Open Access. Powered by Scholars. Published by Universities.®
- Discipline
-
- Business (71)
- Engineering (67)
- Social and Behavioral Sciences (52)
- Technology and Innovation (51)
- Management Information Systems (46)
-
- Computer Engineering (34)
- Education (32)
- Law (29)
- Artificial Intelligence and Robotics (22)
- Cybersecurity (21)
- Databases and Information Systems (20)
- OS and Networks (18)
- Electrical and Computer Engineering (17)
- Legal Studies (17)
- Privacy Law (17)
- Sociology (17)
- Forensic Science and Technology (16)
- Public Affairs, Public Policy and Public Administration (16)
- Digital Communications and Networking (15)
- Criminology (14)
- Criminology and Criminal Justice (14)
- Systems Architecture (13)
- Software Engineering (12)
- Defense and Security Studies (10)
- Medicine and Health Sciences (10)
- Data Science (8)
- Higher Education (8)
- Institution
-
- Kennesaw State University (50)
- Old Dominion University (34)
- City University of New York (CUNY) (26)
- Edith Cowan University (16)
- Maurer School of Law: Indiana University (16)
-
- Bridgewater State University (14)
- Singapore Management University (14)
- Embry-Riddle Aeronautical University (9)
- The University of Akron (9)
- University of Arkansas, Fayetteville (9)
- Air Force Institute of Technology (7)
- Wayne State University (7)
- United Arab Emirates University (6)
- GALILEO, University System of Georgia (5)
- Sacred Heart University (5)
- University of South Florida (5)
- California State University, San Bernardino (4)
- Louisiana State University (4)
- University of Arkansas Little Rock (4)
- Boise State University (3)
- Brigham Young University (3)
- LSU New Orleans (3)
- Nova Southeastern University (3)
- Purdue University (3)
- San Jose State University (3)
- St. Mary's University (3)
- University of Nebraska at Omaha (3)
- Clemson University (2)
- Dakota State University (2)
- Dartmouth College (2)
- Publication Year
- Publication
-
- Journal of Cybersecurity Education, Research and Practice (50)
- Open Educational Resources (22)
- Articles by Maurer Faculty (16)
- Theses and Dissertations (16)
- International Journal of Cybersecurity Intelligence & Cybercrime (13)
-
- Research Collection School Of Computing and Information Systems (9)
- Research outputs 2022 to 2026 (9)
- Williams Honors College, Honors Research Projects (9)
- Electrical & Computer Engineering Faculty Publications (8)
- Chemical Engineering and Materials Science Faculty Research Publications (7)
- Graduate Theses and Dissertations (6)
- Computer Science and Information Technology Grants Collections (5)
- Military Cyber Affairs (5)
- Publications (5)
- Electronic Theses, Projects, and Dissertations (4)
- LSU Master's Theses (4)
- Thesis/ Dissertation Defenses (4)
- CCAC Theses and Dissertations (3)
- Doctoral Dissertations and Master's Theses (3)
- Engineering Management & Systems Engineering Theses & Dissertations (3)
- Engineering Technology Faculty Publications (3)
- LSU New Orleans Theses and Dissertations (3)
- Research outputs 2014 to 2021 (3)
- School of Computer Science & Engineering Faculty Publications (3)
- VMASC Publications (3)
- All Student Theses and Dissertations (2)
- Australian Information Security Management Conference (2)
- CERIAS Technical Reports (2)
- Cyber Operations and Resilience Program Graduate Projects (2)
- Electrical & Computer Engineering and Computer Science Faculty Publications (2)
- Publication Type
- File Type
Articles 1 - 30 of 317
Full-Text Articles in Information Security
Semantic Shields: Automating Critical Infrastructure Defense Via Nlp-Driven Ransomware Profiling, Henry Trowbridge, Ian Zalcberg, Ryan Schley, Carter Yagemann, Natasha Phan, Srikar Maduposu, Vimal Buck
Semantic Shields: Automating Critical Infrastructure Defense Via Nlp-Driven Ransomware Profiling, Henry Trowbridge, Ian Zalcberg, Ryan Schley, Carter Yagemann, Natasha Phan, Srikar Maduposu, Vimal Buck
Military Cyber Affairs
Ransomware poses a growing threat to critical infrastructure, where successful attacks can disrupt operational technology (OT) and industrial control systems (ICS) with significant public safety consequences. However, attributing ransomware incidents to specific threat actors remains challenging due to ransomware-as-a-service ecosystems, actor rebranding, and the obfuscation of traditional indicators of compromise. This paper presents Semantic Shields, an NLP-driven attribution framework that leverages BERT-generated semantic embeddings and DBSCAN clustering to profile ransomware actors through the linguistic characteristics of ransom notes. Using a dataset of 295 ransom notes from 189 distinct threat groups, the framework achieved an 87.2% true positive clustering rate and …
Evaluating Machine Learning Models On Classification Of Novel Cyber Attacks In The Healthcare Domain, Promise Ehimen
Evaluating Machine Learning Models On Classification Of Novel Cyber Attacks In The Healthcare Domain, Promise Ehimen
Dissertations, Theses, and Projects
The increasing adoption of the Internet of Medical Things (IoMT) has improved healthcare delivery through connected medical devices while simultaneously expanding the cybersecurity risks facing healthcare organizations. Although machine learning based intrusion detection systems have demonstrated high detection accuracy, their ability to respond reliably to previously unseen cyberattacks remains uncertain. This study investigated how a Neural Network model and a Logistic Regression model classified novel cyberattacks within the IoMT environment. The Neural Network and Logistic Regression models were both trained and tested using a subset of the CICIoMT2024 benchmark dataset. The Neural Network achieved 99.82% test accuracy and a 0.94 …
Escaping The Cyberstorm: A Gamified Social Engineering Training Program, Noah Mcclanahan, Fadi Abu-Amara, Ali Khattab, Travis Jett, Andre Jackson
Escaping The Cyberstorm: A Gamified Social Engineering Training Program, Noah Mcclanahan, Fadi Abu-Amara, Ali Khattab, Travis Jett, Andre Jackson
Journal of Cybersecurity Education, Research and Practice
In this research work, we explored the effectiveness of gamification in improving cybersecurity awareness and training users on targeted social engineering attacks. Traditional cybersecurity training focuses on lectures and videos. These training methods may not actively engage employees, which reduces their knowledge retention and ability to recognize social engineering attacks. This lack of involvement is a concern, as social engineering continues to be one of the most prevalent attack methods faced by end-users. A gamified training program, Escaping the Cyberstorm, was developed using the Godot game engine to address key challenges in spreading cybersecurity awareness. The game includes real-life …
The Nist Artificial Intelligence Risk Management Framework: Adoption Challenges And Opportunities, Gillian Kennedy, Devin Patel, Humza Sheikh, Paul Wagner, Robert J. Honomichl
The Nist Artificial Intelligence Risk Management Framework: Adoption Challenges And Opportunities, Gillian Kennedy, Devin Patel, Humza Sheikh, Paul Wagner, Robert J. Honomichl
Journal of Cybersecurity Education, Research and Practice
Artificial intelligence (AI) is being adopted at an exponential rate to improve efficiency, decision-making, and cybersecurity, but its rapid integration introduces new and often poorly understood risks, including system errors, algorithmic bias, data privacy concerns, security vulnerabilities, and ethical dilemmas. This paper examines how organizations are implementing AI and evaluates the National Institute of Standards and Technology's AI Risk Management Framework (NIST AI RMF) as a tool for managing these risks. It reviews the benefits of AI adoption alongside the risks emerging from its use in business and broader society and examines the legal and ethical challenges organizations face when …
The Intersection Between Mindfulness And Cybersecurity: A Tool To Reduce Burnout And Improve Operational Effectiveness, Ivo Ricardo Dias Rosa
The Intersection Between Mindfulness And Cybersecurity: A Tool To Reduce Burnout And Improve Operational Effectiveness, Ivo Ricardo Dias Rosa
Journal of Cybersecurity Education, Research and Practice
Abstract: This paper offers a conceptual discussion of how mindfulness, understood as present moment awareness and deliberate attention regulation, can support cybersecurity professionals. Drawing on a narrative synthesis of workplace mindfulness, burnout, and high pressure decision making literature, we map plausible self regulation mechanisms to typical cyber defense tasks. Rather than presenting new empirical data, we develop an explanatory framework linking attention, reactivity, and recovery to decision quality, team communication, and adherence to incident playbooks. We focus on two connected outcomes: reducing burnout in roles with sustained cognitive and emotional demands, and improving operational effectiveness during critical situations such as …
Cyber-Ready Libraries, Building Digital Fortresses For Tomorrow, Adeyinka B. Tella, Oluchi Precious Ogbonna Dr, Adebola Aderemi Olatoye Mrs
Cyber-Ready Libraries, Building Digital Fortresses For Tomorrow, Adeyinka B. Tella, Oluchi Precious Ogbonna Dr, Adebola Aderemi Olatoye Mrs
Journal of Cybersecurity Education, Research and Practice
Background and Purpose: Libraries are evolving into highly networked information ecosystems in this age of fast digital transformation, which increases their susceptibility to cybersecurity risks. The study "Cyber-Ready Libraries: Building Digital Fortresses for Tomorrow" looks into how prepared libraries are to face cyber threats and considers methods for creating information systems that are safe, robust, and ready for the future. To safeguard digital assets and user data, the study aims to assess existing cybersecurity practices in library settings and offer a roadmap for combining technological, human, and governance solutions.
Design/Method: The existing literature, case studies, and policy frameworks pertaining …
2026 Cyber-Resilient Health Care Workshop Report, Malcolm Schongalla, Sergey Bratus
2026 Cyber-Resilient Health Care Workshop Report, Malcolm Schongalla, Sergey Bratus
Computer Science Technical Reports
The ISTS and the Dartmouth College Cybersecurity Cluster hosted the successful, inaugural Cyber-Resilient Health Care (CRHC) Workshop, March 5th & 6th, 2026. The event theme was "Innovation and Implementation," in response to the need to shift from reactive to proactive resiliency measures in the healthcare sector. Approximately 30 experts in clinical health care, cybersecurity, medical technology, policy, and innovation met to discuss solution-focused innovations addressing hard, cyber-related problems in health care. The agenda featured keynotes, an expert panel, innovation pitches, small group discussions, and a tabletop infrastructure disaster exercise. Participants gained insights into the obstacles and solutions involved in supporting …
The Security Of Llm-Generated Code, Christopher Brian Gonzalez Ayala
The Security Of Llm-Generated Code, Christopher Brian Gonzalez Ayala
Student Theses
The rapid adoption of Large Language Models (LLMs) in software development has transformed coding practices by enabling automated code generation, completion, and optimization. Despite these advantages, concerns persist regarding the security and reliability of LLM-generated code. This study presents a comprehensive evaluation of both the functional correctness and security of code produced by three prominent LLMs as of early 2026. A total of 4,800 code snippets were generated using 100 security-focused programming prompts derived from the OWASP Top 10:2025, translated across eight natural languages and two phrasing styles (literal and natural developer-oriented prompts). To assess performance, a multi-stage experimental framework …
Security Assessment Of A Machine Learning Approach To Generate And Validate Digital Signatures, Juan Ortiz Couder
Security Assessment Of A Machine Learning Approach To Generate And Validate Digital Signatures, Juan Ortiz Couder
Doctoral Dissertations and Master's Theses
Cybersecurity has become a global concern as cyber-attacks have become more common, and the cost of the damage caused by them continues to increase. There are several approaches to improve the cyber security of systems such as Digital Signatures, hashing, watermarking, and encryption among others. Digital Signatures are a cryptographic technique used to verify the authenticity and integrity of digital messages or documents. Digital Signatures use a combination of hashing and public-private key encryption to verify the authenticity and integrity of videos, just as they are used for documents and messages. As a result of using a combination of other …
Adopting Artificial Intelligence: Cross-Sector Analysis Of Ai Adoption Risks, Brandon Saari, Yona Berger, Yanett Munoz, Alex Agnick, Paul Wagner, Robert J. Honomichl
Adopting Artificial Intelligence: Cross-Sector Analysis Of Ai Adoption Risks, Brandon Saari, Yona Berger, Yanett Munoz, Alex Agnick, Paul Wagner, Robert J. Honomichl
Journal of Cybersecurity Education, Research and Practice
Artificial intelligence (AI) is rapidly being adopted across public and private sectors. This offers significant gains in efficiency, decision making, and access to information. At the same time, AI introduces complex risks related to cybersecurity, privacy, bias, transparency, accountability, and equity that existing governance and security frameworks do not fully address. This paper presents a cross-sector literature review and comparative analysis of AI adoption risks and mitigation strategies across four critical domains: the federal government, libraries, K–12 education, and healthcare. Drawing on peer-reviewed research, institutional frameworks, and policy guidance, the study identifies sector-specific challenges alongside shared systemic gaps, including insufficient …
Bridging The Cybersecurity Education Gap: The Role Of Open Educational Resources In Supporting Rural Cybersecurity Programs, Brittni Hardie
Bridging The Cybersecurity Education Gap: The Role Of Open Educational Resources In Supporting Rural Cybersecurity Programs, Brittni Hardie
Theses and Dissertations
This study examines the intersection of cybersecurity education, open educational resources (OER), and rural higher education through a systematic review of current literature and an exploratory survey of rural community college faculty. The purpose of this research, consistent with the approved Institutional Review Board (IRB) protocol, was to understand how OER can be leveraged to design and deliver an affordable, high-quality System Security course within a rural higher-education environment. As cybersecurity workforce shortages continue to grow across the United States, rural institutions face persistent challenges in sustaining high-quality programs due to financial constraints, limited faculty capacity, and rapidly evolving curriculum …
A.I.R.E. - Ai-Assisted Reverse Engineering, Laurene Robinson
A.I.R.E. - Ai-Assisted Reverse Engineering, Laurene Robinson
Posters - 2026
Reverse engineering plays a vital role in cybersecurity by helping analysts examine unknown binaries, investigate malware, identify vulnerabilities, and better protect sensitive systems. However, once a program is compiled and stripped, the meaningful names that describe its behavior are lost, leaving behind generic function labels like FUN_00401a30. Analysts must then manually interpret decompiled code, trace call chains, and infer program behavior function by function, which is slow and mentally demanding on large binaries. To address this challenge, this project introduces A.I.R.E., a local Ghidra extension that extracts contextual evidence from stripped functions and uses a locally hosted language model to …
Federated Retrieval-Augmented Generation For Cybersecurity In Resource-Constrained Iot And Edge Environments: A Deployment-Oriented Scoping Review, Hangyu He, Yuan, Kai Wu, Wei Ni
Federated Retrieval-Augmented Generation For Cybersecurity In Resource-Constrained Iot And Edge Environments: A Deployment-Oriented Scoping Review, Hangyu He, Yuan, Kai Wu, Wei Ni
Research outputs 2022 to 2026
Cybersecurity operations in IoT and edge environments require fast, evidence-grounded decisions under strict resource and trust constraints. While large language models can support triage and incident analysis, their parametric knowledge may be outdated and prone to hallucination. Retrieval-augmented generation (RAG) improves grounding by conditioning responses on retrieved evidence, but also introduces new risks such as knowledge-base poisoning, indirect prompt injection, and embedding leakage. Federated learning enables collaborative adaptation without centralizing sensitive data, motivating federated RAG (FedRAG) architectures for distributed cybersecurity deployments. This study presents a deployment-oriented scoping review of FedRAG for cybersecurity. The review follows PRISMA-ScR reporting guidance and synthesizes …
Cyber Science Education Meets Healthcare Technology, Angela Spencer
Cyber Science Education Meets Healthcare Technology, Angela Spencer
Journal of Cybersecurity Education, Research and Practice
The research investigates how cyber science education combines with healthcare technology during the digital age to resolve a fundamental research gap in these two advancing areas. A combined approach utilizing extensive surveys and detailed interviews evaluates the functionality of learning platforms as well as cybersecurity measures and potential uses of emerging virtual reality (VR) and augmented reality (AR) tools to improve both educational and clinical environments. The research document describes its methodologies thoroughly while. The research documents multiple quantitative and qualitative results before performing its analysis, which leads to strategy development for digit. The researchers worked to find ways that …
Analyzing Network Traffic And Data Exfiltration Via Smb In Post-Vm Escape Scenarios, Noah M. Disanza
Analyzing Network Traffic And Data Exfiltration Via Smb In Post-Vm Escape Scenarios, Noah M. Disanza
Williams Honors College, Honors Research Projects
Virtual machines (VMs) play a crucial role in modern IT infrastructure environments by providing isolation and enhanced security, among other things, for both personal and corporate systems. VMs are heavily rely upon to safely test malware, manage infrastructure, and reduce risk to host systems. This reliance is so substantial that the idea of reducing risk to the host system is believed to be erasing risk entirely. However, this mindset has shown to be challenged time and time again by the emergence of exploits known as virtual machine escapes. These exploits allow malicious actors to break out of the virtualized environment …
Secure The Database: A Red Team, Blue Team Analysis Of Sql Injection, Andrew N. Miller
Secure The Database: A Red Team, Blue Team Analysis Of Sql Injection, Andrew N. Miller
Williams Honors College, Honors Research Projects
SQL injection (SQLi) attacks are a type of cyberattack that seeks to bypass website logins and gain entry to sensitive information. These pose a significant danger to organizations holding confidential user information. Personally Identifiable Information (PII) like physical addresses, emails, phone numbers, social security numbers are at risk of theft. Login credentials like usernames, passwords, and other sensitive information like financial details and social security numbers are also exposed through SQLi attacks. SQLi attacks harm the confidentiality, integrity, and availability of people’s identity. Additionally, data breaches that reach public battention harm the reputation and trust of organizations. SQLi attacks rank …
Gem-Can: A Real-World Dataset Of Can-Bus Attack Scenarios On An Autonomous Vehicle For Intrusion-Detection Research, Mahsa Tavasoli, Abdolhossein Sarrafzadeh, Ali Karimoddini, Tienake Phuapaiboon, Milad Khaleghi, Daniel Tobias
Gem-Can: A Real-World Dataset Of Can-Bus Attack Scenarios On An Autonomous Vehicle For Intrusion-Detection Research, Mahsa Tavasoli, Abdolhossein Sarrafzadeh, Ali Karimoddini, Tienake Phuapaiboon, Milad Khaleghi, Daniel Tobias
Electrical & Computer Engineering Faculty Publications
This paper presents GEM-CAN, a labelled Controller Area Network (CAN) dataset captured from an autonomous GEM e6 platform under both normal operation and controlled cyber-attack conditions.
The dataset contains ∼143 K frames comprising (i) ∼ nominal autonomous operation (∼100k messages), (ii) DoS floods using arbitration ID 0 × 00000000 (∼41 K messages), and (iii) data-tampering injections that reuse legitimate IDs for brake and steering-lock (∼1.3 K messages). Each record includes timestamp, arbitration ID (11/29-bit), DLC, eight payload bytes, and a Normal/Attack label. A companion metadata file enumerates attack windows, PCAN bus-load traces, bitrate, and test conditions. Data were collected with …
A Proposed Tort To Address The Negligent Enablement Of Cloud Data Breaches, Michael L. Rustad
A Proposed Tort To Address The Negligent Enablement Of Cloud Data Breaches, Michael L. Rustad
American University Business Law Review
[INTRODUCTION] The term “cloud computing” means the remote storage of software applications, tools, and data accessed through the internet. Cloud customers enter into subscription agreements with providers who give 24/7, on-demand, as-needed access to software, storage, and networking services owned and managed by providers through a web browser. “Many businesses are transitioning to the cloud for data storage, remote work, and collaboration.” Cloud providers operate their software as a software-as-a-service (“SaaS”) model, under which customers pay a subscription fee to access the software. Netflix and Amazon Prime Video are examples of subscription services that deliver television programs and videos through …
Cybercamp: An Experience Report On The Transformations Of An Intensive Cybersecurity Summer Camp For High School Students, Jose R. Ortiz Ubarri, Kariluz Dávila Diaz Ph.D., Rafael A. Arce Nazario
Cybercamp: An Experience Report On The Transformations Of An Intensive Cybersecurity Summer Camp For High School Students, Jose R. Ortiz Ubarri, Kariluz Dávila Diaz Ph.D., Rafael A. Arce Nazario
Journal of Cybersecurity Education, Research and Practice
The Cybercamp is a Cybersecurity summer camp for high school students that has been held for the last nine years at a Hispanic Serving Institution. Since its inception in 2016 the Cybercamp has undergone several transformations in response to budget reductions and the COVID pandemic, to finally become its current version: a rich, hands-on learning experience that we believe is easily replicable even in resource-challenged environments.
In this paper, we document the transformations of the Cybercamp and discuss the developed curriculum and materials in hopes that others will reuse, adapt, and improve upon them. In the Cybercamp, we apply active …
Creating An Iot User Centric Security And Privacy Label, Luke Joseph Gleba
Creating An Iot User Centric Security And Privacy Label, Luke Joseph Gleba
Theses and Dissertations
Concerns for cybersecurity awareness and training in the public have been rising at astronomical rates over the past few years. People globally have entered a critical intersection with computers. Computers are being used in everyday life, and users do not have an easy way to understand their own cyber risk. Consumers deserve to know how secure their new Internet of Things (IoT) system is in a quick, efficient way before they purchase the device and while they own it. The following research looks to improve on ideas for the criteria and the development of a security label. Few prototypes currently …
Enhancing It Security Management With An Advanced Intrusion Detection System Based On Machine Learning And Explainable Ai, Hanan Alzubaidi
Enhancing It Security Management With An Advanced Intrusion Detection System Based On Machine Learning And Explainable Ai, Hanan Alzubaidi
Thesis/ Dissertation Defenses
The fast-changing landscape of cyber threats continues to challenge the development of strong and reliable security frameworks for IT management systems. Traditional defense tools, such as Intrusion Detection Systems (IDS), often struggle to keep up with today’s advanced and constantly evolving attack methods. This thesis explores these ongoing challenges and looks into how machine learning (ML) and explainable artificial intelligence (XAI) can be used to boost IDS performance.
The research outlines a smart, adaptive system that combines supervised learning for real-time threat detection, unsupervised models for anomaly analysis, and proactive defense strategies. The goal is to improve detection accuracy, cut …
Enhancing Cloud-Based Threat Detection Through Explainable Ai: A Comparative Study Of Machine Learning And Xai-Integrated Models, Amna Al Ghaithi
Enhancing Cloud-Based Threat Detection Through Explainable Ai: A Comparative Study Of Machine Learning And Xai-Integrated Models, Amna Al Ghaithi
Thesis/ Dissertation Defenses
The rapid adoption of cloud computing brought about serious security concerns, as cloud infrastructures are constantly exposed to cybersecurity threats such as malware and Distributed Denial of Service attacks. Also, on the other hand, current security methodologies have limitations in identifying new threats accurately. Apart from the fact that ML models are highly efficient in detecting attacks, as ‘black boxes,’ they lack interpretability, impacting trust and adoption within vital cloud environments. This research aims to solve this issue by integrating Explainable Artificial Intelligence practices to help enhance both the accuracy and interpretability of AI systems intended to detect threats in …
Higher Education Cybersecurity: A Vulnerability Assessment Of The U.S. South’S Institutional Websites, Zachary W. Taylor, Vivi Vo
Higher Education Cybersecurity: A Vulnerability Assessment Of The U.S. South’S Institutional Websites, Zachary W. Taylor, Vivi Vo
Journal of Cybersecurity Education, Research and Practice
As technology continues to advance, it is critical to understand how higher education institutions protect digital information of their stakeholders including students, faculty, and staff through cybersecurity measures. Although conceptual research has articulated various aspects of cybersecurity, no empirical research has explored the cybersecurity of higher education (.edu) websites through a vulnerability scan of these websites via an open PortScan and analysis. To fill a critical gap in the literature, this study conducted a vulnerability scan and open PortScan and analysis of all higher education websites in three of the lowest-income states in the United States: Louisiana (n=112), Mississippi (n=52), …
Deepfakes On Trial: Developing A High-Accuracy, Court-Admissible Ai Pipeline For Deepfake Detection In Corporate Fraud Litigation, Aiden J. Green
Deepfakes On Trial: Developing A High-Accuracy, Court-Admissible Ai Pipeline For Deepfake Detection In Corporate Fraud Litigation, Aiden J. Green
Honors College Theses
As deepfake technology advances, cybercriminals are increasingly using AI-generated videos and audios to impersonate executives and carry out sophisticated CEO fraud schemes. These synthetic forgeries target human trust and corporate communication systems, creating an urgent need for forensic tools capable of authenticating digital evidence with legal accuracy. This thesis presents a forensic-grade AI deepfake detection pipeline designed for this purpose, emphasizing courtroom admissibility, reproducibility, and evidentiary integrity. Built entirely with free, opensource tools, the framework combines metadata analysis, AI-powered spectrogram analysis, neural artifact detection, and facial manipulation recognition into a transparent workflow that accurately identifies synthetic media. It was trained …
How Do Simulated Phishing Attacks Impact Cybersecurity Awareness And The Enhancement Of Security Protocols Among Faculty Members In A University Environment?, Navnoor Sandhu
University Honors Program Senior Projects
Phishing attacks are cyber threats where attackers deceive users into performing actions that compromise the user’s security and benefit the attacker. In 2024 alone, phishing attacks have resulted in estimated damages of around 800 million dollars [1]. In response, many institutions have implemented internal simulated phishing attacks to enhance their employees' cybersecurity awareness. This training exercise has been proven beneficial in improving cybersecurity awareness on an enterprise scale[4]. This study aims to evaluate the potential effectiveness of a simulated phishing attack within a university setting, which is a relatively unseen practice thus far. Universities, like other secure organizations, store sensitive …
Systemization Of Knowledge (Sok): Goals, Coverage, And Evaluation In Cybersecurity And Privacy Games, Yue Huang, Marthie Grobler, Lauren S. Ferro, Georgia Psaroulis, Sanchari Das, Jing Wei, Helge Janicke
Systemization Of Knowledge (Sok): Goals, Coverage, And Evaluation In Cybersecurity And Privacy Games, Yue Huang, Marthie Grobler, Lauren S. Ferro, Georgia Psaroulis, Sanchari Das, Jing Wei, Helge Janicke
Research outputs 2022 to 2026
This paper systematized existing knowledge on cybersecurity and privacy game-based approaches, exploring their goals, scope, and evaluation methods. Our review of 93 academic papers revealed that these approaches serve multiple purposes and target diverse player types. We identified 11 key aspects of cybersecurity and privacy that these approaches addressed, such as threats, defensive strategies, and data privacy. Additionally, we analyzed the effectiveness evaluation methods of these approaches, emphasizing the connections between evaluation techniques, types of data used, and their alignment with the approaches' goals. We also summarized the aspects of user experience evaluated in the literature and the types of …
The Impact Of Ai Use In Programming Courses On Critical Thinking Skills, Christian Jay St Francis Clarke, Abdullah Konak
The Impact Of Ai Use In Programming Courses On Critical Thinking Skills, Christian Jay St Francis Clarke, Abdullah Konak
Journal of Cybersecurity Education, Research and Practice
Proficiency in computer programming extends far beyond memorizing syntax; it depends on the cultivation of critical thinking. Computer programming requires multiple interconnected competencies, including systematic problem analysis, algorithmic reasoning, mastery of programming languages, debugging capabilities, a comprehensive understanding of software development methodologies, rigorous testing practices, and systematic troubleshooting approaches. These skills are also essential for cybersecurity experts; cybersecurity programs require several programming courses to enhance students’ technical and critical thinking skills. Generative AI (GenAI) technologies have fundamentally changed the process of developing applications and approaches to teaching coding. The growing use of GenAI technologies by students in writing computer code …
Need Of Paradigm Shift In Cybersecurity Implementation For Small And Medium Enterprises (Smes), Shekhar Pawar, Hemant Palivela
Need Of Paradigm Shift In Cybersecurity Implementation For Small And Medium Enterprises (Smes), Shekhar Pawar, Hemant Palivela
International Journal of Cybersecurity Intelligence & Cybercrime
The increasing digitization of small and medium enterprises (SMEs) has significantly increased their attack surface, creating opportunities for various cyberthreats. In the global market, there are various cybersecurity standards and frameworks available, but there are still many cyber news stories from each corner of the world talking about increasing sophisticated cyber-attacks among organizations. According to recent studies, one out of five cyberattacks is targeting SMEs. Even though SMEs are relatively smaller as individuals, they are responsible for maximum contribution towards the betterment of the global economy, including the highest role in GDP and various employment opportunities. As compared to large …
The Urgency Of Instituting Systemic Cybersecurity Curriculum Within Stem At Secondary Educational Levels In Preparation For Postsecondary Institutions., Robert Spencer
Journal of Cybersecurity Education, Research and Practice
Over the last 20 years, many secondary institutions have made advances developing curriculum defined as “STEM (Science, Engineering and Mathematics)” in order to ensure secondary students are eligible to apply as well excel in technology degree programs at the college and university levels. Although various initiatives exist, there are studies however, which allude to a great possibility that there will be a lack of cybersecurity professionals filling present day and anticipated future positions. Despite a large number of federal and educational enhancements there is need for additional research regarding instituting overall systemic processes and curriculum which supports secondary student transition …
Managing Cybersecurity In Local Governments: 2022, Donald F. Norris Phd, Laura K. Mateczun Jd
Managing Cybersecurity In Local Governments: 2022, Donald F. Norris Phd, Laura K. Mateczun Jd
Journal of Cybersecurity Education, Research and Practice
This paper, based on data from our second nationwide survey of cybersecurity among local or grassroots governments in the U.S., examines how these governments manage this important function. As we have shown elsewhere, cybersecurity among local governments is increasingly important because these governments are under constant or nearly constant cyberattack. Due to the frequency of cyberattacks, as well as the probability that at least some attacks will succeed and cause damage to local government information systems, these governments have great responsibility to protect their information assets. This, in turn, requires these governments to manage cybersecurity effectively, something our data show …