Open Access. Powered by Scholars. Published by Universities.®

Information Security Commons™

Open Access. Powered by Scholars. Published by Universities.®

Cybersecurity

Discipline
Institution
Publication Year
Publication
Publication Type
File Type

Articles 31 - 60 of 317

Full-Text Articles in Information Security

A Survey-Based Quantitative Analysis Of Stress Factors And Their Impacts Among Cybersecurity Professionals, Sunil Arora, John D. Hastings Jan 2025

A Survey-Based Quantitative Analysis Of Stress Factors And Their Impacts Among Cybersecurity Professionals, Sunil Arora, John D. Hastings

Research & Publications

This study investigates the prevalence and underlying causes of work-related stress and burnout among cybersecurity professionals using a quantitative survey approach guided by the Job Demands-Resources model. Analysis of responses from 50 cybersecurity practitioners reveals an alarming reality: 44% report experiencing severe work-related stress and burnout, while an additional 28% are uncertain about their condition. The demanding nature of cybersecurity roles, unrealistic expectations, and unsupportive organizational cultures emerge as primary factors fueling this crisis. Notably, 66% of respondents perceive cybersecurity jobs as more stressful than other IT positions, with 84% facing additional challenges due to the pandemic and recent high-profile …


Scalable Approaches Towards Characterizing And Mitigating Emerging Phishing Scams, Sayak Saha Roy Jan 2025

Scalable Approaches Towards Characterizing And Mitigating Emerging Phishing Scams, Sayak Saha Roy

Computer Science and Engineering Dissertations - Archive

Phishing scams are among the most dangerous and persistent forms of cybercrime, leveraging social engineering to exploit human behavior and obtain sensitive information, leading to widespread identity theft and data breaches. In the past year, these attacks have resulted in financial losses exceeding $10 billion in the United States alone. As phishing scams continue to evolve, they have not only expanded in scale but also grown in sophistication, spreading rapidly across social media and employing adversarial techniques to evade detection by anti-scam tools. The situation is further exacerbated by the availability of advanced phishing kits, and more recently, generative AI, …


Insights In Cybersecurity Of A Smart Campus - A Review, Mircea Ţălu Jan 2025

Insights In Cybersecurity Of A Smart Campus - A Review, Mircea Ţălu

Journal of Cybersecurity Education, Research and Practice

The profound impact of the Internet of Things (IoT) on various fronts, is driven by technological advancements, the ubiquitous spread of information, and the emergence of transformative events. IoT presents a diverse array of possibilities within university environments, fostering a more connected and enhanced educational experience. This research undertakes a comprehensive review of existing literature to provide context to the IoT and underscore its crucial significance in the realm of smart campuses. Additionally, the paper explores the intricate connections between IoT and key concepts such as cybersecurity and wireless sensor networks to present a holistic perspective. It delves into the …


Signal-Based Error Handling: Case Study Using The Bathymetric Attributed Grid Library, Anthony R. Papetti Jan 2025

Signal-Based Error Handling: Case Study Using The Bathymetric Attributed Grid Library, Anthony R. Papetti

Honors Theses and Capstones

No abstract provided.


Silent Sabotage: Identifying And Preventing Cyber Attacks From Inside Actors, Autumn Groen Jan 2025

Silent Sabotage: Identifying And Preventing Cyber Attacks From Inside Actors, Autumn Groen

Williams Honors College, Honors Research Projects

Cyber-attacks are becoming increasingly common and damaging as technology advances each year. Many businesses cannot afford the latest security technologies, and even with the highest security measures, there can still be room for employee error or insider threats that are not taken into account. It is crucial to keep these factors in mind when securing a business network of any size or financial standing.This project will aim to simulate a business environment by first building a small network with three routers and a switch, and implementing some of the common best practices for network hardening from credible organizations like NIST …


Cyberattacks On Port Infrastructures: A Decade Of Trends, Incidents, And Mitigation Strategies (2011-2024), Minodora Badea, Olga Bucovetchi, Adrian V. Gheorghe, Gabriel Raicu Jan 2025

Cyberattacks On Port Infrastructures: A Decade Of Trends, Incidents, And Mitigation Strategies (2011-2024), Minodora Badea, Olga Bucovetchi, Adrian V. Gheorghe, Gabriel Raicu

Engineering Management & Systems Engineering Faculty Publications

Port infrastructures are critical to global trade, handling over 80% of the world's cargo by volume. However, their increasing reliance on digital technologies has exposed them to a wide range of cyber threats. This paper provides a comprehensive analysis of cyberattacks targeting port infrastructures from 2011 to the present. We examine the types of attacks, geographical distribution, notable incidents, and underlying vulnerabilities. Additionally, we discuss mitigation strategies and future directions for enhancing cybersecurity in the maritime sector. Our findings highlight the urgent need for robust regulatory frameworks, advanced technological solutions, and collaborative efforts to safeguard critical port operations.


Digital Twin And Cybersecurity In Additive Manufacturing, Lidong Wang Dec 2024

Digital Twin And Cybersecurity In Additive Manufacturing, Lidong Wang

Journal of Cybersecurity Education, Research and Practice

Additive manufacturing (AM) has been applied to automotive, aerospace, medical sectors, etc., but there are still challenges such as parts’ porosity, cracks, surface roughness, intrinsic anisotropy, and residual stress because of the high level of thermal gradient. It is significant to conduct the modeling and simulation of the AM process and achieve quality products. Digital Twin (DT) can help AM with forecasting defects/errors through simulation and real-time process monitoring. DT is a concept of Industry 4.0, and its digital structure reflects the real-time behaviors of a cyber-physical or physical system. This paper introduces the progress of DT applications in AM, …


Enhancing Cybersecurity Strategies Through Automated Cti Extraction, Risk Prioritization, And Privacy-Conscious Information Sharing, Spencer Rian Massengale Dec 2024

Enhancing Cybersecurity Strategies Through Automated Cti Extraction, Risk Prioritization, And Privacy-Conscious Information Sharing, Spencer Rian Massengale

Theses and Dissertations

Cybersecurity operations require the ability to collect and analyze large amounts of cyber threat intelligence (CTI) to assess risks and formulate defensive strategies against emerging threats. This task has become increasingly complex due to the rapid evolution of cyber threats and the growing volume of unstructured, natural-language CTI sources. The scale of data and analysis needed to utilize CTI effectively far exceeds humans' manual capacity, especially for organizations with limited resources. This research focuses on leveraging Large Language Models (LLMs) and machine learning techniques to enhance CTI extraction, risk assessment, and data sharing. We utilized LLMs to automate the extraction …


Enhancing Password Security And Memorability Using Machine Learning And Linguistic Patterns, Jared Wise Dec 2024

Enhancing Password Security And Memorability Using Machine Learning And Linguistic Patterns, Jared Wise

LSU New Orleans Theses and Dissertations

In the digital age, text-based passwords remain a primary method for securing online accounts. Yet, users frequently face a dilemma between creating passwords that are easy to remember and sufficiently secure against cyberattacks. This research introduces an approach to password generation that bridges this gap by utilizing linguistic patterns, particularly song lyrics, to develop highly secure and naturally memorable passwords. Using large lyric datasets gained from web scrapes from popular song lyric websites (AZ Lyrics, Genius), features are extracted from a corpus of over 5 million lyrics using sentence structure and natural language processing in a novel way. In using …


The Effects Of Covid-19 Lockdowns On Cybersecurity, Natalie Sanders Dec 2024

The Effects Of Covid-19 Lockdowns On Cybersecurity, Natalie Sanders

Electronic Theses, Projects, and Dissertations

The COVID-19 pandemic and subsequent lockdowns forced many Americans to quickly adapt to working from home, many of which had never done so in the past. In addition, organizations were forced to modify security policies and protocols to allow for remote access to sensitive information. The rapid change in security policies as well as the sudden growth of remote access during the pandemic presented a broader landscape for cyber criminals to attack. In this report, we review the number and type of cyberattacks reported from two (2) years before the pandemic through two (2) years after (1998 through 2023), to …


Happy Hours, Not Office Hours: Socially Engaging Cybersecurity Students In A Large Online Graduate Course, James T. Mccafferty Oct 2024

Happy Hours, Not Office Hours: Socially Engaging Cybersecurity Students In A Large Online Graduate Course, James T. Mccafferty

Journal of Cybersecurity Education, Research and Practice

Engagement is a critical part of student learning and student success. This is especially true in online classes where students have less interaction with their classmates and instructors when compared to traditional face-to-face courses. Research on engagement has shown that when students are meaningfully engaged it can increase student satisfaction and it may also increase levels of academic achievement, including grades earned and degree progression (e.g. Wong et al., 2024). This paper focuses on social engagement in a graduate cybersecurity program that uses large, expandable online courses as described by Whitman and Mattord (2023). Large online graduate classes (i.e., more …


Transforming Information Systems Management: A Reference Model For Digital Engineering Integration, John Bonar, John Hastings Oct 2024

Transforming Information Systems Management: A Reference Model For Digital Engineering Integration, John Bonar, John Hastings

Research & Publications

Digital engineering practices offer significant yet underutilized potential for improving information assurance and system lifecycle management. This paper examines how capabilities like model-based engineering, digital threads, and integrated product lifecycles can address gaps in prevailing frameworks. A reference model demonstrates applying digital engineering techniques to a reference information system, exhibiting enhanced traceability, risk visibility, accuracy, and integration. The model links strategic needs to requirements and architecture while reusing authoritative elements across views. Analysis of the model shows digital engineering closes gaps in compliance, monitoring, change management, and risk assessment. Findings indicate purposeful digital engineering adoption could transform cybersecurity, operations, service …


How State Universities Are Addressing The Shortage Of Cybersecurity Professionals In The United States, Gary Harris Sep 2024

How State Universities Are Addressing The Shortage Of Cybersecurity Professionals In The United States, Gary Harris

Journal of Cybersecurity Education, Research and Practice

Cybersecurity threats have been a serious and growing problem for decades. In addition, a severe shortage of cybersecurity professionals has been proliferating for nearly as long. These problems exist in the United States and globally and are well documented in literature. This study examined what state universities are doing to help address the shortage of cybersecurity professionals since higher education institutions are a primary source to the workforce pipeline. It is suggested that the number of cybersecurity professionals entering the workforce is related to the number of available programs. Thus increasing the number of programs will increase the number of …


Cyber Victimization In The Healthcare Industry: Analyzing Offender Motivations And Target Characteristics Through Routine Activities Theory (Rat) And Cyber-Routine Activities Theory (Cyber-Rat), Yashna Praveen, Mijin Kim, Kyung-Shick Choi Sep 2024

Cyber Victimization In The Healthcare Industry: Analyzing Offender Motivations And Target Characteristics Through Routine Activities Theory (Rat) And Cyber-Routine Activities Theory (Cyber-Rat), Yashna Praveen, Mijin Kim, Kyung-Shick Choi

International Journal of Cybersecurity Intelligence & Cybercrime

The integration of computer technology in healthcare has revolutionized patient care but has also introduced significant cyber risks. Despite the healthcare sector being a primary target for cyber-attacks, research on the dynamics of these threats and practical solutions remains limited. Understanding the complexities of cyberattacks in this sector is critical, as the impact extends beyond financial losses to directly affect patient care and the protection of sensitive information. This paper applies Routine Activities Theory (RAT) and Cyber Routine Activities Theory (C-RAT) to analyze high-tech cyber victimization case studies in healthcare. The analysis explores the motivations behind these attacks and identifies …


Designing Cybersecurity Escape Rooms: A Gamified Approach To Undergraduate Learning, Thitima Srivatanakul Sep 2024

Designing Cybersecurity Escape Rooms: A Gamified Approach To Undergraduate Learning, Thitima Srivatanakul

Journal of Cybersecurity Education, Research and Practice

Gamification, including game-based learning (GBL), is a widely recognized pedagogical approach used for imparting and reinforcing cybersecurity knowledge and skills to learners. One innovative form of GBL gaining popularity across various educational levels, from secondary schools to professional development, is escape room-style education. This study is centered on the development and design of escape room activities tailored for teaching cybersecurity concepts, with a particular focus on web and software security, to undergraduate students at York College. The primary objectives of this research are twofold: firstly, to evaluate the effectiveness of educational escape room activities in reinforcing cybersecurity concepts taught in …


Cyberattack Detection And Handling For Neural Network-Approximated Economic Model Predictive Control, Jihan Abou Halloun, Helen E. Durand Sep 2024

Cyberattack Detection And Handling For Neural Network-Approximated Economic Model Predictive Control, Jihan Abou Halloun, Helen E. Durand

Chemical Engineering and Materials Science Faculty Research Publications

Cyberattacks on control systems can create unprofitable and unsafe operating conditions. To enhance safety and attack resiliency of control systems, cyberattack detection strategies can be developed. Prior work in our group has sought to develop cyberattack detection strategies that are integrated with an advanced control formulation known as Lyapunov-based economic model predictive control (LEMPC), in the sense that the controller properties can be used to analyze closed-loop stability in the presence or absence of undetected attacks. In this work, we consider neural network-approximated control laws, concepts for mitigating cyberattacks on such control laws, and how these ideas elucidate concepts in …


The Impact Of Managerial Myopia On Cybersecurity: Evidence From Data Breaches, Wen Chen, Xing Li, Haibin Wu, Liandong Zhang Sep 2024

The Impact Of Managerial Myopia On Cybersecurity: Evidence From Data Breaches, Wen Chen, Xing Li, Haibin Wu, Liandong Zhang

Research Collection School Of Accountancy

Using a sample of U.S. firms for the period 2005–2017, we provide evidence that managerial myopic actions contribute to corporate cybersecurity risk. Specifically, we show that abnormal cuts in discretionary expenditures, our proxy for managerial myopia, are positively associated with the likelihood of data breaches. The association is largely driven by firms that appear to cut discretionary expenditures to meet short-term earnings targets. In addition, the association is stronger for firms with greater short-term equity incentives, higher earnings response coefficients, low levels of institutional block ownership, or large market shares. Finally, firms appear to increase discretionary expenditures upon the announcement …


Enhancing Cybersecurity For Unmanned Systems: A Comprehensive Literature Review, Jonathan Gabriel Mardoyan Aug 2024

Enhancing Cybersecurity For Unmanned Systems: A Comprehensive Literature Review, Jonathan Gabriel Mardoyan

Electronic Theses, Projects, and Dissertations

This culminating experience project addresses the pressing cybersecurity challenges encountered by unmanned autonomous vehicles. The research provides a comprehensive literature review on how hybrid encryption techniques can improve the security of its communication systems. The chosen research questions guiding this study are: (Q1) How can we enhance cybersecurity measures to safeguard the communication and transmission of sensitive data from unmanned systems, thereby preventing unauthorized access by malicious actors? (Q2) How can we ensure the confidentiality and integrity of messages exchanged with unmanned systems to a command-and-control center operating on the tactical edge? (Q3) How can hybrid encryption tackle the consumption …


Collaborative Pathways To Cybersecurity Excellence: Insights From Industry And Academia In The Southeastern Us, Humayun Zafar, Carole L. Hollingsworth, Tridib Bandyopadhyay, Adriane B. Randolph Jul 2024

Collaborative Pathways To Cybersecurity Excellence: Insights From Industry And Academia In The Southeastern Us, Humayun Zafar, Carole L. Hollingsworth, Tridib Bandyopadhyay, Adriane B. Randolph

Journal of Cybersecurity Education, Research and Practice

This research article examines conversations happening between cybersecurity academics and industry leaders with a goal to improve the development of cybersecurity professionals. We specifically focus on efforts in the Southeast region of the United States. The discussion features insights from a panel consisting of an academic cybersecurity researcher, a Chief Information Officer (CIO) of a leading technology company with over 1,000 employees, and a CIO of a financial services firm, which employs over 3,000 people. The discussion sheds light on the challenges and opportunities involved in aligning cybersecurity programs with industry requirements. This article explores strategies for academia and businesses …


Securing The Inbox: Advancing Cyber Resilience With Fine-Tuned Bert, Fatima Rashed Al Saedi Jun 2024

Securing The Inbox: Advancing Cyber Resilience With Fine-Tuned Bert, Fatima Rashed Al Saedi

Thesis/ Dissertation Defenses

In recent years, phishing attacks have persisted as a widespread threat in the contemporary digital environment, presenting substantial risks to individuals and organizations. Cybercriminals are devising increasingly sophisticated strategies to deceive users through malicious emails. In response to this challenge, this research focuses on developing a new tool for detecting phishing emails utilizing the BERT algorithm. The tool aims to enhance email security by accurately identifying deceptive emails and protecting users from potential cyber threats. The primary objective of this study is to investigate how leveraging the BERT algorithm can improve the detection of phishing emails compared to traditional methods. …


Securing The Inbox: Advancing Phishing Email Detection With Fine-Tuned Bert, Fatima Rashed Al Saedi Jun 2024

Securing The Inbox: Advancing Phishing Email Detection With Fine-Tuned Bert, Fatima Rashed Al Saedi

Theses

In recent years, phishing attacks have persisted as a widespread threat in the contemporary digital environment, presenting substantial risks to individuals and organizations. Cybercriminals are devising increasingly sophisticated strategies to deceive users through malicious emails. In response to this challenge, this research focuses on developing a new tool for detecting phishing emails utilizing the BERT algorithm. The tool aims to enhance email security by accurately identifying deceptive emails and protecting users from potential cyber threats. The primary objective of this study is to investigate how leveraging the BERT algorithm can improve the detection of phishing emails compared to traditional methods. …


Automated Sensor Node Malicious Activity Detection With Explainability Analysis, Md Zubair, Helge Janicke, Ahmad Mohsin, Leandros Maglaras, Iqbal H. Sarker Jun 2024

Automated Sensor Node Malicious Activity Detection With Explainability Analysis, Md Zubair, Helge Janicke, Ahmad Mohsin, Leandros Maglaras, Iqbal H. Sarker

Research outputs 2022 to 2026

Cybersecurity has become a major concern in the modern world due to our heavy reliance on cyber systems. Advanced automated systems utilize many sensors for intelligent decision-making, and any malicious activity of these sensors could potentially lead to a system-wide collapse. To ensure safety and security, it is essential to have a reliable system that can automatically detect and prevent any malicious activity, and modern detection systems are created based on machine learning (ML) models. Most often, the dataset generated from the sensor node for detecting malicious activity is highly imbalanced because the Malicious class is significantly fewer than the …


Generative Machine Learning For Cyber Security, James Halvorsen, Dr. Assefaw Gebremedhin May 2024

Generative Machine Learning For Cyber Security, James Halvorsen, Dr. Assefaw Gebremedhin

Military Cyber Affairs

Automated approaches to cyber security based on machine learning will be necessary to combat the next generation of cyber-attacks. Current machine learning tools, however, are difficult to develop and deploy due to issues such as data availability and high false positive rates. Generative models can help solve data-related issues by creating high quality synthetic data for training and testing. Furthermore, some generative architectures are multipurpose, and when used for tasks such as intrusion detection, can outperform existing classifier models. This paper demonstrates how the future of cyber security stands to benefit from continued research on generative models.


A Study Of Cybersecurity Landscape In The United States: Trend, Regional Variations, And Socioeconomic Factors, Trang Thi Thu Horn May 2024

A Study Of Cybersecurity Landscape In The United States: Trend, Regional Variations, And Socioeconomic Factors, Trang Thi Thu Horn

All-Inclusive List of Electronic Theses and Dissertations

The Internet has become an essential part of our daily lives. Cyberspace has emerged significantly with an enormous number of users, creating a lucrative hunting field for cybercriminals. The exponential growth of internet users and online activities, along with the increased sophistication of cybercrimes, is raising significant global concerns for individuals, organizations, and governments. This research aims to explore the cybersecurity landscape in the United States, investigate regional variations, and the potential impact of the COVID-19 pandemic on the number of cybercrimes. The study utilizes a mixed research method approach, including historical analysis and a Delphi study. Historical analysis studied …


Enhancing Cybersecurity Awareness In The United Arab Emirates: An Assessment Of Current Practices And The Development Of An Ai-Enhanced Mobile Application, Meera Alalawi Apr 2024

Enhancing Cybersecurity Awareness In The United Arab Emirates: An Assessment Of Current Practices And The Development Of An Ai-Enhanced Mobile Application, Meera Alalawi

Thesis/ Dissertation Defenses

In today's interconnected world, individuals, private corporations, public institutions, and governments face increasingly sophisticated cyber threats and attacks, highlighting the critical need for individuals and organizations to understand cybersecurity comprehensively. Cyberattacks have affected many countries and infrastructures in different sectors worldwide, including the United Arab Emirates (UAE), which has become a main target for cybercrime due to its booming economy and tourism. The UAE considers cybersecurity an increasingly critical issue in our digital world, and increasing cybersecurity awareness among residents is essential to protect themselves and their organizations from cyberattacks. The primary objectives of this study are to identify key …


Network Level Detection Of Iot Attacks Via Time Series Shape Mining, Srijani Basu Apr 2024

Network Level Detection Of Iot Attacks Via Time Series Shape Mining, Srijani Basu

Masters Theses

This research proposes a method, for detecting intrusions in the Internet of Things (IoT) realm. This approach was specifically tested using datasets containing both benign, and attacks on smart home devices like the Belkin Wemo Power Switch, Lifx Smart Bulb, Amazon Echo, and Netatmo Welcome Camera. These attacks consist of specification-compliant volumetric DDoS attacks, which can be both direct and reflective, with very low traffic volumes implemented in an ON-OFF pattern. Here, the ON-OFF pattern can be referred to as a pulse attack strategy.

We combined non-linear statistical moving averages, and Dynamic Time Warping into a single framework that can …


Enhancing Cybersecurity Awareness In The United Arab Emirates: An Assessment Of Current Practices And The Development Of An Ai-Enhanced Mobile Application, Meera Humaid Alalawi Apr 2024

Enhancing Cybersecurity Awareness In The United Arab Emirates: An Assessment Of Current Practices And The Development Of An Ai-Enhanced Mobile Application, Meera Humaid Alalawi

Theses

In today's interconnected world, individuals, private corporations, public institutions, and governments face increasingly sophisticated cyber threats and attacks, highlighting the critical need for individuals and organizations to understand cybersecurity comprehensively. Cyberattacks have affected many countries and infrastructures in different sectors worldwide, including the United Arab Emirates (UAE), which has become a main target for cybercrime due to its booming economy and tourism. The UAE considers cybersecurity an increasingly critical issue in our digital world, and increasing cybersecurity awareness among residents is essential to protect themselves and their organizations from cyberattacks. The primary objectives of this study are to identify key …


An Analysis And Ontology Of Teaching Methods In Cybersecurity Education, Sarah Buckley Mar 2024

An Analysis And Ontology Of Teaching Methods In Cybersecurity Education, Sarah Buckley

LSU Master's Theses

The growing cybersecurity workforce gap underscores the urgent need to address deficiencies in cybersecurity education: the current education system is not producing competent cybersecurity professionals, and current efforts are not informing the non-technical general public of basic cybersecurity practices. We argue that this gap is compounded by a fundamental disconnect between cybersecurity education literature and established education theory. Our research addresses this issue by examining the alignment of cybersecurity education literature concerning educational methods and tools with education literature.

In our research, we endeavor to bridge this gap by critically analyzing the alignment of cybersecurity education literature with education theory. …


Developing Singapore As A Smart Nation, Josephine Teo Mar 2024

Developing Singapore As A Smart Nation, Josephine Teo

Asian Management Insights

Mrs Josephine Teo, Singapore’s Minister for Communications and Information, and Minister-in-charge of Smart Nation and Cybersecurity, speaks about leading the country’s Smart Nation drive.


Blockchain Applications In Higher Education Based On The Nist Cybersecurity Framework, Brady Lund Ph.D. Feb 2024

Blockchain Applications In Higher Education Based On The Nist Cybersecurity Framework, Brady Lund Ph.D.

Journal of Cybersecurity Education, Research and Practice

This paper investigates the integration of blockchain technology into core systems within institutions of higher education, utilizing the National Institute of Standards and Technology’s (NIST) Cybersecurity Framework as a guiding framework. It supplies definitions of key terminology including blockchain, consensus mechanisms, decentralized identity, and smart contracts, and examines the application of secure blockchain across various educational functions such as enrollment management, degree auditing, and award processing. Each facet of the NIST Framework is utilized to explore the integration of blockchain technology and address persistent security concerns. The paper contributes to the literature by defining blockchain technology applications and opportunities within …