Open Access. Powered by Scholars. Published by Universities.®

Cybersecurity Commons

Open Access. Powered by Scholars. Published by Universities.®

Cybersecurity

Discipline
Institution
Publication Year
Publication
Publication Type
File Type

Articles 31 - 60 of 74

Full-Text Articles in Cybersecurity

Real-Time Anomaly Detection In Ot Networks Using Gru-Based Autoencoders, Grant Austin Wilkins May 2025

Real-Time Anomaly Detection In Ot Networks Using Gru-Based Autoencoders, Grant Austin Wilkins

Graduate Theses and Dissertations

Operational Technology (OT) networks, particularly those used in critical infrastructure, face increasing cyber threats that target network-level protocols and behaviors. While most anomaly detection research for OT systems has traditionally relied on sensor data, this thesis explores the viability of detecting malicious activity directly from network telemetry. We propose a sequence-to-sequence autoencoder model based on Gated Recurrent Units (GRUs) with multilevel attention, trained to reconstruct normal patterns of packet-level communication extracted from raw PCAP data. The developed feature engineering pipeline integrates general networking attributes such as IP and MAC addresses, ports, and transport protocols with OT-specific protocol information from Modbus …


A Comprehensive Performance Comparison Of Machine Learning And Federated Learning For Intrusion Detection In Vehicular Ad-Hoc Networks Using Can-Bus Data, Tim Leonhardt May 2025

A Comprehensive Performance Comparison Of Machine Learning And Federated Learning For Intrusion Detection In Vehicular Ad-Hoc Networks Using Can-Bus Data, Tim Leonhardt

Honors Theses

Federated Learning (FL) is a Machine Learning (ML) approach that decentralizes training across distributed devices, eliminating the need to centralize data. Unlike traditional ML, where models are trained on aggregated data, FL sends a global model to multiple nodes for local training, with updated parameters transmitted back to the server for aggregation. This process preserves data privacy, making FL ideal for sensitive applications like cybersecurity. However, FL introduces challenges such as data heterogeneity, communication overhead, and difficulties in achieving model convergence, which can impact performance.

This study investigates a fundamental assumption in ML and FL research: that the superior performance …


Understanding The Impact Of Ransomware On Biotechnology, Tswvyim Vang May 2025

Understanding The Impact Of Ransomware On Biotechnology, Tswvyim Vang

Electronic Theses, Projects, and Dissertations

Biotechnology encompasses the use of research on both biology and technology to create products that can advance in areas such as healthcare and agriculture. Because of the technology and products that arise from the use of biotechnology, the industry is especially targeted by cyber-attacks. A prominent type of cyber-attack that is utilized by cyber criminals on biotechnology is ransomware. The goal of this project is to determine the impact of ransomware on biotechnology. The research questions posed are: Q1) What are real examples of ransomware attacks that have occurred on biotechnology companies and what patterns can be identified by these …


Cyber Safety: Protecting Yourself Online, Laxima Niure Kandel, Kayla D. Taylor, Bhawana Poudel, Helen Hernandez Apr 2025

Cyber Safety: Protecting Yourself Online, Laxima Niure Kandel, Kayla D. Taylor, Bhawana Poudel, Helen Hernandez

Graduate Student Works

The IEEE Women in Engineering (WIE) Affinity Group of Daytona hosted a cybersecurity awareness event on Saturday, April 26, 2025, at the Port Orange Regional Library. The session was designed specifically to help seniors in Volusia County learn how to protect themselves online, avoid scams, create strong passwords, and safely navigate the digital world.


Optimizing Llm X86 Assembly Code Comprehension Through Fine-Tuning, Darrin Michael Lea Apr 2025

Optimizing Llm X86 Assembly Code Comprehension Through Fine-Tuning, Darrin Michael Lea

LSU Master's Theses

Reverse engineering is a cybersecurity process that focuses on understanding the underlying functionality of software or malware. This is an arduous process that demands large amounts of time and effort from cybersecurity practitioners. Large Language Models (LLMs) offer a potential solution to this problem. LLMs have worked their way into various fields of cybersecurity in recent years, including incident response and malware classification. However, LLMs have historically struggled with low-level code comprehension: a necessary part of reverse engineering. While LLMs can generate code and explain its function on the surface level, they struggle to grasp the wider context. In this …


Enhancing Iot Security Using Lightweight Machine Learning Algorithms: A Comprehensive Approach Using Ensemble Learning, Feature Selection, And Federated Transfer Learning, Khawlah Harahsheh Apr 2025

Enhancing Iot Security Using Lightweight Machine Learning Algorithms: A Comprehensive Approach Using Ensemble Learning, Feature Selection, And Federated Transfer Learning, Khawlah Harahsheh

Electrical & Computer Engineering Theses & Dissertations

The rapid expansion of the Internet of Things (IoT) has introduced significant security vulnerabilities due to the resource-constrained nature of IoT devices and their exposure to cyber threats. Traditional security solutions are often infeasible due to the high computational and storage demands they impose. This dissertation presents a lightweight, AI-driven security framework that enhances IoT network resilience by integrating feature selection, ensemble learning, and federated transfer learning while maintaining data privacy and minimizing computational overhead.

The proposed framework consists of three primary components: Feature Selection for Intrusion Detection, which optimizes performance by reducing redundant data and improving detection accuracy with …


Ransomware In Healthcare: Threats, Impacts, And Mitigation Strategies, Mackenzie Dotson, Kasi Gorli, Alberto Coustasse Mar 2025

Ransomware In Healthcare: Threats, Impacts, And Mitigation Strategies, Mackenzie Dotson, Kasi Gorli, Alberto Coustasse

Management Faculty Research

Excerpt: The growing digitalization of healthcare has exposed hospitals to significant cybersecurity threats, particularly ransomware attacks. The Health Sector Cybersecurity Coordination Center (HC3) reported that as of mid-2024, there were 730 cyber-attacks worldwide against healthcare institutions, with 530 targeting the U.S. (AHA, 2024). Half of these incidents involved ransomware, a type of malware that restricts access to critical data until a ransom is paid (HHS, 2021). Hospitals are attractive targets for cybercriminals due to their essential role in patient care. Cybercriminals exploit vulnerabilities in hospital networks, often causing severe operational and financial damage. Factors such as understaffed IT teams, outdated …


Cyber Threats In Healthcare: The Ransomware Epidemic, Mackenzie Dotson, Kasi Gorli, Alberto Coustasse Mar 2025

Cyber Threats In Healthcare: The Ransomware Epidemic, Mackenzie Dotson, Kasi Gorli, Alberto Coustasse

Management Faculty Research

In this presentation, we will delve into the growing ransomware crisis in healthcare, examining how these cyber threats disrupt hospital operations, jeopardize patient safety, and impose significant financial burdens. From understanding how ransomware infiltrates hospital systems to exploring real-world case studies, we will uncover the devastating impact of these attacks. Our discussion will also focus on mitigation strategies, cybersecurity best practices, and policy recommendations to safeguard healthcare institutions from future threats.


The Future Of Ai: Join The Conversation, Jennifer Wojton, Cassandra Branham, Vijay Tummala, Laxima Niure Kandel, Kayla D. Taylor Mar 2025

The Future Of Ai: Join The Conversation, Jennifer Wojton, Cassandra Branham, Vijay Tummala, Laxima Niure Kandel, Kayla D. Taylor

Publications

Join the Conversation! The Future is AI? There is so much conflicting information about what AI is capable of, how it could/should be used, by whom and for what purpose. In this panel discussion, we hope to provide a baseline of information that will help all participants think critically and articulate thoughtful questions about the mechanics of AI, ethical use or non-use of AI in particular contexts (school, industry, business, art, etc.), and the impacts we are currently experiencing or are likely to experience. Hear from ERAU faculty of different disciplines to discuss what the current state of AI technology …


A Survey-Based Quantitative Analysis Of Stress Factors And Their Impacts Among Cybersecurity Professionals, Sunil Arora, John D. Hastings Jan 2025

A Survey-Based Quantitative Analysis Of Stress Factors And Their Impacts Among Cybersecurity Professionals, Sunil Arora, John D. Hastings

Research & Publications

This study investigates the prevalence and underlying causes of work-related stress and burnout among cybersecurity professionals using a quantitative survey approach guided by the Job Demands-Resources model. Analysis of responses from 50 cybersecurity practitioners reveals an alarming reality: 44% report experiencing severe work-related stress and burnout, while an additional 28% are uncertain about their condition. The demanding nature of cybersecurity roles, unrealistic expectations, and unsupportive organizational cultures emerge as primary factors fueling this crisis. Notably, 66% of respondents perceive cybersecurity jobs as more stressful than other IT positions, with 84% facing additional challenges due to the pandemic and recent high-profile …


Scalable Approaches Towards Characterizing And Mitigating Emerging Phishing Scams, Sayak Saha Roy Jan 2025

Scalable Approaches Towards Characterizing And Mitigating Emerging Phishing Scams, Sayak Saha Roy

Computer Science and Engineering Dissertations - Archive

Phishing scams are among the most dangerous and persistent forms of cybercrime, leveraging social engineering to exploit human behavior and obtain sensitive information, leading to widespread identity theft and data breaches. In the past year, these attacks have resulted in financial losses exceeding $10 billion in the United States alone. As phishing scams continue to evolve, they have not only expanded in scale but also grown in sophistication, spreading rapidly across social media and employing adversarial techniques to evade detection by anti-scam tools. The situation is further exacerbated by the availability of advanced phishing kits, and more recently, generative AI, …


Human Perception Of Ai Capabilities At Classifying Perturbed Roadway Signs, Katherine R. Garcia, Jing Chen, Yanru Xiao, Scott Mishler, Cong Wang, Bin Hu Jan 2025

Human Perception Of Ai Capabilities At Classifying Perturbed Roadway Signs, Katherine R. Garcia, Jing Chen, Yanru Xiao, Scott Mishler, Cong Wang, Bin Hu

Psychology Faculty Publications

Artificial Intelligence (AI) is crucial to numerous functions required for driving automation systems, including the computer vision techniques used to detect the roadway environment and make real-time decisions. However, the images used as inputs to the AI system may be maliciously perturbed, or manipulated, causing the AI system to make an incorrect classification. In this study, we examined humans’ perception of the AI’s computer vision capability of classifying various road sign images, including the original images, images with two different types of malicious attacks, and images that are scrambled randomly at the pixel level. Our results showed that participants rated …


Signal-Based Error Handling: Case Study Using The Bathymetric Attributed Grid Library, Anthony R. Papetti Jan 2025

Signal-Based Error Handling: Case Study Using The Bathymetric Attributed Grid Library, Anthony R. Papetti

Honors Theses and Capstones

No abstract provided.


Data Injustice In Global Justice, Asaf Lubin, Cherry Tang Jan 2025

Data Injustice In Global Justice, Asaf Lubin, Cherry Tang

Articles by Maurer Faculty

In May 2020, the United Nations Secretary-General unveiled a sweeping “Data Strategy for Action by Everyone, Everywhere,” seeking to unlock the UN’s “full data potential.” The International Criminal Court’s Office of the Prosecutor followed suit, declaring in 2023 its intent to acquire advanced cyber forensic tools so as to hold the “widest range of digital evidence globally.” Across international institutions, data-driven governance has become the norm, with humanitarian agencies and tribunals transforming into “data hubs and information clearinghouses.” This Article critiques the unfettered datafication of global justice by international courts and organizations. These entities have aggressively expanded their data-driven operations …


Securing Secrets: Exploring The Aes Encryption And Key Security Capabilities Of Chatgpt, Kayla Taylor Jan 2025

Securing Secrets: Exploring The Aes Encryption And Key Security Capabilities Of Chatgpt, Kayla Taylor

Student Works

The development and increasing accessibility of generative artificial intelligence (AI) tools and large language models (LLMs) have allowed cryptographers to explore a variety of cryptanalysis problems in dynamic and interactive ways. Prompt engineering, the process by which input text is tested and refined to elicit a desired response from LLMs, is a nascent area of research that remains largely unexplored in many contexts, including cryptography. This study will explore the potential applications and limitations of prompt engineering in the context of Advanced Encryption Standard (AES) encryption and key security with OpenAI’s ChatGPT (GPT-4o) through two main objectives: First, given a …


Watchdogs Or Lapdogs: How Audit Committees Influence Financial Reporting Quality And Cybersecurity, Yanru Yang Jan 2025

Watchdogs Or Lapdogs: How Audit Committees Influence Financial Reporting Quality And Cybersecurity, Yanru Yang

2025

With the increasing complexity of the business environment, the role of corporate governance and oversight is expanding continuously. Grounded in archival research, my dissertation consists of three studies that explore the features of audit committees in monitoring both financial reporting and broader areas, such as cybersecurity.

The first paper, co-authored with Gopal Krishnan and Wei Yu, examines the implications of audit committee (AC) director departure for financial reporting quality and audit risk. We find that the departures in the firms with most concerning AC departures are associated with a higher likelihood of a future “Big R” restatement announcement and auditor …


Machine Learning Methods For Intrusion Detection And Response In Network Security, Ayomide Oyemaja Jan 2025

Machine Learning Methods For Intrusion Detection And Response In Network Security, Ayomide Oyemaja

College of Graduate Studies: Theses & Dissertations

Intrusion Detection Systems (IDS) play a crucial role in computer network security by identifying malicious activities and potential cyberattacks. This thesis combines machine learning and cybersecurity by applying Reinforcement Learning (RL) in intrusion detection and response using the NSL-KDD dataset.

We designed and implemented a Q-learning framework where an agent learns to classify network traffic over time by interacting with the environment and receiving rewards based on detection accuracy. We also look at the importance of feature selection and classification techniques and how effective they are in improving model performance, reducing the complexity of computation, and producing more desirable results. …


T3-Ciders: Fostering A Community Of Practice In Ci-And Data Enabled Cybersecurity Research Through A Train-The-Trainer Program, Wirawan Purwanto, Mohan Yang, Peng Jiang, Masha Sosonkina Jan 2025

T3-Ciders: Fostering A Community Of Practice In Ci-And Data Enabled Cybersecurity Research Through A Train-The-Trainer Program, Wirawan Purwanto, Mohan Yang, Peng Jiang, Masha Sosonkina

Electrical & Computer Engineering Faculty Publications

We present a training program named T³-CIDERS, the Train- The-Trainer approach to fostering cyberinfrastructure (CI)- and Data-Enabled Research in CyberSecurity. T³-CIDERS is a train-the-trainer program for advanced cyberinfrastructure (CI) skills that is designed to be synergistic with research, teaching, and learning activities in cybersecurity and cyber-related disciplines. The participants, termed 'future trainers' (FTs), are trained in effective instructional design and CI hands-on materials from DeapSECURE, developed in a previous CyberTraining program. T³-CIDERS aims to enhance cybersecurity research and education through broader adoption of advanced CI techniques such as artificial intelligence, big data, parallel programming, and platforms like high-performance computing (HPC) …


A Comprehensive Exploration Of 6g Wireless Communication Technologies, Md Nurul Absar Siddiky, Muhammad Enayetur Rahman, Md. Shahriar Uzzal, H. M. Dipu Kabir Jan 2025

A Comprehensive Exploration Of 6g Wireless Communication Technologies, Md Nurul Absar Siddiky, Muhammad Enayetur Rahman, Md. Shahriar Uzzal, H. M. Dipu Kabir

Electrical & Computer Engineering Faculty Publications

As the telecommunications landscape braces for the post-5G era, this paper embarks on delineating the foundational pillars and pioneering visions that define the trajectory toward 6G wireless communication systems. Recognizing the insatiable demand for higher data rates, enhanced connectivity, and broader network coverage, we unravel the evolution from the existing 5G infrastructure to the nascent 6G framework, setting the stage for transformative advancements anticipated in the 2030s. Our discourse navigates through the intricate architecture of 6G, highlighting the paradigm shifts toward superconvergence, non-IP-based networking protocols, and information-centric networks, all underpinned by a robust 360-degree cybersecurity and privacy-by-engineering design. Delving into …


T3-Ciders: Train-The-Trainer And Community Building To Increase Cyberinfrastructure Adoption In Cybersecurity Research And Education, Wirawan Purwanto, Mohan Yang, Peng Jiang, Shanan Chappell Moots, Masha Sosonkina, Hongyi Wu Jan 2025

T3-Ciders: Train-The-Trainer And Community Building To Increase Cyberinfrastructure Adoption In Cybersecurity Research And Education, Wirawan Purwanto, Mohan Yang, Peng Jiang, Shanan Chappell Moots, Masha Sosonkina, Hongyi Wu

University Administration Publications

T³-CIDERS is a train-the-trainer program to increase the adoption of advanced cyberinfrastructure (CI) and data skills into the fabric of research and education in cybersecurity and cyber-related disciplines. T³-CIDERS trains faculty, researchers, and students as “future trainers” (FTs) with hands-on technical and instructional skills to enable more people to effectively leverage CI in cybersecurity. The program includes a series of technical pre-training modules, a weeklong summer institute, ongoing learning engagements conducted over an academic year; it culminates with the FTs conducting locally tailored CI-infused training events at their respective home institutions. Ultimately, T³-CIDERS aims to build a “CI+cybersecurity” community of …


Cyberattacks On Port Infrastructures: A Decade Of Trends, Incidents, And Mitigation Strategies (2011-2024), Minodora Badea, Olga Bucovetchi, Adrian V. Gheorghe, Gabriel Raicu Jan 2025

Cyberattacks On Port Infrastructures: A Decade Of Trends, Incidents, And Mitigation Strategies (2011-2024), Minodora Badea, Olga Bucovetchi, Adrian V. Gheorghe, Gabriel Raicu

Engineering Management & Systems Engineering Faculty Publications

Port infrastructures are critical to global trade, handling over 80% of the world's cargo by volume. However, their increasing reliance on digital technologies has exposed them to a wide range of cyber threats. This paper provides a comprehensive analysis of cyberattacks targeting port infrastructures from 2011 to the present. We examine the types of attacks, geographical distribution, notable incidents, and underlying vulnerabilities. Additionally, we discuss mitigation strategies and future directions for enhancing cybersecurity in the maritime sector. Our findings highlight the urgent need for robust regulatory frameworks, advanced technological solutions, and collaborative efforts to safeguard critical port operations.


Enhancing Password Security And Memorability Using Machine Learning And Linguistic Patterns, Jared Wise Dec 2024

Enhancing Password Security And Memorability Using Machine Learning And Linguistic Patterns, Jared Wise

LSU New Orleans Theses and Dissertations

In the digital age, text-based passwords remain a primary method for securing online accounts. Yet, users frequently face a dilemma between creating passwords that are easy to remember and sufficiently secure against cyberattacks. This research introduces an approach to password generation that bridges this gap by utilizing linguistic patterns, particularly song lyrics, to develop highly secure and naturally memorable passwords. Using large lyric datasets gained from web scrapes from popular song lyric websites (AZ Lyrics, Genius), features are extracted from a corpus of over 5 million lyrics using sentence structure and natural language processing in a novel way. In using …


A Comparative Study Of Patterns, Causes, And Impacts Of Data Breaches Across Geographical Regions And Time Frames, Bhavish Balsara Dec 2024

A Comparative Study Of Patterns, Causes, And Impacts Of Data Breaches Across Geographical Regions And Time Frames, Bhavish Balsara

Electronic Theses, Projects, and Dissertations

The rise of digital technologies and interconnected systems has made data breaches a growing global concern. This culmination project explores the patterns, causes, and impacts of data breaches across various countries with varying levels of economic development and cybersecurity infrastructure from 2020 to 2023. This research aims to provide insights into the global landscape of data breaches and how they have evolved in recent years. The research questions are: (Q1) How do data breach patterns differ between countries with different levels of economic development and cybersecurity infrastructure? (Q2) What patterns and trends can be identified in data breaches when analyzing …


The Effects Of Covid-19 Lockdowns On Cybersecurity, Natalie Sanders Dec 2024

The Effects Of Covid-19 Lockdowns On Cybersecurity, Natalie Sanders

Electronic Theses, Projects, and Dissertations

The COVID-19 pandemic and subsequent lockdowns forced many Americans to quickly adapt to working from home, many of which had never done so in the past. In addition, organizations were forced to modify security policies and protocols to allow for remote access to sensitive information. The rapid change in security policies as well as the sudden growth of remote access during the pandemic presented a broader landscape for cyber criminals to attack. In this report, we review the number and type of cyberattacks reported from two (2) years before the pandemic through two (2) years after (1998 through 2023), to …


Transforming Information Systems Management: A Reference Model For Digital Engineering Integration, John Bonar, John Hastings Oct 2024

Transforming Information Systems Management: A Reference Model For Digital Engineering Integration, John Bonar, John Hastings

Research & Publications

Digital engineering practices offer significant yet underutilized potential for improving information assurance and system lifecycle management. This paper examines how capabilities like model-based engineering, digital threads, and integrated product lifecycles can address gaps in prevailing frameworks. A reference model demonstrates applying digital engineering techniques to a reference information system, exhibiting enhanced traceability, risk visibility, accuracy, and integration. The model links strategic needs to requirements and architecture while reusing authoritative elements across views. Analysis of the model shows digital engineering closes gaps in compliance, monitoring, change management, and risk assessment. Findings indicate purposeful digital engineering adoption could transform cybersecurity, operations, service …


Confronting The Reproducibility Crisis: A Case Study Of Challenges In Cybersecurity Ai, Richard H. Moulton, Gary A. Mccully, John D. Hastings Oct 2024

Confronting The Reproducibility Crisis: A Case Study Of Challenges In Cybersecurity Ai, Richard H. Moulton, Gary A. Mccully, John D. Hastings

Research & Publications

In the rapidly evolving field of cybersecurity, ensuring the reproducibility of AI-driven research is critical to maintaining the reliability and integrity of security systems. This paper addresses the reproducibility crisis within the domain of adversarial robustness—a key area in AI-based cybersecurity that focuses on defending deep neural networks against malicious perturbations. Through a detailed case study, we attempt to validate results from prior work on certified robustness using the VeriGauge toolkit, revealing significant challenges due to software and hardware incompatibilities, version conflicts, and obsolescence. Our findings underscore the urgent need for standardized methodologies, containerization, and comprehensive documentation to ensure the …


Cybersecurity In Education, Rahima Shelim Aug 2024

Cybersecurity In Education, Rahima Shelim

Theses, Dissertations and Culminating Projects

Cybersecurity is becoming increasingly important as we rely more on digital devices and programs to conduct our daily lives, including the transfer and storage of personal information. According to research, one of the most critical stages in improving cybersecurity is to implement an effective security awareness program. In this work, we seek to understand the existing level of security knowledge among college students, industry professionals and create a module to help raise the awareness. Our module's primary elements are interaction and the display of alarming effects of reckless cyber behaviors among common Internet/technology users. This report presents a simple systematic …


Securing Tomorrow: Synergizing Change Management And Cybersecurity In The Digital Era, Sharon L. Burton Jun 2024

Securing Tomorrow: Synergizing Change Management And Cybersecurity In The Digital Era, Sharon L. Burton

Publications

In the rapidly evolving business environment of 2024, organizational change management (OCM) leaders face unprecedented challenges driven by technological advancements, digital transformation, the integration of remote work, and a heightened focus on sustainability. This study examines the efficacy of traditional OCM models in addressing these modern complexities. Through a qualitative methodology employing an extensive literature review, the research identifies vital issues such as resistance to change, digital transformation imperatives, the shift to remote and hybrid work models, and the imperative for sustainable and ethical business practices. The study posits that while classical OCM frameworks offer foundational insights, there is a …


Signal-To-Image Method For Counterfeit Detection In Layered Security Paradigm, Jordan Williamson Mar 2024

Signal-To-Image Method For Counterfeit Detection In Layered Security Paradigm, Jordan Williamson

Theses and Dissertations

National level attention, resources, and priority regarding critical infrastructure have increased in recent years. This has led to adversaries and defenders exchanging positions between fortification and exploitation. One area that continues to be vulnerable is supply chain attacks like counterfeit insertion. This work investigates the application of converting collected signals into images from devices that may be considered for these critical networks. There are several aspects regarding the conversion of signals into images - specifically Red, Green, Blue (RGB) images. The methodology proposed here is potentially ideal fit for an initial security layer by achieving comparable classification results as more …


Data Driven Trade-Off Analysis For Cybersecurity, Goskel Kucukkaya, Murat Ozer, Murat Balci, Emrah Ugurlu Jan 2024

Data Driven Trade-Off Analysis For Cybersecurity, Goskel Kucukkaya, Murat Ozer, Murat Balci, Emrah Ugurlu

Engineering Management & Systems Engineering Faculty Publications

Trade-off analysis, a specialization of systems engineering, addresses design criteria like security, cost, performance, and compliance. Monte Carlo simulations are commonly employed to generate impact scenarios for trade-off analysis combined with solution alternatives that accommodate industry-specific considerations and uncertainties. In the cyber domain, this paper proposes a methodology for data-driven trade-off analysis in cybersecurity, leveraging industry reports as primary data sources using confidentiality, integrity, and availability as trade-off analysis objectives. Distribution functions are derived to manage and model uncertainties for various industries. The approach given in this study aims to facilitate informed choices and to enhance cybersecurity decision making and …