Open Access. Powered by Scholars. Published by Universities.®

Information Security Commons

Open Access. Powered by Scholars. Published by Universities.®

Articles 1 - 23 of 23

Full-Text Articles in Information Security

Out-Of-Band Anomaly Detection For Real Time Operating Systems, Jeffrey K. Holifield Aug 2025

Out-Of-Band Anomaly Detection For Real Time Operating Systems, Jeffrey K. Holifield

Graduate Theses and Dissertations (2019 - present)

Real Time Operating Systems (RTOS) are increasing present throughout the industrial, business, defense, and healthcare spaces. These lightweight and efficient operating systems are designed to run on embedded, resource constrained devices, often within cyber-physical systems (CPS). A defining characteristic ofRTOSs is that they are deterministic. Tasks are scheduled to run on fixed timelines within guaranteed execution windows. In Industry 4.0 applications for example, sensors must receive and process inputs within a fixed schedule to ensure products are properly manufactured. This requires guaranteed service at fixed time periods. To accomplish this, RTOSs must conform to worst case execution times (WCETs) as …


Out-Of-Band Anomaly Detection For Real Time Operating Systems, Jeff K. Holifield Mar 2025

Out-Of-Band Anomaly Detection For Real Time Operating Systems, Jeff K. Holifield

Shelby Hall Graduate Research Forum Posters

Real Time Operating Systems (RTOS) are increasing present throughout the industrial, business, defense, and healthcare spaces. These lightweight and efficient operating systems are designed to run on embedded, resource constrained devices, often within cyber-physical systems (CFS). A defining characteristic of RTOSs is that they are deterministic. Tasks are scheduled to run on fixed timelines within guaranteed execution windows. To accomplish tasks on time, real time software must conform to worst case execution times (WCETs) as design parameters. WCET is the maximum time a particular task can take to complete. Exceeding the WCET could cause system failure and lead to damage, …


Analysis Of Forensic Techniques For Additive Manufacturing Devices, Daniel B. Miller, Brad Glisson, Mark Yampolskiy, J Todd Mcdonald Mar 2025

Analysis Of Forensic Techniques For Additive Manufacturing Devices, Daniel B. Miller, Brad Glisson, Mark Yampolskiy, J Todd Mcdonald

Shelby Hall Graduate Research Forum Posters

Additive Manufacturing (AM) is a set of newer computer-dependent production technologies that is seeing rapid adoption across a wide variety of industries, including defense, aerospace, automotive, and healthcare. With increased adoption comes an increased opportunity for misuse and abuse of such systems, which will lead to an increased need for Digital Forensic investigations into these platforms. This research forensically analyzes a number of AM devices to explore the options available for data acquisition as well as the impacts of hardware and software design choices on the analysis and investigation results. Hardware is investigated using Open-Source Intelligence (OSINT) sources to determine …


Polyglot File Detection For Forensics, Chase Stevens, Michael Black Mar 2025

Polyglot File Detection For Forensics, Chase Stevens, Michael Black

Shelby Hall Graduate Research Forum Posters

Polyglot files are problematic as payloads can be hidden inside them while simultaneously evading discovery by current forensic tools. Autopsy, one of the most used forensic tools in investigations, uses known signatures of file types (e.g., headers, trailers) to identify and recover files. Polyglot files are a unique case in which files are intentionally combined with other file types to make them appear benign while still containing malicious payloads. Polyglots are possible due to combinations being considered valid in both formats. Polyglot files inherently evade detection from signature-based forensic tools and malware scanners because the tools and malware scanners are …


Using Image-Based Representation For Network Intrusion Detection, Chakriya Suon, J. Todd Mcdonald Mar 2025

Using Image-Based Representation For Network Intrusion Detection, Chakriya Suon, J. Todd Mcdonald

Shelby Hall Graduate Research Forum Posters

The primary focus of our research is to evaluate the effectiveness of converting network traffic data, PCAPs, into image-based representations for anomaly-based network intrusion detection. We aim to analyze PCAPs to detect malware, or malicious software in hopes of creating a useful approach for anomaly detection against cyber threats including Advanced Persistent Threats (APTs). With the rise of cyber threats, cybersecurity continues to play a critical role in the ever-changing landscape of technology, by protecting and defending against threat agents. Our research will apply novel machine learning (ML) techniques to detect potential malware transmitted over a network effectively. The overall …


Learning Without Labels: A Self-Supervised Learning Approach For Anomaly Detection In Control Systmes, Barbara Gladney Mar 2025

Learning Without Labels: A Self-Supervised Learning Approach For Anomaly Detection In Control Systmes, Barbara Gladney

Shelby Hall Graduate Research Forum Posters

Oil pipelines, water plant systems, and other critical infrastructure are managed and operated by industrial control systems (ICS). These systems safeguard the operations of critical infrastructures, requiring minimal disruption from cyberattacks or malfunctions. The use of anomaly detection methods in control systems (ICS) can reduce system interruptions. However, anomaly detection methods often require annotated data, which may not be available for the control system. Additionally, the datasets used for the control systems do not include sensor outputs and environmental data, resulting in a restricted view of the system. This research investigates how SSL models can be applied to different control …


Directing Sophisticated Cyberattacks On Public Water Infrastructure, Ayrton C. Purdy, Jordan Shropshire Mar 2025

Directing Sophisticated Cyberattacks On Public Water Infrastructure, Ayrton C. Purdy, Jordan Shropshire

Shelby Hall Graduate Research Forum Posters

In recent years there has been an increasing number of cyberattacks on public water generation and distribution systems. Advanced persistent attackers could usurp sensor and control systems to contaminate public drinking water. In order to conceal their malicious activity, they can manipulate sensor data flows to give the appearance of normal activity. The compromised sensors would report normal chemical levels even though unsafe water is entering the distribution system. In response, this research proposes a multi-sensor, cross-validation approach to anomaly detection. The proposed approach is designed to detect sophisticated cyberattacks which are not easily detectable using traditional cyber tools. The …


Security Vulnerabilities Of A Field Programmable Gate Array, Kylie Arnett Mar 2025

Security Vulnerabilities Of A Field Programmable Gate Array, Kylie Arnett

Shelby Hall Graduate Research Forum Posters

The primary goal of this research is to understand and exploit the security vulnerabilities of a Field Programmable Gate Array (FPGA), at the bitstream level. This paper is working to successfully show that an FPGA can be altered via the bitstream file, and a Trojan can be inserted into the device. Once a Trojan is successfully inserted into the FPGA and activated through a certain input value, a Siamese Neural Network (SNN) will be used to test the effectiveness of Trojan detection. Followed by recording the successful flag rate to detect Trojans, which will be averaged to determine the accuracy …


Establishing A Framework For Evaluating Machine Learning Performance And Security Across Computational Ecosystems, Krista Stacey, Todd R. Andel Mar 2025

Establishing A Framework For Evaluating Machine Learning Performance And Security Across Computational Ecosystems, Krista Stacey, Todd R. Andel

Shelby Hall Graduate Research Forum Posters

The rapid evolution of computational ecosystems—ranging from embedded systems and cloud platforms to hybrid and quantum architectures—has introduced new challenges in deploying machine learning (ML) applications. While cloud computing offers scalability, it comes with increased latency and security risks, whereas edge computing, such as FPGA-based systems, provides real-time processing with constrained resources. Hybrid and quantum ecosystems further complicate decision-making, requiring careful trade-offs between performance and security. This research seeks to establish a framework for evaluating ML performance and security risks across these ecosystems, forming the foundation of the Computational Performance And Security System (COMPASS) decision-support tool. The study will systematically …


Development Of An Algorithm To Identify The Presence Of Luks-Encrypted Volumes On A Forensic Image Of A Drive, Nicholas Flynn, Michael Black Mar 2025

Development Of An Algorithm To Identify The Presence Of Luks-Encrypted Volumes On A Forensic Image Of A Drive, Nicholas Flynn, Michael Black

Shelby Hall Graduate Research Forum Posters

Current forensic tools struggle to effectively detect encrypted storage media. In recent years, there have been significant advancements, but a noticeable gap remains when it comes to identifying encrypted volumes from metadata alone. The goal of this research is to develop a novel algorithm that will identify the presence of volumes on a disk image which have been encrypted with the Linux Unified Key Setup (LUKS) encryption algorithm, in an effort to aid digital forensics investigations. Bad actors often use encryption as an anti-forensics tool to pose significant challenges to forensic investigators, especially when it is done within sections of …


Preserving Privacy In Senior Care At Home Monitoring Systems, Sam Russel, Ryan Benton, Amy Campbell, Scott Sittig Mar 2025

Preserving Privacy In Senior Care At Home Monitoring Systems, Sam Russel, Ryan Benton, Amy Campbell, Scott Sittig

Shelby Hall Graduate Research Forum Posters

Many seniors prefer to live at home which necessitates research into the application of technologies to provide a safer environment with less caregiver resources. However, the application of home health care (HHC) monitoring for seniors is still in an evolutionary stage. Present HHC systems are produced by private companies with general regulatory guidelines lacking specific care of the elderly. As such, each company that produces such a system claims to have better safety, privacy, and security that their competitors. A pressing issues is devising and applying a general framework for the application of technologies that delivers safety while preserving privacy. …


False Narratives, Real Consequences, Russell W. Cantrell, Matt Campbell Mar 2025

False Narratives, Real Consequences, Russell W. Cantrell, Matt Campbell

Shelby Hall Graduate Research Forum Posters

Social media is an increasingly significant tool in modern cyber warfare, capable of rapidly shaping public opinion. The swift dissemination of information complicates efforts to distinguish fact from fiction [1]. During public health crises, healthcare professionals use these platforms to share updates, yet their credible content must contend with false or deliberately misleading narratives [2]. This environment creates an opportunity for cyberattacks through social media influence campaigns [3]. While disinformation's role in political interference has been widely studied, its potential to destabilize healthcare remains largely unexplored. Prior research primarily focuses on how vaccine misinformation affects the general public [4]. This …


Detecting Sensor Data Manipulation, Ricky Green, Michael Black Mar 2025

Detecting Sensor Data Manipulation, Ricky Green, Michael Black

Shelby Hall Graduate Research Forum Posters

The integration of Information Technology (IT) and Operational Technology (OT) have made OT devices vulnerable to threats that have been successfully exploited with devastating results. Many modern techniques for hardening and securing enterprise IT systems are either incompatible with OT components in an Industrial Control System (ICS), reduce the efficiency of processes, or are prohibitively expensive to implement. Research in the area of ICS security focuses on a top-down approach, such as intrusion prevention by securing the perimeter of the network and hardening computer systems. This approach is useful in business IT systems, but full compatibility with OT components in …


Hybrid Deep Learning-Based Model For Eclipse Attack Detection On Ethereum Network, Dhanasak Bhumichai Dec 2024

Hybrid Deep Learning-Based Model For Eclipse Attack Detection On Ethereum Network, Dhanasak Bhumichai

Graduate Theses and Dissertations (2019 - present)

An eclipse attack is a significant cyber threat targeting the network layer of blockchain platforms. Detecting eclipse attacks is challenging for several reasons. First, there are no available datasets for training and testing models. Second, comprehensive studies identifying features to detect eclipse attacks are lacking. Additionally, the amount of eclipse network traffic is much smaller than that of normal network traffic, which leads to imbalanced samples. Moreover, the characteristics of eclipse network traffic closely resemble those of normal traffic, causing overlapping samples, which makes it challenging for traditional classifiers to learn how to identify eclipse attacks. To address these challenges, …


Side Channel Detection Of Pc Rootkits Using Nonlinear Phase Space, Rebecca Clark May 2024

Side Channel Detection Of Pc Rootkits Using Nonlinear Phase Space, Rebecca Clark

Poster Presentations

Cyberattacks are increasing in size and scope yearly, and the most effective and common means of attack is through malicious software executed on target devices of interest. Malware threats vary widely in terms of behavior and impact and, thus, effective methods of detection are constantly being sought from the academic research community to offset both volume and complexity. Rootkits are malware that represent a highly feared threat because they can change operating system integrity and alter otherwise normally functioning software. Although normal methods of detection that are based on signatures of known malware code are the standard line of defense, …


Side Channel Detection Of Pc Rootkits Using Nonlinear Phase Space, Rebecca Clark May 2024

Side Channel Detection Of Pc Rootkits Using Nonlinear Phase Space, Rebecca Clark

Honors Theses

Cyberattacks are increasing in size and scope yearly, and the most effective and common means of attack is through malicious software executed on target devices of interest. Malware threats vary widely in terms of behavior and impact and, thus, effective methods of detection are constantly being sought from the academic research community to offset both volume and complexity. Rootkits are malware that represent a highly feared threat because they can change operating system integrity and alter otherwise normally functioning software. Although normal methods of detection that are based on signatures of known malware code are the standard line of defense, …


Multi-Script Handwriting Identification By Fragmenting Strokes, Joshua Jude Thomas May 2024

Multi-Script Handwriting Identification By Fragmenting Strokes, Joshua Jude Thomas

Graduate Theses and Dissertations (2019 - present)

This study tests the effectiveness of Multi-Script Handwriting Identification after simplifying character strokes, by segmenting them into sub-parts. Character simplification is performed through splitting the character by branching-points and end-points, a process called stroke fragmentation in this study. The resulting sub-parts of the character are called stroke fragments and are evaluated individually to identify the writer. This process shares similarities with the concept of stroke decomposition in Optical Character Recognition which attempts to recognize characters through the writing strokes that make them up. The main idea of this study is that the characters of different writing‑scripts (English, Chinese, etc.) may …


Examining Outcomes Of Privacy Risk And Brand Trust On The Adoption Of Consumer Smart Devices, Marianne C. Loes May 2024

Examining Outcomes Of Privacy Risk And Brand Trust On The Adoption Of Consumer Smart Devices, Marianne C. Loes

Graduate Theses and Dissertations (2019 - present)

With more connected devices on earth than there are people, Internet of Things (IoT) is arguably just as innovative as the original introduction of the Internet. Though much of the research on technology acceptance and adoption has been conducted in organizational settings, the consumer use of IoT technologies, such as smart devices, is becoming a fertile field of research. The merger of these research streams is especially relevant from a societal perspective as smart devices become more embedded in consumer’s daily lives, particularly with the introduction of the “meta verse.” While original technology acceptance research is limited to two system-specific …


Ensuring Non-Repudiation In Long-Distance Constrained Devices, Ethan Blum Dec 2023

Ensuring Non-Repudiation In Long-Distance Constrained Devices, Ethan Blum

Honors Theses

Satellite communication is essential for the exploration and study of space. Satellites allow communications with many devices and systems residing in space and on the surface of celestial bodies from ground stations on Earth. However, with the rise of Ground Station as a Service (GsaaS), the ability to efficiently send action commands to distant satellites must ensure non-repudiation such that an attacker is unable to send malicious commands to distant satellites. Distant satellites are also constrained devices and rely on limited power, meaning security on these devices is minimal. Therefore, this study attempted to propose a novel algorithm to allow …


A Framework For Identifying Malware Threat Distribution On The Dark Web, Shelby Caldwell May 2023

A Framework For Identifying Malware Threat Distribution On The Dark Web, Shelby Caldwell

Graduate Theses and Dissertations (2019 - present)

The Dark Web is an ever-growing phenomenon that has not been deeply explored. It is no secret that in recent years, malware has become a powerful threat to technology users. The Dark Web is known for supporting anonymity and secure connections for private interactions. Over the years, it has become a rich environment for displaying trends, details, and indicators of emerging malware threats. Through the application of data science and open-source intelligence techniques, trends in malware distribution can be studied. In this research, we create a framework for helping identify malware threat distribution patterns. We examine this type of Dark …


Risk Assessment Framework For Evaluation Of Cybersecurity Threats And Vulnerabilities In Medical Devices, Maureen S. Van Devender May 2023

Risk Assessment Framework For Evaluation Of Cybersecurity Threats And Vulnerabilities In Medical Devices, Maureen S. Van Devender

Graduate Theses and Dissertations (2019 - present)

Medical devices are vulnerable to cybersecurity exploitation and, while they can provide improvements to clinical care, they can put healthcare organizations and their patients at risk of adverse impacts. Evidence has shown that the proliferation of devices on medical networks present cybersecurity challenges for healthcare organizations due to their lack of built-in cybersecurity controls and the inability for organizations to implement security controls on them. The negative impacts of cybersecurity exploitation in healthcare can include the loss of patient confidentiality, risk to patient safety, negative financial consequences for the organization, and loss of business reputation. Assessing the risk of vulnerabilities …


Detecting Selfish Mining Attacks Against A Blockchain Using Machine Learing, Matthew A. Peterson Dec 2022

Detecting Selfish Mining Attacks Against A Blockchain Using Machine Learing, Matthew A. Peterson

Graduate Theses and Dissertations (2019 - present)

Selfish mining is an attack against a blockchain where miners hide newly discovered blocks instead of publishing them to the rest of the network. Selfish mining has been a potential issue for blockchains since it was first discovered by Eyal and Sirer. It can be used by malicious miners to earn a disproportionate share of the mining rewards or in conjunction with other attacks to steal money from network users. Several of these attacks were launched in 2018, 2019, and 2020 with the attackers stealing as much as $18 Million. Developers made several different attempts to fix this issue, but …


Enhancing System Security Using Dynamic Hardware, Sydney L. Davis May 2022

Enhancing System Security Using Dynamic Hardware, Sydney L. Davis

Graduate Theses and Dissertations (2019 - present)

Within the ever-advancing field of computing, there is significant research into the many facets of cyber security. However, there is very little research to support the concept of using a Field Programmable Gate Array (FPGA) to increase the security of a system. While its most common use is to provide efficiency and speedup of processes, this research considers the use of an FPGA to mitigate vulnerabilities in both software and hardware. This paper proposes circuit variance within an FPGA as a method of Moving Target Defense (MTD) and investigates its effect on side-channels. We hypothesize that although the functionality of …