Enhancing Security Incident Response Follow-Up Efforts With Lightweight Agile Retrospectives,
2017
University of Nebraska at Omaha
Enhancing Security Incident Response Follow-Up Efforts With Lightweight Agile Retrospectives, George Grispos, William Bradley Glisson, Tim Storer
Interdisciplinary Informatics Faculty Publications
Security incidents detected by organizations are escalating in both scale and complexity. As a result, security incident response has become a critical mechanism for organizations in an effort to minimize the damage from security incidents. The final phase within many security incident response approaches is the feedback/follow-up phase. It is within this phase that an organization is expected to use information collected during an investigation in order to learn from an incident, improve its security incident response process and positively impact the wider security environment. However, recent research and security incident reports argue that organizations find it difficult to learn …
A Longitudinal Study Of Privacy Awareness In The Digital Age And The Influence Of Knowledge,
2017
University of Arkansas Little Rock
A Longitudinal Study Of Privacy Awareness In The Digital Age And The Influence Of Knowledge, Therese L. Williams
Theses and Dissertations
Privacy, in the modern connected world, has become a much discussed topic in society ranging from privacy concerns to impacts, attitudes, practices and technologies. In today’s environment of vast social media and revelations of government spying, personal privacy is being highlighted as either non-existent or something that can be achieved to different degrees with knowledge or awareness of how our private information is collected and used. This research strives to answer the question "Using Alan Westin's privacy categories, what is the general awareness of privacy issues in social media and smartphone usage and how does it change when knowledge is …
Information Theoretic Study Of Gaussian Graphical Models And Their Applications,
2017
Louisiana State University and Agricultural and Mechanical College
Information Theoretic Study Of Gaussian Graphical Models And Their Applications, Ali Moharrer
LSU Doctoral Dissertations
In many problems we are dealing with characterizing a behavior of a complex stochastic system or its response to a set of particular inputs. Such problems span over several topics such as machine learning, complex networks, e.g., social or communication networks; biology, etc. Probabilistic graphical models (PGMs) are powerful tools that offer a compact modeling of complex systems. They are designed to capture the random behavior, i.e., the joint distribution of the system to the best possible accuracy. Our goal is to study certain algebraic and topological properties of a special class of graphical models, known as Gaussian graphs. First, …
Lightweight Environment For Cyber Security Education,
2017
Vivek Oliparambil Shanmughan
Lightweight Environment For Cyber Security Education, Vivek Oliparambil Shanmughan
LSU New Orleans Theses and Dissertations
The use of physical systems and Virtual Machines has become inefficient and expensive for creating tailored, hands-on exercises for providing cyber security training. The main purpose of this project is to directly address these issues faced in cyber security education with the help of Docker containers. Using Docker, a lightweight and automated platform was developed for creating, sharing, and managing hands-on exercises. With the help of orchestration tools, this platform provides a centralized point to monitor and control the systems and exercises with a high degree of automation. In a classroom/lab environment, this infrastructure enables instructors and students not only …
Forensic Analysis Of G Suite Collaborative Protocols,
2017
University of New Orleans
Forensic Analysis Of G Suite Collaborative Protocols, Shane Mcculley
LSU New Orleans Theses and Dissertations
Widespread adoption of cloud services is fundamentally changing the way IT services are delivered and how data is stored. Current forensic tools and techniques have been slow to adapt to new challenges and demands of collecting and analyzing cloud artifacts. Traditional methods focusing only on client data collection are incomplete, as the client may have only a (partial) snapshot and misses cloud-native artifacts that may contain valuable historical information.
In this work, we demonstrate the importance of recovering and analyzing cloud-native artifacts using G Suite as a case study. We develop a tool that extracts and processes the history of …
Automatic Forensic Analysis Of Pccc Network Traffic Log,
2017
Saranyan Senthivel
Automatic Forensic Analysis Of Pccc Network Traffic Log, Saranyan Senthivel
LSU New Orleans Theses and Dissertations
Most SCADA devices have a few built-in self-defence mechanisms and tend to implicitly trust communications received over the network. Therefore, monitoring and forensic analysis of network traffic is a critical prerequisite for building an effective defense around SCADA units. In this thesis work, We provide a comprehensive forensic analysis of network traffic generated by the PCCC(Programmable Controller Communication Commands) protocol and present a prototype tool capable of extracting both updates to programmable logic and crucial configuration information. The results of our analysis shows that more than 30 files are transferred to/from the PLC when downloading/uplloading a ladder logic program using …
Ancr—An Adaptive Network Coding Routing Scheme For Wsns With Different-Success-Rate Links †,
2017
Northwest University
Ancr—An Adaptive Network Coding Routing Scheme For Wsns With Different-Success-Rate Links †, Xiang Ji, Anwen Wang, Chunyu Li, Chun Ma, Yao Peng, Dajin Wang, Qingyi Hua, Feng Chen, Dingyi Fang
Department of Computer Science Faculty Scholarship and Creative Works
As the underlying infrastructure of the Internet of Things (IoT), wireless sensor networks (WSNs) have been widely used in many applications. Network coding is a technique in WSNs to combine multiple channels of data in one transmission, wherever possible, to save node’s energy as well as increase the network throughput. So far most works on network coding are based on two assumptions to determine coding opportunities: (1) All the links in the network have the same transmission success rate; (2) Each link is bidirectional, and has the same transmission success rate on both ways. However, these assumptions may not be …
Anomalydetection: Implementation Of Augmented Network Log Anomaly Detection Procedures,
2017
Air Force Institute of Technology
Anomalydetection: Implementation Of Augmented Network Log Anomaly Detection Procedures, Robert J. Gutierrez, Bradley C. Boehmke, Kenneth W. Bauer, Cade M. Saie, Trevor J. Bihl
Faculty Publications
As the number of cyber-attacks continues to grow on a daily basis, so does the delay in threat detection. For instance, in 2015, the Office of Personnel Management discovered that approximately 21.5 million individual records of Federal employees and contractors had been stolen. On average, the time between an attack and its discovery is more than 200 days. In the case of the OPM breach, the attack had been going on for almost a year. Currently, cyber analysts inspect numerous potential incidents on a daily basis, but have neither the time nor the resources available to perform such a task. …
A Feature-Based Structural Measure: An Image Similarity Measure For Face Recognition,
2017
Edith Cowan University
A Feature-Based Structural Measure: An Image Similarity Measure For Face Recognition, Noor A. Shnain, Zahir Hussain, Song F. Lu
Research outputs 2014 to 2021
Facial recognition is one of the most challenging and interesting problems within the field of computer vision and pattern recognition. During the last few years, it has gained special attention due to its importance in relation to current issues such as security, surveillance systems and forensics analysis. Despite this high level of attention to facial recognition, the success is still limited by certain conditions; there is no method which gives reliable results in all situations. In this paper, we propose an efficient similarity index that resolves the shortcomings of the existing measures of feature and structural similarity. This measure, called …
Breaking Into The Vault: Privacy, Security And Forensic Analysis Of Android Vault Applications,
2017
University of New Haven
Breaking Into The Vault: Privacy, Security And Forensic Analysis Of Android Vault Applications, Xiaolu Zhang, Ibrahim Baggili, Frank Breitinger
Electrical & Computer Engineering and Computer Science Faculty Publications
In this work we share the first account for the forensic analysis, security and privacy of Android vault applications. Vaults are designed to be privacy enhancing as they allow users to hide personal data but may also be misused to hide incriminating files. Our work has already helped law enforcement in the state of Connecticut to reconstruct 66 incriminating images and 18 videos in a single criminal case. We present case studies and results from analyzing 18 Android vault applications (accounting for nearly 220 million downloads from the Google Play store) by reverse engineering them and examining the forensic artifacts …
Marketing Strategy Of School Of Professional Studies In China,
2017
Clark University
Marketing Strategy Of School Of Professional Studies In China, Jiahui Liu, Jing Wang, Shuo An, Wengxing Wang, Yiwei Wang
School of Professional Studies
Chinese students are the most visible international presence at many universities across the United States, and the number continues to grow. Since 2010, The number of graduate students studying abroad has entered the period in which the increase has been declining. Under the circumstance of the weak global economy and high cost of education, the administration needs to attract the attention of Chinese students. In the process of competing for applicants, how to develop marketing strategies to attract students’ eyeballs has become an important means of trying to increase school income through Chinese students. The marketing strategy mentioned in this …
Cybersecurity In An Age Of Cyberterrorism,
2017
Minnesota State University, Mankato
Cybersecurity In An Age Of Cyberterrorism, University Of South Alabama
Crime/Violence
Bibliography and photographs of a display of government documents from the University of South Alabama.
Designing Secure Access Control Model In Cyber Social Networks,
2017
University of Arkansas, Fayetteville
Designing Secure Access Control Model In Cyber Social Networks, Katanosh Morovat
Graduate Theses and Dissertations
Nowadays, information security in online communication has become an indisputable topic. People prefer pursuing their connection and public relations due to the greater flexibility and affordability of online communication. Recently, organizations have established online networking sites concerned with sharing assets among their employees. As more people engage in social network, requirements for protecting information and resources becomes vital. Over the years, many access control methods have been proposed. Although these methods cover various information security aspects, they have not provided an appropriate approach for securing information within distributed online networking sites. Moreover, none of the previous research provides an access …
Dynamic Adversarial Mining - Effectively Applying Machine Learning In Adversarial Non-Stationary Environments.,
2017
University of Louisville
Dynamic Adversarial Mining - Effectively Applying Machine Learning In Adversarial Non-Stationary Environments., Tegjyot Singh Sethi
Electronic Theses and Dissertations
While understanding of machine learning and data mining is still in its budding stages, the engineering applications of the same has found immense acceptance and success. Cybersecurity applications such as intrusion detection systems, spam filtering, and CAPTCHA authentication, have all begun adopting machine learning as a viable technique to deal with large scale adversarial activity. However, the naive usage of machine learning in an adversarial setting is prone to reverse engineering and evasion attacks, as most of these techniques were designed primarily for a static setting. The security domain is a dynamic landscape, with an ongoing never ending arms race …
Efficiently Representing The Integer Factorization Problem Using Binary Decision Diagrams,
2017
Utah State University
Efficiently Representing The Integer Factorization Problem Using Binary Decision Diagrams, David Skidmore
All Graduate Plan B and other Reports, Spring 1920 to Spring 2023
Let p be a prime positive integer and let α be a positive integer greater than 1. A method is given to reduce the problem of finding a nontrivial factorization of α to the problem of finding a solution to a system of modulo p polynomial congruences where each variable in the system is constrained to the set {0,...,p − 1}. In the case that p = 2 it is shown that each polynomial in the system can be represented by an ordered binary decision diagram with size less than 20.25log2(α)3 + 16.5log2(α)2 + …
Hibs-Ksharing: Hierarchical Identity-Based Signature Key Sharing For Automotive,
2017
Huawei Shield Lab
Hibs-Ksharing: Hierarchical Identity-Based Signature Key Sharing For Automotive, Zhuo Wei, Yanjiang Yang, Yongdong Wu, Jian Weng, Robert H. Deng
Research Collection School Of Computing and Information Systems
Equipped with various sensors and intelligent systems, modern cars turn into entities with connectivity, autonomy, and safety. Car rental/car sharing is an innovative transportation concept and integral in today's urban living. It enables users to access a fleet of vehicles located throughout cities. Complementing public transportation, the car-sharing service helps people to meet their transportation needs economically and in an environmentally responsible manner. When a customer wants to rent a car from a rental company or an owner wants to share a private car with his/her friends or family members, the customer or the user should gain admission to the …
Enforcing Database Security On Cloud Using A Trusted Third Party Based Model,
2017
University of Arkansas, Fayetteville
Enforcing Database Security On Cloud Using A Trusted Third Party Based Model, Victor Fuentes Tello
Graduate Theses and Dissertations
Cloud computing offers a considerable number of advantages to clients and organizations that use several capabilities to store sensitive data, interact with applications, or use technology infrastructure to perform daily activities. The development of new models in cloud computing brings with it a series of elements that must be considered by companies, particularly when the sensitive data needs to be protected. There are some concerns related to security that need to be taken into consideration when a service provider manage and store the data in a location outside the company. In this research, a model that uses a trusted third …
Sequence Aware Functional Encryption And Its Application In Searchable Encryption,
2017
Singapore Management University
Sequence Aware Functional Encryption And Its Application In Searchable Encryption, Tran Viet Xuan Phuong, Guomin Yang, Willy Susilo, Fuchun Guo, Qiong Huang
Research Collection School Of Computing and Information Systems
As a new broad vision of public-key encryption systems, functional encryption provides a promising solution for many challenging security problems such as expressive access control and searching on encrypted data. In this paper, we present two Sequence Aware Function Encryption (SAFE) schemes. Such a scheme is very useful in many forensics applications where the order (or pattern) of the attributes forms an important characteristic of an attribute sequence. Our first scheme supports the matching of two bit strings, while the second scheme can support the matching of general characters. These two schemes are constructed based on the standard Decision Linear …
Fair Deposits Against Double-Spending For Bitcoin Transactions,
2017
Singapore Management University
Fair Deposits Against Double-Spending For Bitcoin Transactions, Xingjie Yu, Shiwen M. Thang, Yingjiu Li, Robert H. Deng
Research Collection School Of Computing and Information Systems
In Bitcoin network, the distributed storage of multiple copies of the blockchain opens up possibilities for double spending, i.e., a payer issues two separate transactions to two different payees transferring the same coins. To detect the doublespending and penalize the malicious payer, decentralized non-equivocation contracts have been proposed. The basic idea of these contracts is that the payer locks some coins in a deposit when he initiates a transaction with the payee. If the payer double spends, a cryptographic primitive called accountable assertions can be used to reveal his Bitcoin credentials for the deposit. Thus, the malicious payer could be …
On Return Oriented Programming Threats In Android Runtime,
2017
Singapore Management University
On Return Oriented Programming Threats In Android Runtime, Akshaya Venkateswara Raja, Jehyun Lee, Debin Gao
Research Collection School Of Computing and Information Systems
Android has taken a large share of operating systems forsmart devices including smartphones, and has been an attractive target to theattackers. The arms race between attackers and defenders typically occurs ontwo front lines — the latest attacking technology and the latest updates to theoperating system (including defense mechanisms deployed). In terms of attackingtechnology, Return-Oriented Programming (ROP) is one of the most sophisticatedattack methods on Android devices. In terms of the operating system updates,Android Runtime (ART) was the latest and biggest change to the Android family.In this paper, we investigate the extent to which Android Runtime (ART) makesReturn-Oriented Programming (ROP) attacks …
