Open Access. Powered by Scholars. Published by Universities.®

Information Security Commons™

Open Access. Powered by Scholars. Published by Universities.®

4,669 Full-Text Articles 6,837 Authors 4,560,043 Downloads 178 Institutions

All Articles in Information Security

Faceted Search

4,669 full-text articles. Page 14 of 201.

Securing Biometric Data, Alyssa F. Carroll 2025 Christopher Newport University

Securing Biometric Data, Alyssa F. Carroll

Cybersecurity Undergraduate Research Showcase

Biometric data has been widely adopted across various sectors, including digital identity, artificial intelligence (AI), border control, digital wallets, and national identification systems. While biometric identifiers—such as fingerprints, retina scans, and facial recognition—offer reliable and convenient authentication, they also raise significant concerns regarding privacy and security. This paper examines how biometric data is stored, the vulnerabilities it faces, and the most effective methods for safeguarding it. By highlighting the critical importance of biometric data protection, this study reviews current research on approaches, strategies, and policies that enhance security while preserving the functionality and efficiency of biometric systems.


Ivyapc: Auditable Generalized Payment Channels, Ming LI, Yuxian LI, Jian WENG, Yingjiu LI, Jiasi WENG, Junzuo LAI, Robert H. DENG 2025 Singapore Management University

Ivyapc: Auditable Generalized Payment Channels, Ming Li, Yuxian Li, Jian Weng, Yingjiu Li, Jiasi Weng, Junzuo Lai, Robert H. Deng

Research Collection School Of Computing and Information Systems

Payment channels are a cornerstone of a scalable blockchain infrastructure that enables transacting parties to lock assets on the blockchain and perform rapid off-chain updates with minimal latency and overhead. These protocols dramatically reduce on-chain interaction and improve throughput, with blockchain consensus only invoked in the event of disputes or final closure. While widely adopted in single-chain settings—such as in the Lightning Network for Bitcoin—existing constructions have several limitations, in particular they suffer from at least one of the following limitations: 1. No cross-chain. They do not enable fast trading of assets that reside on multiple isolated blockchains. 2. Non-optimal …


Collaborative Network Traffic Management Strategies Using Distributed Reinforcement Learning And Large Language Models, Saeed Rashed Alkuwaiti 2025 United Arab Emirates University

Collaborative Network Traffic Management Strategies Using Distributed Reinforcement Learning And Large Language Models, Saeed Rashed Alkuwaiti

Theses

The focus of this research is to explore collaborative network traffic management strategies using the Distributed Reinforcement Learning (DRL) and Large Language Models (LLMs) approaches. It emphasizes exploring a new tool for addressing network traffic by utilizing Distributed Reinforcement Learning (DRL) and Large Language Models (LLMs). This is achieved by utilizing self-organizing and self-directing techniques to optimize the network performance. Using the NF-TON-IOT dataset, various classifiers such as Random Forest, AdaBoost, C4. 5, Multi-Layer Perceptron (MLP), and SVM with an RBF kernel were tested for traffic classification and intrusion detection. Research recommends that DRL optimizes the complexity of the network …


Intelligence Process Of Marine Security: Model Construction And Case Deduction, Xuehui WANG, Feng HU, Peiwen WANG 2025 College of Military and Political Basic Education, National University of Defense Technology, Changsha 410073

Intelligence Process Of Marine Security: Model Construction And Case Deduction, Xuehui Wang, Feng Hu, Peiwen Wang

Journal of Scientific Information Research

[Purpose/significance]In recent years, our country has been increasingly threatened by security threats from the maritime direction. In this regard, it is necessary to strengthen the intelligence construction in the maritime security system and improve the effectiveness of intelligence in maritime security governance/decision-making.[Method/process]Comprehensively applying the methods of literature research, comparative analysis and case demonstration, on the basis of clarifying the connotation of relevant concepts, sorting out and evaluating the existing intelligence process models in the academic community, combined with the actual scenarios of maritime security incidents, construct an intelligence process model for maritime security assurance and take Fukushima nuclear sewage discharged …


Assessing Readiness For Transformation From Rulebased To Ai-Based Chatbot In Uae Healthcare: A Case Study Of A Rehabilitation Hospital In Abu Dhabi, Mubarak Alketbi 2025 United Arab Emirates University

Assessing Readiness For Transformation From Rulebased To Ai-Based Chatbot In Uae Healthcare: A Case Study Of A Rehabilitation Hospital In Abu Dhabi, Mubarak Alketbi

Theses

This study investigates the readiness for transforming rule-based chatbots to AI-based chatbots in UAE healthcare, examining a rehabilitation hospital in Abu Dhabi through quantitative research involving healthcare professionals (N=96) and technical analysis. Findings revealed positive perceptions of the current system alongside enhancement opportunities through AI capabilities, with perceived usefulness strongly correlating with behavioural intention, high service quality ratings for empathy and responsiveness, midcareer professionals demonstrating the highest AI acceptance levels, and system integration identified as the highest priority implementation area.

The research contributes to healthcare technology transformation knowledge in the UAE by providing a structured implementation framework addressing technical requirements, …


Global Crossroads Of Cybercrime: Youth, Enterprise And State Vulnerabilities In The Digital Age, Christopher S. Kayser, Kyung-shick Choi 2025 Boston University

Global Crossroads Of Cybercrime: Youth, Enterprise And State Vulnerabilities In The Digital Age, Christopher S. Kayser, Kyung-Shick Choi

International Journal of Cybersecurity Intelligence & Cybercrime

No abstract provided.


Cybercrime As A Threat To The Banking Sector: A Perspective From Commercial Banks In Bangladesh, Hasibul Hossain, Rezaul Karim Shohag, Nikhil Chandra Nath, Sushmita Das Dalia 2025 University of Dhaka

Cybercrime As A Threat To The Banking Sector: A Perspective From Commercial Banks In Bangladesh, Hasibul Hossain, Rezaul Karim Shohag, Nikhil Chandra Nath, Sushmita Das Dalia

International Journal of Cybersecurity Intelligence & Cybercrime

Cyber and technology related crimes are gradually increasing all over the world due to rapid transitions and transactions in the digital world and cyberspace. Cyber related threats are increasingly becoming universal, multi-faceted, sophisticated and transnational in this tech-driven age. Governments, law enforcement agencies, IT professionals, scholars, and researchers worldwide have been concerned about digital deviance and crime. The transition to this widespread cybercrime is particularly difficult for developing countries. Recently, the banking sectors in Bangladesh have seen the emerging threats to its system and reserves through cyberspace, e. g. cyber-attacks or taking illegal access. Cybercrime is becoming a threat to …


Need Of Paradigm Shift In Cybersecurity Implementation For Small And Medium Enterprises (Smes), Shekhar Pawar, Hemant Palivela 2025 Swiss School of Business and Management School Geneva

Need Of Paradigm Shift In Cybersecurity Implementation For Small And Medium Enterprises (Smes), Shekhar Pawar, Hemant Palivela

International Journal of Cybersecurity Intelligence & Cybercrime

The increasing digitization of small and medium enterprises (SMEs) has significantly increased their attack surface, creating opportunities for various cyberthreats. In the global market, there are various cybersecurity standards and frameworks available, but there are still many cyber news stories from each corner of the world talking about increasing sophisticated cyber-attacks among organizations. According to recent studies, one out of five cyberattacks is targeting SMEs. Even though SMEs are relatively smaller as individuals, they are responsible for maximum contribution towards the betterment of the global economy, including the highest role in GDP and various employment opportunities. As compared to large …


Enmob: Unveil The Behavior With Multi-Flow Analysis Of Encrypted App Traffic, Mengmeng GE, Ruitao FENG, Likun LIU, Xiangzhan YU, Sachidananda VINAY, Xiaofei XIE, Yang LIU 2025 Singapore Management University

Enmob: Unveil The Behavior With Multi-Flow Analysis Of Encrypted App Traffic, Mengmeng Ge, Ruitao Feng, Likun Liu, Xiangzhan Yu, Sachidananda Vinay, Xiaofei Xie, Yang Liu

Research Collection School Of Computing and Information Systems

In the contemporary digital landscape, mobile applications have become the predominant conduit for internet connectivity and daily tasks. Simultaneously, the advent of application encryption technology has safeguarded users’ privacy. However, this encryption, while fortifying privacy, introduces challenges to security by hindering the effective management of network applications within encrypted data streams. Conventional detection methods for encrypted application traffic, relying heavily on statistical metrics like payload, packet size, and distribution, are constrained to single traffic flows, often yielding results of limited specificity. To address this limitation, our paper introduces an innovative approach that elucidates the multi-flow nature of application behavior traffic …


The Urgency Of Instituting Systemic Cybersecurity Curriculum Within Stem At Secondary Educational Levels In Preparation For Postsecondary Institutions., Robert Spencer 2025 Penn State University

The Urgency Of Instituting Systemic Cybersecurity Curriculum Within Stem At Secondary Educational Levels In Preparation For Postsecondary Institutions., Robert Spencer

Journal of Cybersecurity Education, Research and Practice

Over the last 20 years, many secondary institutions have made advances developing curriculum defined as “STEM (Science, Engineering and Mathematics)” in order to ensure secondary students are eligible to apply as well excel in technology degree programs at the college and university levels. Although various initiatives exist, there are studies however, which allude to a great possibility that there will be a lack of cybersecurity professionals filling present day and anticipated future positions. Despite a large number of federal and educational enhancements there is need for additional research regarding instituting overall systemic processes and curriculum which supports secondary student transition …


Advanced Techniques In Symmetric Key Cryptanalysis, Debasmita Chakraborty 2025 Indian Statistical Institute

Advanced Techniques In Symmetric Key Cryptanalysis, Debasmita Chakraborty

Doctoral Theses

Symmetric key cryptographic primitives are essential tools used extensively in daily digital interactions. These primitives are mainly designed to provide three key services: ensuring data confidentiality, maintaining data integrity, and verifying the authenticity of data sources. The primary types of symmetric key primitives that deliver these services include block ciphers, stream ciphers, hash functions, message authentication codes, and authenticated encryption with associated data. This thesis mainly explores the security analysis of hash functions, several block ciphers, and stream ciphers using some advanced cryptanalytic techniques. We begin by examining the collision security of a hash function, specifically under the assumption that …


An Efficient Conjunctive Keyword Searchable Encryption For Cloud-Based Iot Systems, Tianqi Peng, Bei Gong, Chong Guo, Akhtar Badshah, Muhammad Waqas, Hisham Alasmary, Sheng Chen 2025 Edith Cowan University

An Efficient Conjunctive Keyword Searchable Encryption For Cloud-Based Iot Systems, Tianqi Peng, Bei Gong, Chong Guo, Akhtar Badshah, Muhammad Waqas, Hisham Alasmary, Sheng Chen

Research outputs 2022 to 2026

Data privacy leakage has always been a critical concern in cloud-based Internet of Things (IoT) systems. Dynamic Symmetric Searchable Encryption (DSSE) with forward and backward privacy aims to address this issue by enabling updates and retrievals of ciphertext on untrusted cloud server while ensuring data privacy. However, previous research on DSSE mostly focused on single keyword search, which limits its practical application in cloud-based IoT systems. Recently, Patranabis (NDSS 2021) [1] proposed a groundbreaking DSSE scheme for conjunctive keyword search. However, this scheme fails to effectively handle deletion operations in certain circumstances, resulting in inaccurate query results. Additionally, the scheme …


How To Securely Delegate And Revoke Partial Authorization Credentials, Meng SUN, Junzuo LAI, Wei WU, Ye YANG, Cheng-Kang CHU, Robert H. DENG 2025 Jinan University - China

How To Securely Delegate And Revoke Partial Authorization Credentials, Meng Sun, Junzuo Lai, Wei Wu, Ye Yang, Cheng-Kang Chu, Robert H. Deng

Research Collection School Of Computing and Information Systems

An attribute-based credential (ABC) system allows a user, obtaining a credential on a set of attributes from an issuer, to anonymously prove a subset of attributes to a service provider. Nowadays, delegation is an important requirement of ABC, which allows a user to delegate his credentials to other users. However, traditional delegatable ABC systems only support delegating a credential with all attributes. In many scenarios, an appropriate delegation is a user can delegate his credential on parts of attributes to others. Another requirement is revocation of credentials in case of unexpected events. In this article, we propose a delegatable and …


Fully Selective Opening Secure Ibe From Lwe, Dingding JIA, Haiyang XUE, Bao LI 2025 Singapore Management University

Fully Selective Opening Secure Ibe From Lwe, Dingding Jia, Haiyang Xue, Bao Li

Research Collection School Of Computing and Information Systems

Selective opening security ensures that, when an adversary is given multiple ciphertexts and corrupts a subset of the senders (thereby obtaining the plaintexts and the senders’ randomness), the privacy of the remaining ciphertexts is still preserved. Previous selective opening secure IBE schemes encrypt messages bit-by-bit, or only achieve selective-id security. In this paper, we present the first adaptive-id, selective opening secure identity-based encryption (IBE) tightly from LWE. To achieve this, we introduce a new primitive called delegatable all-but-many lossy trapdoor functions (DABM-LTDF) and provide a generic construction that converts DABM-LTDF into an adaptive-id, selective opening secure IBE through a tight …


Out-Of-Band Anomaly Detection For Real Time Operating Systems, Jeff K. Holifield 2025 University of South Alabama

Out-Of-Band Anomaly Detection For Real Time Operating Systems, Jeff K. Holifield

Shelby Hall Graduate Research Forum Posters

Real Time Operating Systems (RTOS) are increasing present throughout the industrial, business, defense, and healthcare spaces. These lightweight and efficient operating systems are designed to run on embedded, resource constrained devices, often within cyber-physical systems (CFS). A defining characteristic of RTOSs is that they are deterministic. Tasks are scheduled to run on fixed timelines within guaranteed execution windows. To accomplish tasks on time, real time software must conform to worst case execution times (WCETs) as design parameters. WCET is the maximum time a particular task can take to complete. Exceeding the WCET could cause system failure and lead to damage, …


Analysis Of Forensic Techniques For Additive Manufacturing Devices, Daniel B. Miller, Brad Glisson, Mark Yampolskiy, J Todd McDonald 2025 University of South Alabama

Analysis Of Forensic Techniques For Additive Manufacturing Devices, Daniel B. Miller, Brad Glisson, Mark Yampolskiy, J Todd Mcdonald

Shelby Hall Graduate Research Forum Posters

Additive Manufacturing (AM) is a set of newer computer-dependent production technologies that is seeing rapid adoption across a wide variety of industries, including defense, aerospace, automotive, and healthcare. With increased adoption comes an increased opportunity for misuse and abuse of such systems, which will lead to an increased need for Digital Forensic investigations into these platforms. This research forensically analyzes a number of AM devices to explore the options available for data acquisition as well as the impacts of hardware and software design choices on the analysis and investigation results. Hardware is investigated using Open-Source Intelligence (OSINT) sources to determine …


Polyglot File Detection For Forensics, Chase Stevens, Michael Black 2025 University of South Alabama

Polyglot File Detection For Forensics, Chase Stevens, Michael Black

Shelby Hall Graduate Research Forum Posters

Polyglot files are problematic as payloads can be hidden inside them while simultaneously evading discovery by current forensic tools. Autopsy, one of the most used forensic tools in investigations, uses known signatures of file types (e.g., headers, trailers) to identify and recover files. Polyglot files are a unique case in which files are intentionally combined with other file types to make them appear benign while still containing malicious payloads. Polyglots are possible due to combinations being considered valid in both formats. Polyglot files inherently evade detection from signature-based forensic tools and malware scanners because the tools and malware scanners are …


Using Image-Based Representation For Network Intrusion Detection, Chakriya Suon, J. Todd McDonald 2025 University of South Alabama

Using Image-Based Representation For Network Intrusion Detection, Chakriya Suon, J. Todd Mcdonald

Shelby Hall Graduate Research Forum Posters

The primary focus of our research is to evaluate the effectiveness of converting network traffic data, PCAPs, into image-based representations for anomaly-based network intrusion detection. We aim to analyze PCAPs to detect malware, or malicious software in hopes of creating a useful approach for anomaly detection against cyber threats including Advanced Persistent Threats (APTs). With the rise of cyber threats, cybersecurity continues to play a critical role in the ever-changing landscape of technology, by protecting and defending against threat agents. Our research will apply novel machine learning (ML) techniques to detect potential malware transmitted over a network effectively. The overall …


Learning Without Labels: A Self-Supervised Learning Approach For Anomaly Detection In Control Systmes, Barbara Gladney 2025 University of South Alabama

Learning Without Labels: A Self-Supervised Learning Approach For Anomaly Detection In Control Systmes, Barbara Gladney

Shelby Hall Graduate Research Forum Posters

Oil pipelines, water plant systems, and other critical infrastructure are managed and operated by industrial control systems (ICS). These systems safeguard the operations of critical infrastructures, requiring minimal disruption from cyberattacks or malfunctions. The use of anomaly detection methods in control systems (ICS) can reduce system interruptions. However, anomaly detection methods often require annotated data, which may not be available for the control system. Additionally, the datasets used for the control systems do not include sensor outputs and environmental data, resulting in a restricted view of the system. This research investigates how SSL models can be applied to different control …


Directing Sophisticated Cyberattacks On Public Water Infrastructure, Ayrton C. Purdy, Jordan Shropshire 2025 University of South Alabama

Directing Sophisticated Cyberattacks On Public Water Infrastructure, Ayrton C. Purdy, Jordan Shropshire

Shelby Hall Graduate Research Forum Posters

In recent years there has been an increasing number of cyberattacks on public water generation and distribution systems. Advanced persistent attackers could usurp sensor and control systems to contaminate public drinking water. In order to conceal their malicious activity, they can manipulate sensor data flows to give the appearance of normal activity. The compromised sensors would report normal chemical levels even though unsafe water is entering the distribution system. In response, this research proposes a multi-sensor, cross-validation approach to anomaly detection. The proposed approach is designed to detect sophisticated cyberattacks which are not easily detectable using traditional cyber tools. The …


Digital Commons powered by bepress