11 papers
Workplace Surveillance and Insider Threat Risk Management: Legal Limits and Privacy Harms
Haywood Gelman, John D. Hastings, Suvineetha Herath +1
Workplace surveillance is used by organizations to protect corporate assets and monitor employee productivity. This research presents two central arguments on workplace surveillanc…
Enhancing Attack Detection Capabilities in BACnet/IP Networks Using Machine-Learning Models
Derek Manzella, John D. Hastings
Building Automation Systems (BAS) manage critical building functions using protocols such as BACnet/IP, yet defenders have limited tooling and few labeled datasets for detecting BA…
Bridging the Smart City Cybersecurity Data Gap Through AI-Driven Synthetic Dataset Generation
Stephanie Polczynski, John D. Hastings, Varghese Vaidyan +1
Smart cities rely on interconnected cyber-physical systems that integrate sensors, IoT devices, cloud platforms, and AI-driven services and decision-making. While these systems enh…
Beyond Collection: Measuring the Detection Efficacy of Modern Security Logging Standards
Ryan Holeman, John Hastings, Varghese Mathew Vaidyan
Effective security logging is crucial for the timely and accurate detection of cyber threats; however, the relative effectiveness of various industry-standard logging frameworks re…
Gravity Falls: A Comparative Analysis of Domain-Generation Algorithm (DGA) Detection Methods for Mobile Device Spearphishing
Adam Dorian Wong, John D. Hastings
Mobile devices are frequent targets of eCrime threat actors through SMS spearphishing (smishing) links that leverage Domain Generation Algorithms (DGA) to rotate hostile infrastruc…
An Ethically Grounded LLM-Based Approach to Insider Threat Synthesis and Detection
Haywood Gelman, John D. Hastings, David Kenley
Insider threats are a growing organizational problem due to the complexity of identifying their technical and behavioral elements. A large research body is dedicated to the study o…