Investigating The Security Vulnerabilities Of Ip Cameras: Classifications And Trends From Public Cve Data,
2025
William & Mary
Investigating The Security Vulnerabilities Of Ip Cameras: Classifications And Trends From Public Cve Data, Sam Oliver
Cybersecurity Undergraduate Research Showcase
Internet of Things (IoT) devices are increasingly targeted by cyber attacks due to weak authentication, insecure communication protocols, outdated firmware, and many other vulnerabilities. Internet Protocol (IP) cameras, a subset of these IoT devices, are particularly vulnerable and often transmit sensitive information. This paper analyzes vulnerability data from the National Vulnerability Database (NVD) to classify security vulnerabilities affecting IP cameras. Using this dataset, the paper examines the types and frequencies of these vulnerabilities, including authentication bypass, web interface exploits, and default and weak credentials. We additionally examine trends over time and across categories. This research aims to identify the primary …
Effects Of Code Scaffolding In Increasing Student Confidence In Programming Cryptography,
2025
Louisiana State University and Agricultural and Mechanical College
Effects Of Code Scaffolding In Increasing Student Confidence In Programming Cryptography, John Denny
LSU Master's Theses
Cryptography is essential for secure communications, and new threats require more students willing to program and interact with cryptographic systems. Previous research is focused on tools for teaching these systems at a high level, teaching through attacks against these systems, and proper use of these systems in software development. In this paper, we seek to design a workshop to use scaffolded Python code to teach how these cryp- tographic systems are designed. We explore the use of code scaffolding for students to program an example implementation of the McEliece crypto- graphic system to build confidence in working with these systems. …
Systematic Review Of Elementary Cybersecurity Education: Curriculum, Pedagogy, And Barriers,
2025
North Carolina State University
Systematic Review Of Elementary Cybersecurity Education: Curriculum, Pedagogy, And Barriers, Na Liu, Siyu Long, Florence Martin
Journal of Cybersecurity Education, Research and Practice
Abstract -As children increasingly engage with digital platforms, the need for effective cybersecurity education has become urgent. This systematic review synthesizes 81 studies published between 2017 and 2024 to examine global curricula research focus and topics, pedagogical approaches and assessment methods, and key challenges in elementary cybersecurity education. The findings reveal six major thematic categories: student awareness, parental mediation, teacher engagement, curriculum design, community and policy support, and pedagogical innovation. Among instructional strategies, game-based learning and narrative storytelling emerge as the most frequently explored. Despite this growth, major gaps remain in curriculum consistency, teacher preparation, assessment rigor, and stakeholder coordination. …
Exploring Runtime Evolution In Android: A Cross-Version Analysis And Its Implications For Memory Forensics.,
2025
Louisiana State University and Agricultural and Mechanical College
Exploring Runtime Evolution In Android: A Cross-Version Analysis And Its Implications For Memory Forensics., Babangida Bappah
LSU Master's Theses
Userland memory forensics has become a critical component of smartphone investigations and incident response, enabling the recovery of volatile evidence such as deleted messages from end-to-end encrypted apps and cryptocurrency transactions. However, these forensics tools, particularly on Android, face significant challenges in adapting to different versions and maintaining reliability over time due to the constant evolution of low-level structures critical for evidence recovery and reconstruction. Structural changes, ranging from simple offset modifications to complete architectural redesigns, pose substantial maintenance and adaptability issues for forensic tools that rely on precise structure interpretation. Thus, this paper presents the first systematic study of …
Enhancing Cyberattack Resiliency Through The Radiotherapy Backup And Recovery Dashboard Tool,
2025
Thomas Jefferson University
Enhancing Cyberattack Resiliency Through The Radiotherapy Backup And Recovery Dashboard Tool, Justin Pijanowski, Eric Nguyen, Yasin Abdulkadir, Justin Hink, Yevgeniy Vinogradskiy, James Lamb
Department of Radiation Oncology Faculty Papers
PURPOSE: Radiation Oncology departments impacted by recent cyberattacks were unable to access data backups or their Record and Verify (R&V) system and therefore faced challenges to resume patient treatments in a timely manner. We present a novel software tool that backs-up critical radiotherapy treatment information and displays essential information for on-treatment patients in an intuitive and accessible dashboard allowing clinics to continue radiotherapy treatments. The purpose of this report is to describe implementation details, challenges, and share open-source code to facilitate radiation oncology clinics' efforts to develop tools to improve cyberattack resiliency.
METHODS: The Radiotherapy Backup and Recovery Dashboard Tool …
Teaching Cybersecurity And Ai Across Borders: From Foundations To Ethics,
2025
Lynn University
Teaching Cybersecurity And Ai Across Borders: From Foundations To Ethics, George Antoniou
Faculty and Staff Publications & Presentations
This presentation examines how interdisciplinary course design in AI and cybersecurity can expand undergraduate research while directly supporting career readiness. At Lynn University, the Foundations of Cybersecurity & AI course was updated to serve as the entry point for both Cybersecurity and Data Analytics majors. The course integrates case studies, digital forensics and cloud security labs, and applied exercises with AI-enabled defense-in-depth strategies. Students build core technical competencies while engaging in course-based research that mirrors industry practice. As part of a Fulbright grant, a complementary course, AI & Ethics, was developed for the University of Tirana. Proposed as a mandatory …
Securing The Digital Harvest: Cybersecurity As A Core Agribusiness Skill,
2025
University of Nebraska at Kearney
Securing The Digital Harvest: Cybersecurity As A Core Agribusiness Skill, Jody Herchenbach, George Grispos
Mountain Plains Business Conference
The digitization of agriculture, through IoT-enabled equipment, cloud platforms, and precision technologies, has improved efficiency and profitability while also introducing significant cybersecurity risks. These vulnerabilities can disrupt supply chains, compromise sensitive data, and undermine financial stability. Yet agribusiness degree programs often overlook cybersecurity education. This paper proposes integrating cybersecurity content on threat awareness, incident response, and data protection into agribusiness curricula. Embedding these elements equips graduates to manage both digital and financial risks, enhancing resilience and competitiveness. Such curricular innovation aligns technical and managerial training, preparing future agribusiness professionals to lead securely and sustainably in an increasingly connected industry.
Ecu-Malnett,
2025
Edith Cowan University
Ecu-Malnett, Matthew G. Gaber, Mohiuddin Ahmed, Michael N. Johnstone
Research Datasets
ECU-MALNETT (ECU MALware NETwork Traffic) is a real world, reproducible dataset of labeled benign and malicious network flows built from the Peekaboo execution corpus. Peekaboo runs evasive malware with dynamic binary instrumentation and records raw host-level PCAPs while granting full Internet access, yielding noisy, real-world captures with background OS activity and concurrent processes. To derive trustworthy labels from these traces, we apply Construct, a baseline aware, zero-trust labeling framework. Construct first ingests a baseline capture to establish reference sets (DNS qnames, HTTP hosts, TLS SNIs, and socket endpoints) and grows a conservative benign IP pool only via whitelisted DNS resolutions. …
Better Digital Contracts With Prosocial Friction-In-Design,
2025
Villanova University Charles Widger School of Law
Better Digital Contracts With Prosocial Friction-In-Design, Brett Frischmann, Moshe Y. Vardi
Faculty Publications
Contract law is supposed to enable people to reach genuine agreements and cooperate. If this ideal was ever a reality, the rise of mass market contracts and boilerplate rendered it pure fiction. Modern consumer contracts are incomprehensible to most people. No one reads them anyway.
Digital contracting involves design features that amplify traditional boilerplate harms and create others. For example, digital contracting is too cheap; low marginal costs lead to overexpansion in scale and scope. To make matters worse, the loss of autonomy from repeat engagement with digital contracting systems is pernicious. People become increasingly predictable and programmable as digital …
Optimizing Cybersecurity Through Ai Predictive Analytics And Human Expertise,
2025
Central Washington University
Optimizing Cybersecurity Through Ai Predictive Analytics And Human Expertise, Cathy Mae C. Dutong
Journal of the Symposium of University Research and Creative Expression
Project Mentor(s): Hideki Takei, DBA
As cybersecurity threats evolve in complexity and scale, the reliance on artificial intelligence (AI) has become increasingly prevalent across both public and private sectors. This study examines the dual role of AI-driven predictive analytics in strengthening organizational cybersecurity, while addressing the ongoing need for human oversight. Through a mixed-method approach, combining survey data from cybersecurity professionals with an extensive literature review, this research analyzes AI's capacity to detect emerging threats, the systemic challenges associated with AI integration, and the indispensable role of human expertise in interpreting AI outputs. Findings indicate that while AI enhances proactive …
Microarchitectural Malware Detection Via Translation Lookaside Buffer (Tlb) Events,
2025
Air Force Institute of Technology
Microarchitectural Malware Detection Via Translation Lookaside Buffer (Tlb) Events, Cristian Agredo, Daniel F. Koranek, Christine M. Schubert Kabban, Jose R. Gutierrez Del Arroyo, Scott R. Graham
Faculty Publications
Prior work has shown that Translation Lookaside Buffer (TLB) data contains valuable behavioral information. Many existing methodologies rely on timing features or focus solely on workload classification. In this study, we propose a novel approach to malware classification using only TLB-related Hardware Performance Counters (HPCs), explicitly excluding any dependence on timing features such as task execution duration or memory access timing. Our methodology evaluates whether TLB data alone, without any timing information, can effectively distinguish between malicious and benign programs. We test this across three classification scenarios: (1) A binary classification problem involving distinguishing malicious from benign tasks, (2) a …
Cybersecurity And Intention To Use Mobile Banking Applications,
2025
University of Cape Town
Cybersecurity And Intention To Use Mobile Banking Applications, Ishmael Chikoo, Salah Kabanda
African Conference on Information Systems and Technology
The adoption rate of mobile banking amongst consumers remains low, especially in developing countries where there is a knowledge gap in understanding why consumers do not engage in the frequent use of mobile banking applications. Given that most financial institutions see mobile banking as a strategy for their competitive advantage; it is important that they understand how best to address consumer’s fears brought about by cybersecurity threats. The purpose of this study is to investigate the perceived influence of cybersecurity on the user’s intentions to use mobile banking applications. Data collected from 90 participants was statistically analysed in Smart PLS …
Machine Learning And Crime Prevention,
2025
CUNY John Jay College
Machine Learning And Crime Prevention, Emily Lizewski
Student Theses
Predictive policing uses machine learning to analyze crime patterns and help law enforcement better efficient use their resources. These tools can improve accuracy by highlighting complex trends in large sets of data. While this technology has its advantages, it also raises important ethical and social questions. Within this paper we looks at how predictive policing works, focusing on the machine learning models often used such as decision trees, random forests, gradient boosting, and models that factor in both time and location. It also explores how these tools might unintentionally reinforce biases already present in historical crime data. In reviewing the …
A Study On Webassembly And Its Security,
2025
University of Dayton
A Study On Webassembly And Its Security, Thomas Crossman
Research from the Berry Summer Thesis Institute, 2025
This project studies WebAssembly, a binary language specification that enables non-native languages, such as C/C++ and Rust, to run efficiently on webpages, supporting complex tasks like gaming or data processing. It functions by translating a non-native language into a WebAssembly binary, which is natively supported by most browsers. Notably, WebAssembly uses a linear memory model, storing all non-code data in a single linear array. Unfortunately, this design compromises some security principles, introducing security risks and complications.
Our overall project goal is to investigate WebAssembly functionality, develop a test program, and address a critical security challenge to enhance the safety of …
Cybersecurity: Digital Stewardship In A Violent World,
2025
Calvin University
Cybersecurity: Digital Stewardship In A Violent World, Rocky K. C. Chang
University Faculty Publications and Creative Works
This paper defines cybersecurity based on the principle of biblical stewardship. The focus of this principle is God, not the technologies, who is the creator and owner of cyberspace and everything in it. Humankind is called by God to steward them by protecting the digital property of our neighbors in cyberspace from malicious attacks. In the context of cybersecurity, a neighbor can be any individual cyber user, practitioner, educator, organization, tech company, or even hacker. However, as argued from the perspectives of human sin and human finitude, the defending stewards can never win over evil in this spiritual battle. Instead, …
Exploitation For All: The Factors That Enable Pig Butchering Schemes To Weaponize Cybersecurity's Weakest Link,
2025
Boise State University
Exploitation For All: The Factors That Enable Pig Butchering Schemes To Weaponize Cybersecurity's Weakest Link, Melaney Freeman
Boise State Graduate Student Projects
This paper discusses pig butchering schemes and how they leverage human weaknesses through advanced social engineering and manipulation techniques that are enabled through the use of human trafficking, forced labor, and government corruption in Southeast Asia. Details regarding scammer exploitation and the formation of a victim-offender identity is presented, followed by the explanation of factors that allow organized crime groups to exist. Essential tactics used by scammers are examined to understand how they weaponize people's vulnerabilities for the duration of the scam to build a relationship with the victim and earn their trust in order to financially exhaust them through …
Robustness Investigation, Detection, And Defense Of Deep Learning Models Against False Data Injection,
2025
Clemson University
Robustness Investigation, Detection, And Defense Of Deep Learning Models Against False Data Injection, Amirhossein Nazeri
All Dissertations
This dissertation addresses the critical challenge of adversarial robustness in deep learning systems, focusing on two fundamental domains: time-series prediction and object detection. As these AI systems become increasingly deployed in safety-critical applications from power grid management to autonomous vehicles their vulnerability to adversarial attacks poses significant risks to infrastructure and human safety.
The first contribution introduces a novel stealthy black-box False Data Injection (FDI) attack specifically designed for quasi-periodic time-series data. Unlike existing attacks that produce easily detectable anomalies, our method generates adversarial perturbations that preserve the underlying periodicity and statistical properties of the data, effectively bypassing traditional anomaly …
Complex System Governance And Cyber Operations,
2025
Old Dominion University
Complex System Governance And Cyber Operations, Willie Gernard Mccallister
Engineering Management & Systems Engineering Theses & Dissertations
This dissertation examines the potential integration of Complex System Governance (CSG) within cybersecurity, emphasizing the development of a reference model for Cybersecurity Infrastructures. Traditional strategies for securing digital environments have struggled to address the intricate and dynamic layers inherent in modern cybersecurity systems. The purpose of this research is to explore the applicability of CSG as a framework to assess cybersecurity infrastructure using a case study research design. The research addresses two key questions: (1) How can the CSG reference model be adapted to explore cybersecurity infrastructure? (2) What results from CSG based exploration of cybersecurity infrastructure through a case …
Low-Level Memory Attacks On Edge Assisted Robotic Applications,
2025
University of Louisville
Low-Level Memory Attacks On Edge Assisted Robotic Applications, William Arnold
Master of Engineering Theses
This thesis investigates how low-level memory faults can undermine edge-assisted robotic systems that rely on memory optimization. As robots are utilized in real world applications, the ability to operate safely and successfully in mission critical deployment becomes important. To help achieve these goals, developers are increasingly starting to place computation nodes at network edges to meet latency and reliability requirements. Edge nodes, however, are resource-constrained and resources conservation techniques such as Kernel Same-page Merging (KSM) are enabled to deduplicate identical pages across processes or virtual machines. This thesis shows that this optimization technique quietly widens the attack surface and can …
Towards Securing Ai Systems: Investigating Threats In Multimodal Autonomous Driving & Rag Systems,
2025
Clemson University
Towards Securing Ai Systems: Investigating Threats In Multimodal Autonomous Driving & Rag Systems, Saket Sanjeev Chaturvedi
All Dissertations
Artificial Intelligence (AI) systems have become central to high-stakes applications such as autonomous driving and language-based decision support. As their deployment accelerates, ensuring the security and trustworthiness of these systems becomes paramount. Among the most stealthy and potent threats are backdoor attacks, where models behave as expected under normal conditions but exhibit malicious behavior when triggered by specific inputs, either digital or physical.
This thesis investigates novel backdoor and adversarial vulnerabilities across two emerging classes of AI architectures: (1) multimodal 3D object detection systems that fuse LiDAR and camera data, and (2) Retrieval-Augmented Generation (RAG) systems that pair large language …
