Security Enhancement In Aav Swarms: A Case Study Using Federated Learning And Shap Analysis,
2025
Old Dominion University
Security Enhancement In Aav Swarms: A Case Study Using Federated Learning And Shap Analysis, Sushmitha Halli Sudhakara, Lida Haghnegahdar
School of Cybersecurity Faculty Publications
As cyber-physical systems (CPSs) increasingly integrate physical and digital realms, securing critical infrastructure, such as the Port of Virginia, becomes paramount. Among CPSs, Autonomous Aerial Vehicles (AAVs) are vital for monitoring, communication, and supporting the command and control through remote reconnaissance and surveillance missions. These AAV applications often require coordination, planning, and runtime reconfiguration, traditionally managed by human decision-makers. However, this approach has limitations, as extensively documented in the literature. Artificial Intelligence (AI) has emerged as a pivotal tool to address these limitations, enhancing risk mitigation and informed decision-making. This research proposes a machine learning (ML) based security mechanism, leveraging …
T3-Ciders: Train-The-Trainer And Community Building To Increase Cyberinfrastructure Adoption In Cybersecurity Research And Education,
2025
Old Dominion University
T3-Ciders: Train-The-Trainer And Community Building To Increase Cyberinfrastructure Adoption In Cybersecurity Research And Education, Wirawan Purwanto, Mohan Yang, Peng Jiang, Shanan Chappell Moots, Masha Sosonkina, Hongyi Wu
University Administration Publications
T³-CIDERS is a train-the-trainer program to increase the adoption of advanced cyberinfrastructure (CI) and data skills into the fabric of research and education in cybersecurity and cyber-related disciplines. T³-CIDERS trains faculty, researchers, and students as “future trainers” (FTs) with hands-on technical and instructional skills to enable more people to effectively leverage CI in cybersecurity. The program includes a series of technical pre-training modules, a weeklong summer institute, ongoing learning engagements conducted over an academic year; it culminates with the FTs conducting locally tailored CI-infused training events at their respective home institutions. Ultimately, T³-CIDERS aims to build a “CI+cybersecurity” community of …
A Governance-Centric Framework For Strengthening Healthcare Cybersecurity: A Systems Perspective,
2025
Old Dominion University
A Governance-Centric Framework For Strengthening Healthcare Cybersecurity: A Systems Perspective, Sujatha Alla, Sai Gireesh Komaragiri, Teresa Duvall, Satluk Karahan, Nagesh Bheesetty, Vijay Kumar Chattu
Engineering Management & Systems Engineering Faculty Publications
Healthcare systems face unprecedented security and privacy challenges due to increasing digitization and interconnectedness. This paper provides a comprehensive analysis of these challenges by examining various cyberattacks, defensive mechanisms, and governance frameworks within modern healthcare infrastructure. The research systematically categorizes prevalent security threats, such as ransomware, insider threats, and data breaches, identifying vulnerabilities specific to healthcare systems. Furthermore, the study evaluates current defensive strategies, including encryption techniques, access control systems, and intrusion detection tools, assessing their effectiveness against complex cyber threats. A key focus is placed on governance structures and their role in cybersecurity resilience. The research explores how regulatory …
Potsdam: Pareto Optimization Targeting Security, Data, And Mediation,
2025
Dartmouth College
Potsdam: Pareto Optimization Targeting Security, Data, And Mediation, J Peter Brady
Dartmouth College Ph.D Dissertations
Given the growing amount and variety of data handled by modern systems, it is crucial to guarantee the accuracy and protection of input data without errors or malicious intentions. The need to improve security in software programs often conflicts with the assurance of maximum performance, making developers and maintainers hesitant to incorporate more testing.
LangSec (Language-Theoretic Security) is a security approach that treats input validation as a formal language recognition problem, ensuring that only well-defined, unambiguous inputs are processed to eliminate exploitable parsing flaws. This dissertation explores integrating LangSec principles with Pareto optimization to enhance safety and robustness in digital …
Cyberattacks On Port Infrastructures: A Decade Of Trends, Incidents, And Mitigation Strategies (2011-2024),
2025
University Politehnica of Bucharest, Romania
Cyberattacks On Port Infrastructures: A Decade Of Trends, Incidents, And Mitigation Strategies (2011-2024), Minodora Badea, Olga Bucovetchi, Adrian V. Gheorghe, Gabriel Raicu
Engineering Management & Systems Engineering Faculty Publications
Port infrastructures are critical to global trade, handling over 80% of the world's cargo by volume. However, their increasing reliance on digital technologies has exposed them to a wide range of cyber threats. This paper provides a comprehensive analysis of cyberattacks targeting port infrastructures from 2011 to the present. We examine the types of attacks, geographical distribution, notable incidents, and underlying vulnerabilities. Additionally, we discuss mitigation strategies and future directions for enhancing cybersecurity in the maritime sector. Our findings highlight the urgent need for robust regulatory frameworks, advanced technological solutions, and collaborative efforts to safeguard critical port operations.
Studies On Convexity Of Dnf Formulae,
2025
University at Albany, State University of New York
Studies On Convexity Of Dnf Formulae, Josue A. Ruiz
Electronic Theses & Dissertations (2024 - present)
In this dissertation, we investigate the problem of determining whether a Boolean formula given in disjunctive normal form (DNF) is convex. Although Boolean formulas have various applications, our research focuses on the practical application for rule-based access control policies, where policies are often expressed as a set of Boolean rules. Understanding the structural properties of such formulas is crucial for determining whether a policy can be efficiently represented within a specific access control model.
The main contribution of this research is the conception and analysis of convexity derived from the “gap problem.” In this context, convexity is characterized by the …
Safeguard Cyberspace In Ransomware Era: Risk Analysis & Cyber Insurance,
2025
University at Albany, State University of New York
Safeguard Cyberspace In Ransomware Era: Risk Analysis & Cyber Insurance, Li Huang
Electronic Theses & Dissertations (2024 - present)
The increasing frequency and severity of ransomware attacks pose significant challenges for organizational cybersecurity. Fragmentation across disciplines in cyber defense has created practical gaps in the development of the necessary capabilities needed to address rapidly evolving cyber threats. This study explores the impact of ransomware attacks and the evolving role of cyber insurance as a proactive cybersecurity partner. Bridging the gap between actuarial science and cyber risk management, it proposes an interdisciplinary framework that quantifies the impact of ransomware and integrates cyber insurance into cybersecurity strategies.
The primary contribution of this study is methodology. We present a framework that remains …
Cyber Warfare And The Future Of Conflict,
2025
Missouri State University
Cyber Warfare And The Future Of Conflict, Victor A. Mercado
Graduate Theses/Dissertations
This thesis examines whether cyber warfare now poses a more immediate threat to U.S. national security than weapons of mass destruction (WMD). Cyber operations have become a dominant instrument of contemporary conflict, with malicious actors operating in a persistent “grey zone” that blurs traditional boundaries between war and peace. These operations target military and civilian entities, both directly and often as collateral damage due to the uncontrollable nature of cyber threats. WMDs, despite their catastrophic destructive potential, remain largely constrained by established deterrence frameworks.
The evolving nature of cyber warfare warrants comparison to WMD effects and impact, as cyber capabilities …
Action This Day: The Mathematics And Machinations That Bested The German Enigma,
2025
Dartmouth College
Action This Day: The Mathematics And Machinations That Bested The German Enigma, Jonah Weinbaum
Dartmouth College Master’s Theses
This thesis presents a comprehensive and chronological overview of cryptographic techniques designed to break Enigma, beginning in 1932 and culminating in the creation of the Turing-Welchman Bombe. We discuss the mathematical theory and electromechanical implements used to decode one of history's greatest ciphers.
Reexamining the Bombe through the lens of modern group theory, we critique Alan Turing's estimation of the number of "stops" that the Bombe produces for various plaintext-ciphertext pairing structures. To address its limitations, we introduce a new framework for estimating the number of stops by extending John Dixon's theorem concerning the probability that uniformly distributed elements of …
Sting: A Stealthy Backdoor Attack On Gnn-Based Malicious Domain Detection Via Dns Perturbations,
2025
Alfaisal University
Sting: A Stealthy Backdoor Attack On Gnn-Based Malicious Domain Detection Via Dns Perturbations, Muhammad Anan, Mahmoud Nazzal, Abdallah Khreishah, Issa Khalil, Nhathai Phan, Ahmad Sawalmeh
Computer Science Faculty Publications
Detecting malicious Internet domains is essential for safeguarding against various online threats. The current approach to detecting malicious domains (MDD) employs a graph neural network (GNN) method, which uses DNS logs to construct heterogeneous graphs for determining the maliciousness of unknown domains. Despite its success, this method is vulnerable to data poisoning attacks where an adversary can manipulate specific graph nodes to implant a backdoor into the model during training. To showcase the vulnerability, we propose a stealthy trigger injection attack on node features and graph structure in MDD, dubbed (STING). The attacker carefully manipulates selected features and edges of …
Effective Pii Extraction From Llms Through Augmented Few-Shot Learning,
2025
Zhejiang University
Effective Pii Extraction From Llms Through Augmented Few-Shot Learning, Shuai Cheng, Shu Meng, Haitao Xu, Haoran Zhang, Shuai Hao, Chuan Yue, Wenrui Ma, Meng Han, Fang Zhang, Zhao Li
Computer Science Faculty Publications
Large Language Models (LLMs) exhibit strong natural language processing capabilities but also pose significant privacy risks, particularly regarding the leakage of Personally Identifiable Information (PII) embedded in their training data. Existing PII extraction methods suffer from the limitations of low success rates or impracticality for large-scale PII extraction. In this study, we propose a novel PII extraction approach based on enhanced few-shot learning techniques, which achieves efficient and cost-effective PII retrieval without relying on fine-tuning or jailbreaking. We evaluated our approach on both open-source and closed-source LLMs. The experimental results demonstrate that, for non-targeted PII extraction, the attack success rate …
A Comprehensive Exploration Of 6g Wireless Communication Technologies,
2025
University of North Carolina at Charlotte
A Comprehensive Exploration Of 6g Wireless Communication Technologies, Md Nurul Absar Siddiky, Muhammad Enayetur Rahman, Md. Shahriar Uzzal, H. M. Dipu Kabir
Electrical & Computer Engineering Faculty Publications
As the telecommunications landscape braces for the post-5G era, this paper embarks on delineating the foundational pillars and pioneering visions that define the trajectory toward 6G wireless communication systems. Recognizing the insatiable demand for higher data rates, enhanced connectivity, and broader network coverage, we unravel the evolution from the existing 5G infrastructure to the nascent 6G framework, setting the stage for transformative advancements anticipated in the 2030s. Our discourse navigates through the intricate architecture of 6G, highlighting the paradigm shifts toward superconvergence, non-IP-based networking protocols, and information-centric networks, all underpinned by a robust 360-degree cybersecurity and privacy-by-engineering design. Delving into …
Death By Design: A Biological Approach To Container Security,
2025
Eastern Washington University
Death By Design: A Biological Approach To Container Security, Alexander Hunter Moomaw
EWU Masters Thesis Collection
Microservice architectures are central to modern cloud computing and have become the dominant design pattern for scalable, distributed applications. Kubernetes is often the tool used for rapid deployment and orchestration of microservices. A known issue for large networks clusters is a malicious actor can compromise a vulnerable cluster in minutes. Their ability to quickly compromise vulnerable clusters highlights the urgent need for stronger security. This project views cluster defense through a preemptive security lens, introducing the Cluster Life cycle Management System (CLMS). Inspired by the biological process of apoptosis, CLMS systematically replaces aging containers and services to prevent exploitation of …
Securing Secrets: Exploring The Aes Encryption And Key Security Capabilities Of Chatgpt,
2025
Embry-Riddle Aeronautical University
Securing Secrets: Exploring The Aes Encryption And Key Security Capabilities Of Chatgpt, Kayla Taylor
Student Works
The development and increasing accessibility of generative artificial intelligence (AI) tools and large language models (LLMs) have allowed cryptographers to explore a variety of cryptanalysis problems in dynamic and interactive ways. Prompt engineering, the process by which input text is tested and refined to elicit a desired response from LLMs, is a nascent area of research that remains largely unexplored in many contexts, including cryptography. This study will explore the potential applications and limitations of prompt engineering in the context of Advanced Encryption Standard (AES) encryption and key security with OpenAI’s ChatGPT (GPT-4o) through two main objectives: First, given a …
Signal-Based Error Handling: Case Study Using The Bathymetric Attributed Grid Library,
2025
University of New Hampshire - Main Campus
Signal-Based Error Handling: Case Study Using The Bathymetric Attributed Grid Library, Anthony R. Papetti
Honors Theses and Capstones
No abstract provided.
Understanding Pii Leakage In Large Language Models: A Systematic Survey,
2025
Zhejiang University
Understanding Pii Leakage In Large Language Models: A Systematic Survey, Shuai Cheng, Zhao Li, Shu Meng, Mengxia Ren, Haitao Xu, Shuai Hao, Chuan Yue, Fang Zhang
Computer Science Faculty Publications
Large Language Models (LLMs) have demonstrated exceptional success across a variety of tasks, particularly in natural language processing, leading to their growing integration into numerous facets of daily life. However, this widespread deployment has raised substantial privacy concerns, especially regarding personally identifiable information (PII), which can be directly associated with specific individuals. The leakage of such information presents significant real-world privacy threats. In this paper, we conduct a systematic investigation into existing research on PII leakage in LLMs, encompassing commonly utilized PII datasets, evaluation metrics, and current studies on both PII leakage attacks and defensive strategies. Finally, we identify unresolved …
Data Injustice In Global Justice,
2025
Maurer School of Law - Indiana University
Data Injustice In Global Justice, Asaf Lubin, Cherry Tang
Articles by Maurer Faculty
In May 2020, the United Nations Secretary-General unveiled a sweeping “Data Strategy for Action by Everyone, Everywhere,” seeking to unlock the UN’s “full data potential.” The International Criminal Court’s Office of the Prosecutor followed suit, declaring in 2023 its intent to acquire advanced cyber forensic tools so as to hold the “widest range of digital evidence globally.” Across international institutions, data-driven governance has become the norm, with humanitarian agencies and tribunals transforming into “data hubs and information clearinghouses.” This Article critiques the unfettered datafication of global justice by international courts and organizations. These entities have aggressively expanded their data-driven operations …
Zero Trust Architecture As A Risk Countermeasure In Small-Medium Enterprises And Advanced Technology Systems,
2025
Old Dominion University
Zero Trust Architecture As A Risk Countermeasure In Small-Medium Enterprises And Advanced Technology Systems, Ahmed M. Abdelmagid, Rafael Diaz
Engineering Management & Systems Engineering Faculty Publications
The growing sophistication of cyberattacks exposes small- and medium-sized businesses (SMBs) to a widening range of security risks. As these threats evolve in complexity, the need for advanced security measures becomes increasingly pressing. This necessitates a proactive approach to defending against potential cyber intrusions. Emerging technologies, such as blockchain, artificial intelligence, and Zero Trust security framework, offer crucial tools for strengthening the digital infrastructure of SMBs. The Zero Trust architecture (ZTA) holds significant promise as a critical strategy for protecting SMBs. While existing literature explores the implementation of ZTA in various business settings, discussions specifically addressing the financial, human resource, …
Grosafe: In-Classroom Technology-Enabled Solution To Build Societal Resilience Against Child Grooming,
2024
Technological University Dublin
Grosafe: In-Classroom Technology-Enabled Solution To Build Societal Resilience Against Child Grooming, Christina Thorpe, Fiona Jennings
Conference Papers
GroSafe is an innovative initiative developed by TU Dublin in partnership with the ISPCC to address the critical issue of child grooming. By leveraging cutting-edge digital technologies, GroSafe focuses on educating children, caregivers, and educators to recognise, report, and prevent grooming behaviours. It integrates a 3D educational gaming environment with adaptive learning tools, enabling safe and effective engagement for children, including those with diverse learning needs. Designed to align with Ireland’s SPHE curriculum, GroSafe empowers schools and communities to tackle grooming through early intervention and resilience building.
Toward An Insider Threat Education Platform: A Theoretical Literature Review,
2024
Dakota State University
Toward An Insider Threat Education Platform: A Theoretical Literature Review, Haywood Gelman, John D. Hastings, David Kenley, Eleanor Loiacono
Research & Publications
Insider threats (InTs) within organizations are small in number but have a disproportionate ability to damage systems, information, and infrastructure. Existing InT research studies the problem from psychological, technical, and educational perspectives. Proposed theories include research on psychological indicators, machine learning, user behavioral log analysis, and educational methods to teach employees recognition and mitigation techniques. Because InTs are a human problem, training methods that address InT detection from a behavioral perspective are critical. While numerous technological and psychological theories exist on detection, prevention, and mitigation, few training methods prioritize psychological indicators. This literature review studied peer-reviewed, InT research organized by …
