
- Singapore Management University (546)
- Universitas Indonesia (444)
- San Jose State University (439)
- Santa Clara University (422)
- Air Force Institute of Technology (414)
- Marquette University (411)
- University of South Carolina (323)
- California State University, San Bernardino (288)
- University of Central Florida (274)
- Portland State University (267)
- Chulalongkorn University (243)
- Al Iraqia University (235)
- University of South Florida (220)
- Purdue University (218)
- University of Arkansas, Fayetteville (209)
- University of Nevada, Las Vegas (191)
- New Jersey Institute of Technology (186)
- Nova Southeastern University (183)
- University of Dayton (166)
- Keyword
-
- Machine learning (442)
- Computer Science (385)
- Deep learning (348)
- Department of Computer Science and Engineering (319)
- Machine Learning (288)
-
- Engineering (274)
- Simulation (237)
- Robotics (233)
- Security (184)
- Artificial intelligence (176)
- Deep Learning (172)
- Optimization (171)
- Computer Engineering (168)
- Classification (164)
- College of Engineering and Computer Science (157)
- Newsletters (157)
- Science news (157)
- Technical writing (157)
- Cybersecurity (154)
- Artificial Intelligence (149)
- Computer vision (141)
- Computer Science and Engineering (137)
- Genetic algorithm (119)
- Blockchain (99)
- Internet (98)
- Virtual reality (97)
- Path planning (94)
- Data mining (93)
- Clustering (91)
- Privacy (91)
- Publication Year
- Publication
-
- Journal of System Simulation (3880)
- Turkish Journal of Electrical Engineering and Computer Sciences (3106)
- Computer Science & Engineering Syllabi (1312)
- Departmental Technical Reports (CS) (760)
- Theses and Dissertations (730)
-
- All Computer Science and Engineering Research (683)
- International Congress on Environmental Modelling and Software (629)
- Research Collection School Of Computing and Information Systems (511)
- Department of Electrical and Computer Engineering: Faculty Publications (496)
- Makara Journal of Technology (436)
- Electrical and Computer Engineering Faculty Research and Publications (388)
- Browse all Theses and Dissertations (342)
- Dissertations (341)
- Electronic Theses and Dissertations (327)
- Faculty Publications (321)
- Journal of Digital Forensics, Security and Law (299)
- Computer Science and Engineering Senior Theses (298)
- Master's Theses (289)
- Computer Engineering (282)
- Chulalongkorn University Theses and Dissertations (Chula ETD) (242)
- Iraqi Journal for Computer Science and Mathematics (235)
- Master's Projects (220)
- School of Computing: Dissertations, Theses, and Student Research (206)
- Electrical and Computer Engineering Faculty Publications (204)
- Electrical & Computer Engineering Theses & Dissertations (195)
- Conference papers (179)
- Publications (172)
- USF Tampa Graduate Theses and Dissertations (159)
- BITs and PCs Newsletter (157)
- Journal of International Technology and Information Management (153)
- Publication Type
- File Type
Articles 5761 - 5790 of 25671
Full-Text Articles in Engineering
Formal Models For Consent Management In Healthcare Software System Development, Neda Peyrone
Formal Models For Consent Management In Healthcare Software System Development, Neda Peyrone
Chulalongkorn University Theses and Dissertations (Chula ETD)
In the era of data-driven opportunities, many businesses are missing the data-privacy challenge, which leads to risks in safeguarding their customers’ data. To empower individuals (data subjects) to control their data, the General Data Protection Regulation (GDPR) mandated businesses or organizations (data controllers) to protect individuals’ data (personal data) within data protection law. Nevertheless, many businesses still struggle to enhance and develop their software systems to comply with the GDPR because it is difficult to interpret and apply to software development practices. Besides, the processing of personal data begins when the data subject provides explicit consent to the data controller, …
Real-Time Gastric Intestinal Metaplasia Semantic Segmentation With Multiple Abnormalities Using Deep Learning Approach, Passin Pornvoraphat
Real-Time Gastric Intestinal Metaplasia Semantic Segmentation With Multiple Abnormalities Using Deep Learning Approach, Passin Pornvoraphat
Chulalongkorn University Theses and Dissertations (Chula ETD)
This thesis declares the segmentation of gastric intestinal metaplasia (GIM) in real-time. Recently, GIM segmentation of endoscopic images has been conducted to distinguish GIM from a healthy stomach. However, achieving real-time detection is difficult. Challenging conditions include multiple color modes (white light endoscopy and narrow-band imaging), other abnormal lesions (erosion and ulcer), noisy labels, etc. Herein, our model is based on BiSeNet and can overcome the many issues regarding GIM. Applying auxiliary head and loss boosts the performance on multiple color modes. In addition, pre-processing techniques, including location-wise negative sampling, jigsaw augmentation, and label smoothing, are utilized to improve detection …
แบบจำลองคุณภาพซอฟต์แวร์โอเพนซอร์ซเพื่อการวัดคุณภาพอย่างอัตโนมัติ, อัรกอม มะแดเฮาะ
แบบจำลองคุณภาพซอฟต์แวร์โอเพนซอร์ซเพื่อการวัดคุณภาพอย่างอัตโนมัติ, อัรกอม มะแดเฮาะ
Chulalongkorn University Theses and Dissertations (Chula ETD)
ปัจจุบันได้มีการนำเสนอแบบจำลองคุณภาพซอฟต์แวร์โอเพนซอร์ซหลายแบบจำลองเพื่อใช้ในการประเมินคุณภาพของซอฟต์แวร์โอเพนซอร์ซ แต่แบบจำลองเหล่านั้นมีข้อจำกัดเนื่องจากเป็นการประเมินตามความคิดส่วนตัวซึ่งต้องอาศัยผู้ใช้ในการประเมิน และแบบจำลองดังกล่าวต้องการข้อมูลจากหลากหลายแหล่ง เพื่อเสริมการประเมินคุณภาพซอฟต์แวร์โอเพนซอร์ซที่เป็นอยู่ให้ทำได้สมบูรณ์มากยิ่งขึ้น วิทยานิพนธ์นี้จึงได้นำเสนอแบบจำลองคุณภาพซอฟต์แวร์โอเพนซอร์ซใหม่ที่ชื่อว่าโอเอสเอส-เอคิวเอ็ม โดยมีเป้าหมายเพื่อการวัดคุณภาพซอฟต์แวร์โอเพนซอร์ซอย่างอัตโนมัติ แบบจำลองโอเอสเอส-เอคิวเอ็มได้นำเสนอตัววัดคุณภาพและเครื่องมืออัตโนมัติที่สามารถดึงข้อมูลเกี่ยวกับซอฟต์แวร์โอเพนซอร์ซจากกิตฮับ ซอร์ซโค้ด โซนาร์คิวบ์ และสแต็กเอกซ์เชนจ์ ทำให้สามารถกำหนดคะแนนคุณภาพของซอฟต์แวร์โอเพนซอร์ซได้ โอเอสเอส-เอคิวเอ็มได้รับการตรวจสอบจากวิศวกรซอฟต์แวร์ที่มีประสบการณ์ในการเลือกใช้ซอฟต์แวร์โอเพนซอร์ซ นอกจากนี้การจัดลำดับซอฟต์แวร์โอเพนซอร์ซโดยเครื่องมือโอเอสเอส-เอคิวเอ็มยังถูกนำไปเปรียบเทียบกับการจัดลำดับด้วยวิธีอื่น และพบว่าการจัดลำดับของโอเอสเอส-เอคิวเอ็มมีสหสัมพันธ์ระดับต่ำมากถึงปานกลางในทิศทางตรงกันข้ามกับวิธีจัดลำดับอื่น ๆ ตามความคิดเห็นและความนิยมของผู้ใช้ และมีสหสัมพันธ์ระดับปานกลางในทิศทางเดียวกันกับวิธีการจัดลำดับอื่นที่เน้นการตรวจสอบความมั่นคงที่ซอฟต์แวร์โดยตรง ทั้งนี้เนื่องจากโอเอสเอส-เอคิวเอ็มครอบคลุมปัจจัยคุณภาพหลายอย่างที่ไม่ได้ถูกพิจารณาโดยวิธีการจัดลำดับอื่น ๆ ดังกล่าว โอเอสเอส-เอคิวเอ็มจึงให้ข้อมูลด้านคุณภาพของซอฟต์แวร์โอเพนซอร์ซในเชิงลึกที่ดีกว่า
Spectrum Sensing With Energy Detection In Multiple Alternating Time Slots, Călin Vlădeanu, Alexandru Marţian, Dimitrie C. Popescu
Spectrum Sensing With Energy Detection In Multiple Alternating Time Slots, Călin Vlădeanu, Alexandru Marţian, Dimitrie C. Popescu
Electrical & Computer Engineering Faculty Publications
Energy detection (ED) represents a low complexity approach used by secondary users (SU) to sense spectrum occupancy by primary users (PU) in cognitive radio (CR) systems. In this paper, we present a new algorithm that senses the spectrum occupancy by performing ED in K consecutive sensing time slots starting from the current slot and continuing by alternating before and after the current slot. We consider a PU traffic model specified in terms of an average duty cycle value, and derive analytical expressions for the false alarm probability (FAP) and correct detection probability (CDP) for any value of K . Our …
Effect Of Connection State & Transport/Application Protocol On The Machine Learning Outlier Detection Of Network Intrusions, George Yuchi, Torrey J. Wagner, Paul Auclair, Brent T. Langhals
Effect Of Connection State & Transport/Application Protocol On The Machine Learning Outlier Detection Of Network Intrusions, George Yuchi, Torrey J. Wagner, Paul Auclair, Brent T. Langhals
Faculty Publications
The majority of cyber infiltration & exfiltration intrusions leave a network footprint, and due to the multi-faceted nature of detecting network intrusions, it is often difficult to detect. In this work a Zeek-processed PCAP dataset containing the metadata of 36,667 network packets was modeled with several machine learning algorithms to classify normal vs. anomalous network activity. Principal component analysis with a 10% contamination factor was used to identify anomalous behavior. Models were created using recursive feature elimination on logistic regression and XGBClassifier algorithms, and also using Bayesian and bandit optimization of neural network hyperparameters. These models were trained on a …
A Novel Computational Network Methodology For Discovery Of Biomarkers And Therapeutic Targets, Qing Ye
A Novel Computational Network Methodology For Discovery Of Biomarkers And Therapeutic Targets, Qing Ye
Graduate Theses, Dissertations, and Problem Reports (ETD)
Lung cancer has the second highest cancer incidence rate and the top cancer-related mortality worldwide. An estimate from the American Cancer Society shows that, in 2022, there will be about 236,740 lung cancer cases (117,910 men and 118,830 women) in the US. To date, there are no prognostic/predictive biomarkers to select chemotherapy, immunotherapy, and radiotherapy in individual non-small cell lung cancer (NSCLC) patients. There is an unmet clinical need to identify patients with early-stage NSCLC who are likely to develop recurrence and to predict their therapeutic responses. This dissertation developed a novel computational methodology for modeling molecular gene association networks …
Performance Of Sensor Fusion For Vehicular Applications, Nikola Janevski
Performance Of Sensor Fusion For Vehicular Applications, Nikola Janevski
Graduate Theses, Dissertations, and Problem Reports (ETD)
Sensor fusion is a key system in Advanced Driver Assistance Systems, ADAS. The perfor-
mance of the sensor fusion depends on many factors such as the sensors used, the kinematic
model used in the Extended Kalman Filter, EKF, the motion of the vehicles, the type of
road, the density of vehicles, and the gating methods. The interactions between parameters
and the extent to which individual parameters contribute to the overall accuracy of a sensor
fusion system can be difficult to assess.
In this study, a full-factorial experimental evaluation of a sensor fusion system based
on a real vehicle was performed. …
Generation Of High Performing Morph Datasets, Kelsey Lynn O'Haire
Generation Of High Performing Morph Datasets, Kelsey Lynn O'Haire
Graduate Theses, Dissertations, and Problem Reports (ETD)
Facial recognition systems play a vital role in our everyday lives. We rely on this technology from menial tasks to issues as vital as national security. While strides have been made over the past ten years to improve facial recognition systems, morphed face images are a viable threat to the reliability of these systems. Morphed images are generated by combining the face images of two subjects. The resulting morphed face shares the likeness of the contributing subjects, confusing both humans and face verification algorithms. This vulnerability has grave consequences for facial recognition systems used on international borders or for law …
An Efficient Ar Model-Based Method For The Detection Of Forced Oscillations In Power Networks: Implementation And Analysis, Maria Waleska Suarez
An Efficient Ar Model-Based Method For The Detection Of Forced Oscillations In Power Networks: Implementation And Analysis, Maria Waleska Suarez
Graduate Theses, Dissertations, and Problem Reports (ETD)
An active research topic is the detection of various oscillations that may lead to instability and potential disruption in the operation of a power network. Forced Oscillations (FOs) play a unique role in power system stability among various oscillations. They are perturbances that change the system’s state and are caused for many reasons, including but not limited to persistent load changes and oscillatory load or generation, fault, triplane, and other mechanical anomalies. These factors can hugely affect the power grid by either increasing or decreasing the amplitude, causing corrupt modes leading to blackouts, affecting the equipment involved, delivering poor power …
A Proportionality-Based Framework For Government Regulation Of Digital Tracing Apps In Times Of Emergency, Sharon Bassan
A Proportionality-Based Framework For Government Regulation Of Digital Tracing Apps In Times Of Emergency, Sharon Bassan
Dickinson Law Review (2017-Present)
Times of emergency present an inherent conflict between the public interest and the preservation of individual rights. Such times require granting emergency powers to the government on behalf of the public interest and relaxing safeguards against government actions that infringe rights. The lack of theoretical framework to assess governmental decisions in times of emergency leads to a polarized and politicized discourse about potential policies, and often, to public distrust and lack of compliance.
Such a discourse was evident regarding Digital Tracing Apps (“DTAs”), which are apps installed on cellular phones to alert users that they were exposed to people who …
Meltpondnet: A Swin Transformer U-Net For Detection Of Melt Ponds On Arctic Sea Ice, Ivan Sudakow, Vijayan K. Asari, Ruixu Liu, Denis Demchev
Meltpondnet: A Swin Transformer U-Net For Detection Of Melt Ponds On Arctic Sea Ice, Ivan Sudakow, Vijayan K. Asari, Ruixu Liu, Denis Demchev
Electrical and Computer Engineering Faculty Publications
High-resolution aerial photographs of Arctic region are a great source for different sea ice feature recognition, which are crucial to validate, tune, and improve climate models. Melt ponds on the surface of melting Arctic sea ice are of particular interest as they are sensitive and valuable indicators and are proxy to the processes in the Arctic climate system. Manual analysis of this remote sensing data is extremely difficult and time-consuming due to the complex shapes and unpredictable boundaries of the melt ponds, and that leads to the necessity for automatizing the processes. In this study, we propose a robust and …
Circuit Optimization Techniques For Efficient Ex-Situ Training Of Robust Memristor Based Liquid State Machine, Alex Henderson, Christopher Yakopcic, Cory Merkel, Steven Harbour, Tarek M. Taha, Hananel Hazan
Circuit Optimization Techniques For Efficient Ex-Situ Training Of Robust Memristor Based Liquid State Machine, Alex Henderson, Christopher Yakopcic, Cory Merkel, Steven Harbour, Tarek M. Taha, Hananel Hazan
Electrical and Computer Engineering Faculty Publications
Spiking neural network hardware offers a high performance, power-efficient and robust platform for the processing of complex data. Many of these systems require supervised learning, which poses a challenge when using gradient-based algorithms due to the discontinuous properties of SNNs. Memristor based hardware can offer gains in portability, power reduction, and throughput efficiency when compared to pure CMOS. This paper proposes a memristor-based spiking liquid state machine (LSM). The inherent dynamics of the LSM permit the use of supervised learning without backpropagation for weight updates. To carry out the design space evaluation of the LSM for optimal hardware performance, several …
Development Of An Explainability Scale To Evaluate Explainable Artificial Intelligence (Xai) Methods, Stephen Mccarthy
Development Of An Explainability Scale To Evaluate Explainable Artificial Intelligence (Xai) Methods, Stephen Mccarthy
Dissertations
Explainable Artificial Intelligence (XAI) is an area of research that develops methods and techniques to make the results of artificial intelligence understood by humans. In recent years, there has been an increased demand for XAI methods to be developed due to model architectures getting more complicated and government regulations requiring transparency in machine learning models. With this increased demand has come an increased need for instruments to evaluate XAI methods. However, there are few, if none, valid and reliable instruments that take into account human opinion and cover all aspects of explainability. Therefore, this study developed an objective, human-centred questionnaire …
Incentive Analysis Of Blockchain Technology, Rahul Reddy Annareddy
Incentive Analysis Of Blockchain Technology, Rahul Reddy Annareddy
Graduate Theses, Dissertations, and Problem Reports (ETD)
Blockchain technology was invented in the Bitcoin whitepaper released in 2008. Since then, several decentralized cryptocurrencies and applications have become mainstream. There has been an immense amount of engineering effort put into developing blockchain networks. Relatively few projects backed by blockchain technology have succeeded and maintained a large community of developers, users, and customers, while many popular projects with billions of dollars in funding and market capitalizations have turned out to be complete scams.
This thesis discusses the technological innovations introduced in the Bitcoin whitepaper and the following work of the last fifteen years that has enabled blockchain technology. A …
Multimodal Adversarial Learning, Uche Osahor
Multimodal Adversarial Learning, Uche Osahor
Graduate Theses, Dissertations, and Problem Reports (ETD)
Deep Convolutional Neural Networks (DCNN) have proven to be an exceptional tool for object recognition, generative modelling, and multi-modal learning in various computer vision applications. However, recent findings have shown that such state-of-the-art models can be easily deceived by inserting slight imperceptible perturbations to key pixels in the input. A good target detection systems can accurately identify targets by localizing their coordinates on the input image of interest. This is ideally achieved by labeling each pixel in an image as a background or a potential target pixel. However, prior research still confirms that such state of the art targets models …
Eager Scheduling Of Dependent Instructions, Kurush Kasad
Eager Scheduling Of Dependent Instructions, Kurush Kasad
Dissertations, Master's Theses and Master's Reports
Modern superscalar processors are able to potentially issue and execute multiple instructions per cycle. Several techniques over the years have focused on increasing the Instruction Level Parallelism (ILP) that a processor can exploit. However, there are many limitations of ILP that hinder performance, chief of them being the chain of dependencies between instructions that stops instructions from being executed in parallel.
We propose a new micro-architecture design which extends the superscalar pipeline with a data-flow pipeline where the dataflow part identifies immediately dependent instructions and executes them early. The dataflow pipeline is able to identify redundant instructions, track changes in …
An Experimental Study Towards Underwater Propulsion System Using Structure Borne Traveling Waves, Shreyas Suhas Gadekar
An Experimental Study Towards Underwater Propulsion System Using Structure Borne Traveling Waves, Shreyas Suhas Gadekar
Dissertations, Master's Theses and Master's Reports
The method of generating steady-state structure-borne traveling waves underwater in an infinite media creates abundant opportunities in the field of propulsive applications, and they are gaining attention from several researchers. This experimental study provides a framework for harnessing traveling waves in a 1D beam immersed under quiescent water using two force input methods and providing a motion to an object floating on the surface of the water.
In this study, underwater traveling waves are tailored using structural vibrations at five different frequencies in the range of 10Hz to 300Hz. The resulting fluid motion provides a propulsive thrust that moves a …
Schaeffler F-250 Bev Conversion: Power Electronics, Leslie Sawyer
Schaeffler F-250 Bev Conversion: Power Electronics, Leslie Sawyer
Williams Honors College, Honors Research Projects
This report shows the work that was done on the power electronics system in the industry sponsored Schaeffler demonstration truck project. The goal of the project was to convert a combustion Ford F250 into a battery electric vehicle, while using as much Schaeffler technology as possible. After the vehicle is converted it will be used as a demonstration vehicle to show potential investors. While this project is still in progress, the work that was done during this time was substantial to the development of this project. Progress that has been made on the power electronics system includes developments in selecting …
Novel Natural Language Processing Models For Medical Terms And Symptoms Detection In Twitter, Farahnaz Golrooy Motlagh
Novel Natural Language Processing Models For Medical Terms And Symptoms Detection In Twitter, Farahnaz Golrooy Motlagh
Browse all Theses and Dissertations
This dissertation focuses on disambiguation of language use on Twitter about drug use, consumption types of drugs, drug legalization, ontology-enhanced approaches, and prediction analysis of data-driven by developing novel NLP models. Three technical aims comprise this work: (a) leveraging pattern recognition techniques to improve the quality and quantity of crawled Twitter posts related to drug abuse; (b) using an expert-curated, domain-specific DsOn ontology model that improve knowledge extraction in the form of drug-to-symptom and drug-to-side effect relations; and (c) modeling the prediction of public perception of the drug’s legalization and the sentiment analysis of drug consumption on Twitter. We collected …
Garden Bot: Autonomous Home Garden Weed Removal Robot, Brendon Lovejoy, Robert Connolly, Isaac Lucas, Stevan Veselinov
Garden Bot: Autonomous Home Garden Weed Removal Robot, Brendon Lovejoy, Robert Connolly, Isaac Lucas, Stevan Veselinov
Williams Honors College, Honors Research Projects
With frequent weeding being a tedious chore and an essential task for a successful garden, there is need for an automated method of handling this routine. Existing technologies utilize computer vision, GPS, multiple units and other tools to remove weeds from garden plots. However, these solutions are often complex and expensive, suited for large agricultural plots in contrast to small-scale home gardens. In addition, many of these technologies, along with manual tillers and cultivators suited for home use, are unable to perform weeding within rows of crops in a process known as intra-row weeding. The Garden Bot is an autonomous, …
A Solder-Defined Computer Architecture For Backdoor And Malware Resistance, Marc W. Abel
A Solder-Defined Computer Architecture For Backdoor And Malware Resistance, Marc W. Abel
Browse all Theses and Dissertations
This research is about securing control of those devices we most depend on for integrity and confidentiality. An emerging concern is that complex integrated circuits may be subject to exploitable defects or backdoors, and measures for inspection and audit of these chips are neither supported nor scalable. One approach for providing a “supply chain firewall” may be to forgo such components, and instead to build central processing units (CPUs) and other complex logic from simple, generic parts. This work investigates the capability and speed ceiling when open-source hardware methodologies are fused with maker-scale assembly tools and visible-scale final inspection.
The …
Vehicle Maintenance Tracking Program, Jared Tomlinson
Vehicle Maintenance Tracking Program, Jared Tomlinson
Williams Honors College, Honors Research Projects
In order to help consumers and businesses keep track of vehicle maintenance, I will create a program paired with a database that can track vehicle maintenance needs and when they should be performed. The program will be capable of tracking entire fleets of vehicles and based on the vehicle’s mileage, will notify users of what maintenance should be performed. Users will be able to add, remove, and edit vehicles in the system as needed and each vehicle will be paired with a maintenance schedule based on its needs. As maintenance is performed, it can be tracked on the schedule, which …
Few-Shot Malware Detection Using A Novel Adversarial Reprogramming Model, Ekula Praveen Kumar
Few-Shot Malware Detection Using A Novel Adversarial Reprogramming Model, Ekula Praveen Kumar
Browse all Theses and Dissertations
The increasing sophistication of malware has made detecting and defending against new strains a major challenge for cybersecurity. One promising approach to this problem is using machine learning techniques that extract representative features and train classification models to detect malware in an early stage. However, training such machine learning-based malware detection models represents a significant challenge that requires a large number of high-quality labeled data samples while it is very costly to obtain them in real-world scenarios. In other words, training machine learning models for malware detection requires the capability to learn from only a few labeled examples. To address …
Evaluating Similarity Of Cross-Architecture Basic Blocks, Elijah L. Meyer
Evaluating Similarity Of Cross-Architecture Basic Blocks, Elijah L. Meyer
Browse all Theses and Dissertations
Vulnerabilities in source code can be compiled for multiple processor architectures and make their way into several different devices. Security researchers frequently have no way to obtain this source code to analyze for vulnerabilities. Therefore, the ability to effectively analyze binary code is essential. Similarity detection is one facet of binary code analysis. Because source code can be compiled for different architectures, the need can arise for detecting code similarity across architectures. This need is especially apparent when analyzing firmware from embedded computing environments such as Internet of Things devices, where the processor architecture is dependent on the product and …
Locality Analysis Of Patched Php Vulnerabilities, Luke N. Holt
Locality Analysis Of Patched Php Vulnerabilities, Luke N. Holt
Browse all Theses and Dissertations
The size and complexity of modern software programs is constantly growing making it increasingly difficult to diligently find and diagnose security exploits. The ability to quickly and effectively release patches to prevent existing vulnerabilities significantly limits the exploitation of users and/or the company itself. Due to this it has become crucial to provide the capability of not only releasing a patched version, but also to do so quickly to mitigate the potential damage. In this thesis, we propose metrics for evaluating the locality between exploitable code and its corresponding sanitation API such that we can statistically determine the proximity of …
Reflecting On Recurring Failures In Iot Development, Dharun Anandayuvaraj, James C. Davis
Reflecting On Recurring Failures In Iot Development, Dharun Anandayuvaraj, James C. Davis
Department of Electrical and Computer Engineering Faculty Publications
As IoT systems are given more responsibility and autonomy, they offer greater benefits, but also carry greater risks. We believe this trend invigorates an old challenge of software engineering: how to develop high-risk software-intensive systems safely and securely under market pressures? As a first step, we conducted a systematic analysis of recent IoT failures to identify engineering challenges. We collected and analyzed 22 news reports and studied the sources, impacts, and repair strategies of failures in IoT systems. We observed failure trends both within and across application domains. We also observed that failure themes have persisted over time. To alleviate …
Reflections On Software Failure Analysis, Paschal C. Amusuo, Aishwarya Sharma, Siddharth R. Rao, Abbey Vincent, James C. Davis
Reflections On Software Failure Analysis, Paschal C. Amusuo, Aishwarya Sharma, Siddharth R. Rao, Abbey Vincent, James C. Davis
Department of Electrical and Computer Engineering Faculty Publications
Failure studies are important in revealing the root causes, behaviors, and life cycle of defects in software systems. These studies either focus on understanding the characteristics of defects in specific classes of systems or the characteristics of a specific type of defect in the systems it manifests in. Failure studies have influenced various software engineering research directions, especially in the area of software evolution, defect detection, and program repair.
In this paper, we reflect on the conduct of failure studies in software engineering. We reviewed a sample of 52 failure study papers. We identified several recurring problems in these studies, …
Sok: Analysis Of Software Supply Chain Security By Establishing Secure Design Properties, Chinenye Okafor, Taylor R. Schorlemmer, Santiao Torres-Arias, James C. Davis
Sok: Analysis Of Software Supply Chain Security By Establishing Secure Design Properties, Chinenye Okafor, Taylor R. Schorlemmer, Santiao Torres-Arias, James C. Davis
Department of Electrical and Computer Engineering Faculty Publications
This paper systematizes knowledge about secure software supply chain patterns. It identifies four stages of a software supply chain attack and proposes three security properties crucial for a secured supply chain: transparency, validity, and separation. The paper describes current security approaches and maps them to the proposed security properties, including research ideas and case studies of supply chains in practice. It discusses the strengths and weaknesses of current approaches relative to known attacks and details the various security frameworks put out to ensure the security of the software supply chain. Finally, the paper highlights potential gaps in actor and operation-centered …
Exploiting Input Sanitization For Regex Denial Of Service, Efe Barlas, Xin Du, James C. Davis
Exploiting Input Sanitization For Regex Denial Of Service, Efe Barlas, Xin Du, James C. Davis
Department of Electrical and Computer Engineering Faculty Publications
Web services use server-side input sanitization to guard against harmful input. Some web services publish their sanitization logic to make their client interface more usable, e.g., allowing clients to debug invalid requests locally. However, this usability practice poses a security risk. Specifically, services may share the regexes they use to sanitize input strings — and regex-based denial of service (ReDoS) is an emerging threat. Although prominent service outages caused by ReDoS have spurred interest in this topic, we know little about the degree to which live web services are vulnerable to ReDoS.
In this paper, we conduct the first black-box …
Discrepancies Among Pre-Trained Deep Neural Networks: A New Threat To Model Zoo Reliability, Diego Montes, Pongpatapee Peerapatanapokin, Jeff Schultz, Chengjun Guo, Wenxin Jiang, James C. Davis
Discrepancies Among Pre-Trained Deep Neural Networks: A New Threat To Model Zoo Reliability, Diego Montes, Pongpatapee Peerapatanapokin, Jeff Schultz, Chengjun Guo, Wenxin Jiang, James C. Davis
Department of Electrical and Computer Engineering Faculty Publications
Training deep neural networks (DNNs) takes significant time and resources. A practice for expedited deployment is to use pre-trained deep neural networks (PTNNs), often from model zoos.collections of PTNNs; yet, the reliability of model zoos remains unexamined. In the absence of an industry standard for the implementation and performance of PTNNs, engineers cannot confidently incorporate them into production systems. As a first step, discovering potential discrepancies between PTNNs across model zoos would reveal a threat to model zoo reliability. Prior works indicated existing variances in deep learning systems in terms of accuracy. However, broader measures of reliability for PTNNs from …