Open Access. Powered by Scholars. Published by Universities.®
- Discipline
-
- Information Security (143)
- Artificial Intelligence and Robotics (131)
- Engineering (119)
- Social and Behavioral Sciences (62)
- Computer Engineering (53)
-
- Education (51)
- Databases and Information Systems (48)
- Electrical and Computer Engineering (37)
- OS and Networks (37)
- Software Engineering (35)
- Data Science (34)
- Other Computer Sciences (34)
- Public Affairs, Public Policy and Public Administration (32)
- Systems Architecture (27)
- Programming Languages and Compilers (25)
- Systems and Communications (25)
- Business (24)
- Mechanical Engineering (22)
- Computer-Aided Engineering and Design (20)
- Digital Communications and Networking (19)
- Law (19)
- Science and Mathematics Education (18)
- Secondary Education (18)
- Applied Mathematics (16)
- Medicine and Health Sciences (16)
- Operations Research, Systems Engineering and Industrial Engineering (16)
- Theory and Algorithms (15)
- Institution
-
- Old Dominion University (92)
- University of Dar es Salaam (30)
- Embry-Riddle Aeronautical University (24)
- Dakota State University (23)
- University of South Alabama (21)
-
- Air Force Institute of Technology (18)
- Chapman University (16)
- Columbus State University (9)
- California State University, San Bernardino (8)
- Kennesaw State University (8)
- Louisiana State University (8)
- Bridgewater College (7)
- Dartmouth College (7)
- University of Malaya (7)
- Arkansas State University (6)
- Chinese Academy of Sciences (6)
- Lynn University (6)
- University of Arkansas, Fayetteville (6)
- California Polytechnic State University, San Luis Obispo (5)
- Marshall University (5)
- University of Nebraska at Omaha (5)
- University of South Florida (5)
- University of Tennessee at Chattanooga (5)
- City University of New York (CUNY) (4)
- Edith Cowan University (4)
- Florida Institute of Technology (4)
- Georgia Southern University (4)
- Indian Statistical Institute (4)
- St. Mary's University (4)
- University at Albany, State University of New York (4)
- Keyword
-
- Cybersecurity (75)
- Security (19)
- Artificial intelligence (18)
- Machine learning (17)
- Machine Learning (16)
-
- Malware (12)
- Privacy (11)
- Artificial Intelligence (9)
- Cybersecurity education (9)
- Blockchain (8)
- Cryptography (8)
- Computer security (7)
- Intrusion detection (7)
- Ransomware (7)
- Computational thinking (6)
- Digital forensics (6)
- Federated learning (6)
- Network security (6)
- Training (6)
- AI (5)
- Computer science (5)
- Cyber Security (5)
- Deep Learning (5)
- Deep learning (5)
- Goal 9: Industry, Innovation, and Infrastructure (5)
- Large Language Models (5)
- Phishing (5)
- Artificial Intelligence (AI) (4)
- Computer Science Education (4)
- Critical infrastructure (4)
- Publication Year
- Publication
-
- Cybersecurity Undergraduate Research Showcase (39)
- Tanzania Journal of Engineering and Technology (TJET) (28)
- Theses and Dissertations (25)
- Research & Publications (23)
- Journal of Computer Science Integration (16)
-
- Shelby Hall Graduate Research Forum Posters (12)
- Publications (11)
- Computer Science Faculty Publications (9)
- Honors Theses (9)
- School of Cybersecurity Faculty Publications (9)
- Electrical & Computer Engineering Faculty Publications (8)
- Faculty Publications (8)
- Graduate Theses and Dissertations (2019 - present) (8)
- Discovery Day - Daytona Beach (7)
- Electronic Theses, Projects, and Dissertations (7)
- Journal of Cybersecurity Education, Research and Practice (7)
- LSU Master's Theses (7)
- Master's Theses (7)
- Senior Seminars (7)
- Bulletin of Chinese Academy of Sciences (Chinese Version) (6)
- Faculty and Staff Publications & Presentations (6)
- Student Theses and Dissertations (6)
- Engineering Management & Systems Engineering Faculty Publications (5)
- Military Cyber Affairs (5)
- Theses/Capstones/Creative Projects (5)
- College of Graduate Studies: Theses & Dissertations (4)
- Electrical Engineering and Computer Science Undergraduate Honors Theses (4)
- Scholarly Horizons: University of Minnesota, Morris Undergraduate Journal (4)
- Student Theses (4)
- Student Works (2000-2009) (4)
- Publication Type
- File Type
Articles 1 - 30 of 466
Full-Text Articles in Cybersecurity
Hands-On Ransomware: An Experiential Wannacry Case Study For Undergraduate Cybersecurity Education, Eli Creek Richmond, Thomas R. Devine
Hands-On Ransomware: An Experiential Wannacry Case Study For Undergraduate Cybersecurity Education, Eli Creek Richmond, Thomas R. Devine
Military Cyber Affairs
Ransomware represents one of the most disruptive threats in the cyber landscape, yet hands-on malware analysis remains rare in undergraduate cybersecurity curricula. This paper presents the design, implementation, and evaluation of an experiential learning module centered on the WannaCry ransomware case study, deployed in a senior-level course at West Virginia University. Students performed static and dynamic analysis using industry-standard tools. Pre- and post-module assessments demonstrated measurable gains in self-reported competency across seven technical dimensions. The module's competencies align directly with DoD Cyber Workforce Framework Work Role 212, Cyber Defense Forensics Analyst, supporting education-to-workforce pipeline development.
From Framework To Toolchain: Implementing Zero Trust Architecture In Cloud-Native Environments For Dow Compliance, Shelby C. Snyder
From Framework To Toolchain: Implementing Zero Trust Architecture In Cloud-Native Environments For Dow Compliance, Shelby C. Snyder
Military Cyber Affairs
Federal agencies face a fiscal year 2027 target for enterprise-wide Zero Trust deployment, but NIST SP 800-207A defines logical components without identifying the Kubernetes technologies that implement them. This paper proposes a three-tier mapping of the Policy Engine, Policy Administrator, and Policy Enforcement Point to service mesh, microsegmentation, and perimeter tooling, stating the criteria by which each component is classified. It then applies a defined rubric to six Zero Trust vendors across component alignment, Kubernetes capability, federal authorization posture, and evidence quality, finding that no single vendor covers all three tiers. The mapping is a testable architectural proposition; a Stage …
Characterizing Advanced Persistent Threats With Cyber Attack Flow Metrics, Tyler Miller, Caleb Chang, Shouhuai Xu
Characterizing Advanced Persistent Threats With Cyber Attack Flow Metrics, Tyler Miller, Caleb Chang, Shouhuai Xu
Military Cyber Affairs
Cyber attack campaigns vary not only in scale but in structure, yet conventional characterizations often reduce them to a single dimension such as technique count or impact severity. In this paper we extend the concept of cyber attack flows by defining three new metrics, novelty, technique complexity and flow complexity. Then we characterize the attack flows of three advanced persistent threat campaigns using these metrics and draw insights regarding their capabilities. Our findings include that low novelty does not equate to low attack capabilities and that exploitation of an internet-facing appliance is a common initial attack vector.
Semantic Shields: Automating Critical Infrastructure Defense Via Nlp-Driven Ransomware Profiling, Henry Trowbridge, Ian Zalcberg, Ryan Schley, Carter Yagemann, Natasha Phan, Srikar Maduposu, Vimal Buck
Semantic Shields: Automating Critical Infrastructure Defense Via Nlp-Driven Ransomware Profiling, Henry Trowbridge, Ian Zalcberg, Ryan Schley, Carter Yagemann, Natasha Phan, Srikar Maduposu, Vimal Buck
Military Cyber Affairs
Ransomware poses a growing threat to critical infrastructure, where successful attacks can disrupt operational technology (OT) and industrial control systems (ICS) with significant public safety consequences. However, attributing ransomware incidents to specific threat actors remains challenging due to ransomware-as-a-service ecosystems, actor rebranding, and the obfuscation of traditional indicators of compromise. This paper presents Semantic Shields, an NLP-driven attribution framework that leverages BERT-generated semantic embeddings and DBSCAN clustering to profile ransomware actors through the linguistic characteristics of ransom notes. Using a dataset of 295 ransom notes from 189 distinct threat groups, the framework achieved an 87.2% true positive clustering rate and …
Closing The Interpretability Gap: Explainable Ml-Based Malware Detection For Defensive Cyberspace Operations, Tashi Stirewalt, Sean Hodgson, Puumaaya Tahiru, Assefaw Gebremedhin
Closing The Interpretability Gap: Explainable Ml-Based Malware Detection For Defensive Cyberspace Operations, Tashi Stirewalt, Sean Hodgson, Puumaaya Tahiru, Assefaw Gebremedhin
Military Cyber Affairs
This paper presents an end-to-end, explainable malware triage pipeline designed for defense-oriented cyber operations. It combines high-performance static detection methods with analyst-centered interpretability. Utilizing the EMBER 2024 Windows PE subset, we train and evaluate four classifiers and select LightGBM as the production model based on its predictive performance, inference efficiency, and compatibility with exact tree-based attribution. The deployed system consists of four sequential components: PE feature extraction, malware probability scoring, dual explainability (using SHAP and LIME), and large language model (LLM) report generation, all integrated within a Flask web interface. On a temporal test set of 1,080,000 samples, LightGBM achieves …
Cyberspace Collaborative Awareness: A Model For Unity Of Effort In Homeland Defense, Mike Knapp, Sean Atkins, Matthew Mclaughlin
Cyberspace Collaborative Awareness: A Model For Unity Of Effort In Homeland Defense, Mike Knapp, Sean Atkins, Matthew Mclaughlin
Joint Force Quarterly
The increasing frequency and severity of cyberattacks against U.S. critical infrastructure continue to confound homeland defense efforts. Defending against state cyber campaigns that threaten the nation’s most critical systems requires a new awareness model that can enable unity of effort across public and private actors. Examining homeland defense awareness in other domains reveals principles and approaches that can inform the development of a collaborative awareness model in cyberspace. This new framework acknowledges the interconnectedness of government and commercial networks and the independent goals of each player in the domain. Doing so provides a viable path to achieving shared domain awareness …
From Dissertation To Deployment: A Unified Software Platform Operationalizing Clinical-Prediction And Sequential-Security Ai For Healthcare, Olsi Shehu, Damiana Teliti, Jasmin Kevrić, Bekir Karlik
From Dissertation To Deployment: A Unified Software Platform Operationalizing Clinical-Prediction And Sequential-Security Ai For Healthcare, Olsi Shehu, Damiana Teliti, Jasmin Kevrić, Bekir Karlik
Communications of the IIMA
Advances in machine learning for healthcare are abundant, yet most validated models remain confined to research notebooks and never reach secure, usable clinical software. This paper addresses that deployment gap by presenting a unified, security-hardened software platform that operationalizes two complementary streams of doctoral research inside a single, role-based hospital information system. The first stream contributes a clinical-prediction capability: an ultra-hybrid ensemble that couples a quantum-inspired feature transformation, particle-swarm feature selection, and calibrated soft voting for cancer-outcome prediction (96.41% accuracy, AUC-ROC 0.983 on TCGA-BRCA), survival stratification, multi-cancer generalization, and pharmacogenomic drug-response classification (89.31% mean accuracy across 25 compounds). The second …
Ecu-Malnett V2, Matthew G. Gaber, Mohiuddin Ahmed, Michael N. Johnstone
Ecu-Malnett V2, Matthew G. Gaber, Mohiuddin Ahmed, Michael N. Johnstone
Research Datasets
ECU-MALNETT (ECU MALware NETwork Traffic) is a real world, reproducible dataset of labeled benign and malicious network flows built from the Peekaboo execution corpus. Peekaboo runs evasive malware with dynamic binary instrumentation and records raw host-level PCAPs while granting full Internet access, yielding noisy, real-world captures with background OS activity and concurrent processes. To derive trustworthy labels from these traces, we apply Construct, a baseline aware, zero-trust labeling framework. Construct first ingests a baseline capture to establish reference sets (DNS qnames, HTTP hosts, TLS SNIs, and socket endpoints) and grows a conservative benign IP pool only via whitelisted DNS resolutions. …
Energy Security Strategy Empowered By Artificial Intelligence, Qiang Ji, Jiaofeng Pan, Yu Song
Energy Security Strategy Empowered By Artificial Intelligence, Qiang Ji, Jiaofeng Pan, Yu Song
Bulletin of Chinese Academy of Sciences (Chinese Version)
Against the backdrop of unprecedented changes in a century, geopolitical restructuring has led to the fragmentation of energy game camps, climate change has impacted the resilience of energy infrastructure, and energy transformation has promoted the multidimensional and coordinated expansion of security connotations. Artificial intelligence, with its core advantages such as optimizing geopolitical risk prevention and control, enhancing infrastructure protection, improving energy system efficiency, and accelerating the integration of renewable energy, has promoted the shift of energy security strategy from experience driven to data-driven intelligence, achieving comprehensive risk identification, dynamic evaluation, collaborative response, and full chain monitoring, significantly improving the efficiency, …
Large Models Empowering Cybersecurity: Opportunities And Challenges, Zhuofeng He, Dongbin Hu, Yige Yuan
Large Models Empowering Cybersecurity: Opportunities And Challenges, Zhuofeng He, Dongbin Hu, Yige Yuan
Bulletin of Chinese Academy of Sciences (Chinese Version)
Cybersecurity serves as a critical pillar for national security and social stability. Large models in cybersecurity are emerging as key enablers for the intelligent transformation of cyber offense and defense systems. As one of the most advanced core technologies in artificial intelligence, large models are introducing new research directions and application paradigms in the cybersecurity domain. This study systematically reviews the current landscape of cybersecurity-oriented large model applications and products, and explores their deployment scenarios in practice. It further analyzes the development trends in model capabilities, industry ecosystems, and trustworthiness, while identifying major practical challenges such as data privacy protection, …
Critical Core Technology Breakthroughs In Large-Scale Models: Industrialization Strategies And Policy Implications, Zhongqi Wu, Yinshan Liu, Tao Dai, Xiaolong Zheng
Critical Core Technology Breakthroughs In Large-Scale Models: Industrialization Strategies And Policy Implications, Zhongqi Wu, Yinshan Liu, Tao Dai, Xiaolong Zheng
Bulletin of Chinese Academy of Sciences (Chinese Version)
As a pivotal direction for breakthroughs in key core technologies within the artificial intelligence domain, large-scale models hold strategic significance in securing national scientific and technological sovereignty. This study employs a multidimensional framework encompassing “technological breakthroughs, industrial transformation, and governance policies” to systematically investigate the developmental trajectories and industrialization bottlenecks of large-scale models. At the technological level, while large-scale models exhibit exponential growth in parameter scale and computing power demands, they face critical challenges including the scarcity of high-quality data, insufficient transfer learning capabilities, and reliability-explainability trade-offs. Industrially, these models are reshaping the global industrial chain landscape through a dual-track …
Lightweight End-To-End Cryptographic Framework With Semantic Qos For Ar-Based Telesurgery, Pavan Kumar Satram
Lightweight End-To-End Cryptographic Framework With Semantic Qos For Ar-Based Telesurgery, Pavan Kumar Satram
Masters Theses
This thesis presents the design, implementation, and evaluation of a lightweight end-to-end cryptographic framework integrated with a semantic quality-of-service classification system for augmented reality based telesurgery. Telesurgery can deliver expert surgical care to underserved populations, but adoption has been limited by unresolved cybersecurity, network performance, and resilience challenges. The core tension is that strong encryption adds latency that may exceed the clinical safety threshold, while unencrypted systems remain vulnerable to attacks that could endanger patients during live procedures.
The framework addresses this tension through a dual-edge security middlebox that performs per-flow encryption using semantically selected ciphers: AES-128-GCM for latency-critical haptic …
Geometry-Conditioned Adversarial Defense For Sar Automatic Target Recognition Via Regime-Specialist Classification Heads, Skyler Fabre
Geometry-Conditioned Adversarial Defense For Sar Automatic Target Recognition Via Regime-Specialist Classification Heads, Skyler Fabre
Discovery Day - Daytona Beach
This project, titled Geometry-Conditioned Adversarial Defense for SAR Automatic Target Recognition via Regime-Specialist Classification Heads, addresses the critical vulnerability of deep neural networks deployed in Synthetic Aperture Radar (SAR) Automatic Target Recognition (ATR) systems to adversarial perturbations. This is where imperceptible pixel-level modifications cause confident misclassification, posing serious risks in defense and aerospace applications. The objective is to develop and evaluate RegimeResNet, a geometry-conditioned classification architecture that exploits sensor metadata unique to SAR collection systems. Rather than treating all images uniformly, RegimeResNet partitions the SAR capture space into nine geometric regimes defined by depression angle and target azimuth angle extracted …
Determinants And Invertibility In Finite Modular Systems, Osasu Omobude
Determinants And Invertibility In Finite Modular Systems, Osasu Omobude
Discovery Day - Daytona Beach
This project investigates determinants and matrix invertibility in finite modular systems, focusing on matrices over Zn. Using the Hill cipher as context, it examines the algebraic conditions under which a matrix is invertible in modular arithmetic. In particular, the project studies how the determinant determines invertibility, showing that a matrix over Zn is invertible if and only if its determinant is coprime with n. The project further compares invertibility over the real numbers with invertibility over modular systems, highlighting the distinction between prime moduli Zp and composite moduli. In the prime case, matrices behave similarly to those over fields, where …
Small Uas Detection: Threat Intelligence & Risk Management Project, Tyler Johnson
Small Uas Detection: Threat Intelligence & Risk Management Project, Tyler Johnson
Discovery Day - Daytona Beach
The TRANSPORTATION SECURITY ADMINISTRATION / FEDERAL AIR MARSHAL SUAS DETECTION: THREAT INTELLIGENCE & RISK MANAGEMENT PROJECT addresses the emerging safety and security challenges posed by the rapid growth of small Unmanned Aircraft Systems (sUAS) in complex airspace environments. This study analyzed 92 days of sensor-captured Remote Identification (RID) data collected near Fort Lauderdale-Hollywood International Airport (FLL) to assess operational behaviors, aviation risk, and ground risk associated with drone activity. The primary objective of this research is to identify patterns of unauthorized or hazardous sUAS operations to enhance situational awareness and inform actionable risk-mitigation strategies. The analysis identified 335 flights from …
An Evaluation Of Machine Learning Models' Efficacy In Determining Uav Spoofing Attacks, Nicolas Machado, Jaxon Selzer
An Evaluation Of Machine Learning Models' Efficacy In Determining Uav Spoofing Attacks, Nicolas Machado, Jaxon Selzer
Discovery Day - Daytona Beach
An Evaluation of Machine Learning Models' Efficacy in Determining UAV Spoofing Attacks - The rapid integration of Unmanned Aerial Vehicles (UAVs) into urban airspace has introduced significant cybersecurity concerns, particularly due to vulnerabilities in Automatic Dependent Surveillance–Broadcast (ADS-B), which lacks authentication and encryption. This project addresses the problem of detecting spoofing and data manipulation attacks that can compromise UAV safety and mission reliability. The objective of this work is to evaluate the effectiveness of machine learning–based anomaly detection, specifically Long Short-Term Memory (LSTM) and Gated Recurrent Unit (GRU) networks, as protocol-agnostic solutions for identifying anomalous UAV behavior. To achieve this, …
A Survey On Machine Learning Applications For Operating System Fingerprinting, Siri Siqveland
A Survey On Machine Learning Applications For Operating System Fingerprinting, Siri Siqveland
Discovery Day - Daytona Beach
In the modern age of computers and interconnected networks, cybersecurity and cyber-attackers are evolving in tandem to exploit each other’s vulnerabilities. One technique used by both parties is Operating System Fingerprinting (OSF): with the knowledge of what Operating System a target system is running, innate vulnerabilities can be identified and patched or exploited. Historically, OSF utilizes two main methods: passive and active—the former trades accuracy with undetectability while the latter is generally more detectable but more accurate. However, recent work has combined OSF with Machine Learning (ML) to improve accurate identification. The work presented here is a survey for the …
Dcat - Distributed Computing And Analysis Tool, Asher Zwickel, Jacob Burdge
Dcat - Distributed Computing And Analysis Tool, Asher Zwickel, Jacob Burdge
Discovery Day - Daytona Beach
This project uses distributed computing to process and analyze large datasets related to cyber breaches and attacks. Its main goal is to find patterns between initial cyber incidents and what happens next. It looks at whether responses tend to escalate, calm down, or stay about the same over time. Understanding this helps explain how digital conflicts develop and whether they follow predictable paths. The project was built as part of university research and runs on custom software across a cluster of 17 Chromebooks. While the system can study many topics, it is currently focused on cyber activity. The software uses …
Bridging The Gap: Cybersecurity And Occupational Safety Frameworks In Ai Data Centers, Athena Leader
Bridging The Gap: Cybersecurity And Occupational Safety Frameworks In Ai Data Centers, Athena Leader
Discovery Day - Daytona Beach
Bridging the Gap: Cybersecurity and Occupational Safety Frameworks in AI Data Centers As artificial intelligence infrastructure expands, AI data centers represent a critical and underexamined convergence of cybersecurity and occupational safety risk. Existing frameworks such as NIST, OSHA, and ISO standards were largely developed in isolation, leaving significant gaps in how organizations manage risks that are simultaneously digital and physical in nature. This study investigates the gaps and overlaps between cybersecurity and occupational safety frameworks as they apply specifically to AI data center environments. Drawing on a targeted literature review of established regulatory and standards-based frameworks, this research identifies where …
Evaluating Machine Learning Models On Classification Of Novel Cyber Attacks In The Healthcare Domain, Promise Ehimen
Evaluating Machine Learning Models On Classification Of Novel Cyber Attacks In The Healthcare Domain, Promise Ehimen
Dissertations, Theses, and Projects
The increasing adoption of the Internet of Medical Things (IoMT) has improved healthcare delivery through connected medical devices while simultaneously expanding the cybersecurity risks facing healthcare organizations. Although machine learning based intrusion detection systems have demonstrated high detection accuracy, their ability to respond reliably to previously unseen cyberattacks remains uncertain. This study investigated how a Neural Network model and a Logistic Regression model classified novel cyberattacks within the IoMT environment. The Neural Network and Logistic Regression models were both trained and tested using a subset of the CICIoMT2024 benchmark dataset. The Neural Network achieved 99.82% test accuracy and a 0.94 …
Surveyception: An Exploration Of Deceptive Survey Forms, Muhammad Danish
Surveyception: An Exploration Of Deceptive Survey Forms, Muhammad Danish
Computer Science ETDs
Survey platforms such as Google Forms and Microsoft Forms are widely used for feedback, data collection, and engagement, but scammers increasingly exploit them to distribute phishing and deceptive attacks. This thesis presents a large-scale study of survey-form abuse across ten major providers. We collected 140,000 forms from three sources: public posts on X, search-engine results, and web pages from the top 10 million DomCop-ranked domains. Using automated filtering and manual qualitative review, we identified 2,645 forms requesting sensitive information and classified 566 as scams. These forms used techniques including phishing, private-secret theft, account and personal-data harvesting, financial deception, and psychological …
Stop Blaming My Users: Illumination Of The Technocentric Mythos Bias, Ervin H. Frenzel, Richard Lightcap
Stop Blaming My Users: Illumination Of The Technocentric Mythos Bias, Ervin H. Frenzel, Richard Lightcap
Journal of Cybersecurity Education, Research and Practice
Abstract -This conceptual essay addresses the need for systemic and systematic transdisciplinary analytical techniques within cybersecurity and technical security. This conceptual essay is contingent upon recognition that cybersecurity is not simply technical in nature, it does not need an adversary, and more importantly it is based upon systems engineering and systems thinking. The essay contributes a socio-technical attribution chain and field-specific ontology/taxonomy which distinguish user-triggered events from root causes, latent conditions, technical debt, validation failures, governance failures, and attribution bias before assigning responsibility to end users. It systematically defines an ontology inclusive of developer technical debt, organizational debt arising from …
Escaping The Cyberstorm: A Gamified Social Engineering Training Program, Noah Mcclanahan, Fadi Abu-Amara, Ali Khattab, Travis Jett, Andre Jackson
Escaping The Cyberstorm: A Gamified Social Engineering Training Program, Noah Mcclanahan, Fadi Abu-Amara, Ali Khattab, Travis Jett, Andre Jackson
Journal of Cybersecurity Education, Research and Practice
In this research work, we explored the effectiveness of gamification in improving cybersecurity awareness and training users on targeted social engineering attacks. Traditional cybersecurity training focuses on lectures and videos. These training methods may not actively engage employees, which reduces their knowledge retention and ability to recognize social engineering attacks. This lack of involvement is a concern, as social engineering continues to be one of the most prevalent attack methods faced by end-users. A gamified training program, Escaping the Cyberstorm, was developed using the Godot game engine to address key challenges in spreading cybersecurity awareness. The game includes real-life …
Assessment And Evidence Practices In Cybersecurity Education: A Systematic Review (2015–2025), James K. Mayberry
Assessment And Evidence Practices In Cybersecurity Education: A Systematic Review (2015–2025), James K. Mayberry
Journal of Cybersecurity Education, Research and Practice
This study presents a PRISMA-based systematic review of 412 cybersecurity education intervention studies, coding assessment methods, evidence types, claimed outcomes, use of established assessment instruments, and artifact availability. Despite frequent claims of skill development and workforce preparation, 45.4% of studies reported no identifiable assessment. Knowledge tests appeared in 11.4% of studies, while performance assessments appeared in 10.2%. From 2015 to 2025, assessment practices remained dominated by post-only designs or no assessment, with no statistically detectable increase in pre/post-capable designs. Use of established assessment instruments was rare, with 94.2% of assessed studies using ad hoc measures or not identifying an established …
Assessing Flaws In Captcha Security Through Progress In Ai, Jaydon Stanislowski
Assessing Flaws In Captcha Security Through Progress In Ai, Jaydon Stanislowski
Scholarly Horizons: University of Minnesota, Morris Undergraduate Journal
Protecting the internet from the threat of malicious bot activity is an important problem as AI tools become more powerful and commonplace over time. To that end, security measures are employed across websites in the form of CAPTCHAs, short challenges designed to identify and block fake web traffic. Yet, they become less effective over time as AI becomes more powerful, and thus more capable of solving them. This paper examines recent research on the threat to CAPTCHA security posed by current AI models and how this security can be reinforced over time, focusing primarily on Google’s reCAPTCHA v3.
Zero Trust Architecture And Ransomware Mitigation, Ely Johnson
Zero Trust Architecture And Ransomware Mitigation, Ely Johnson
Scholarly Horizons: University of Minnesota, Morris Undergraduate Journal
Ransomware has become a critical threat to modern enterprises, exploiting excessive privileges and flat network architectures to spread rapidly. Traditional perimeter-based security models are insufficient, as they rely on implicit trust within internal networks. This paper examines how Zero Trust Architecture (ZTA) mitigates ransomware through least privilege access, continuous monitoring, and micro- segmentation. Experimental results show that ZTA can significantly reduce impact, limiting encryption to about 20% of targeted files while preserving most data. Continuous monitoring enables rapid detection (5.3 seconds) with high accuracy (up to 97.2%) and a 78% reduction in false positives. Micro-segmentation further restricts lateral movement, reducing …
Security Limitations Of The Can Bus And Detection Through Power Fingerprinting, Ken Broden
Security Limitations Of The Can Bus And Detection Through Power Fingerprinting, Ken Broden
Scholarly Horizons: University of Minnesota, Morris Undergraduate Journal
This paper examines the vulnerabilities of the Controller Area Network (CAN), the standard communication protocol used in most modern vehicles. It explains why CAN is widely adopted and outlines key security weaknesses in its design. The paper then reviews recent research efforts to detect and mitigate these vulnerabilities, with particular focus on an approach to origin authentication that relies on the unique power consumption patterns of each individual electronic control unit on a CAN bus.
Geospatial Governance Failures In The Department Of Defense: Contractor Noncompliance, Ai Adoption, And The Parallel Treatment Of Gis And Cybersecurity, Lyndsey Olmstead
Geospatial Governance Failures In The Department Of Defense: Contractor Noncompliance, Ai Adoption, And The Parallel Treatment Of Gis And Cybersecurity, Lyndsey Olmstead
Geography and the Environment: Graduate Student Capstones
The Department of Defense's treatment of geographic information systems and cybersecurity as parallel rather than integrated policy domains produces geographically predictable vulnerability patterns across its global military installation footprint. This capstone investigates that conclusion through original spatial analysis, constructing a five-variable composite geospatial vulnerability index across the six U.S. Combatant Command regions using publicly available unclassified data. EUCOM ranked highest overall, driven by GPS/PNT spoofing density, commercial satellite coverage, and cyber incident frequency; CENTCOM ranked second, driven by OSINT exposure incidents and governance risk. The null hypothesis of random geographic distribution is rejected. Findings confirm the structural governance gap documented …
Residential Ai Data Centers: Security, Privacy, And Governance Concerns, Alan Saquella
Residential Ai Data Centers: Security, Privacy, And Governance Concerns, Alan Saquella
Publications
The concept of placing mini data centers and distributed AI computer nodes inside residential homes may appear innovative from an energy efficiency perspective, but it introduces significant security, privacy, governance, and liability concerns. What is effectively occurring is the expansion of commercial and potentially critical infrastructure into lightly protected residential environments.
Once a residence becomes part of a distributed computer grid supporting hyper-scalers, AI providers, or enterprise workloads, the home is no longer simply a private residence. It becomes a commercial technology asset, a potential cyber target, and even a physical target. A distributed network of thousands of residential nodes …
A Systematic Review Of Intrusion Detection Systems For Internet Of Medical Things: Performance, Efficiency, Explainability, And Generalization, Oswald Adohinzin, Youssef Harrath
A Systematic Review Of Intrusion Detection Systems For Internet Of Medical Things: Performance, Efficiency, Explainability, And Generalization, Oswald Adohinzin, Youssef Harrath
Research & Publications
The Internet of Medical Things (IoMT) has transformed health care delivery through medical devices, remote patient monitoring, and real-time clinical decision support. However, the proliferation of IoMT devices introduces security vulnerabilities that put patient safety and data privacy at risk. Intrusion Detection Systems (IDS) have emerged as essential components for protecting IoMT networks from cyberattacks. This article presents a systematic review of IoMT-IDS research, analyzing 53 high-quality papers published between 2020 and 2025, identified through database searches spanning 2016–2025 across IEEE Xplore, Springer, ScienceDirect, and ACM Digital Library. We organize the literature through a comprehensive taxonomy spanning classical machine learning …