Dakota State University

Beadle Scholar at Dakota State University
Not a member yet
    1393 research outputs found

    An Attack-Centric Approach to Security, Privacy, and Legal Challenges in Virtual Healthcare

    No full text
    As the U.S. healthcare sector continues to evolve, the adoption of virtual care delivery systems has expanded rapidly. This digital transformation has intensified concerns regarding the security and privacy of Protected Health Information (PHI). To address these challenges, this study employed a sequential, exploratory mixed-methods approach to examine the evolving threat landscape and to develop an attack-centric threat model for virtual healthcare environments. In the first phase, a qualitative analysis of regulatory enforcement and legal effectiveness was conducted to examine compliance gaps, privacy risks, and legal consequences within virtual healthcare systems. Building on the qualitative findings, the second phase quantitatively analyzed healthcare data breaches reported to the U.S. Department of Health and Human Services Office for Civil Rights (HHS OCR) from 2009 to 2025, identifying trends in frequency, severity, and causes of breaches involving protected health information (PHI). The findings revealed that hacking and ITrelated incidents accounted for nearly half of all reported breaches and more than 90% of compromised PHI records. Healthcare providers were the most affected entities (73.6%), followed by business associates (14.0%) and health plans (12.2%). These results highlight persistent vulnerabilities across administrative, technical, and legal safeguards, despite regulatory frameworks such as the Health Insurance Portability and Accountability Act (HIPAA) and General Data Protection Regulation (GDPR). Based on these insights, this study introduces the Attack-Centric Approach (ACA) Model, a unified framework that integrates security, privacy, and legal compliance requirements. The model strengthens system resilience, promotes accountability and trust, and ensures regulatory alignment across virtual healthcare delivery environments

    Toward extracting scattering phase shifts from integrated correlation functions. V. Complex 4 field model in 3 +1 dimensions

    No full text
    In Guo [Toward extracting the scattering phase shift from integrated correlation functions. II. A relativistic lattice field theory model, Phys. Rev. D 110, 014504 (2024).] and associated studies, a relativistic finite-volume formalism in 1 +1 dimensions is proposed to extract infinite-volume scattering phaseshift. It is based on the difference of integrated correlation functions rather than energy spectrum in the finite volume, and can be regarded as complementary to the well-known Lüscher formalism. In the present work, the formalism is further extended into 3 +1 dimensional spacetime. The aim is to explore and demonstrate the challenges in applying the formalism to more practical settings. Specifically, Monte Carlo simulations of a complex 4 relativistic field model are carried out in both 2+1 and 3+1 dimensions on lattices of varying sizes, and phaseshifts for the contact interaction are extracted from the formalism using modest computing resources

    Privacy in Flux: A 35-Year Review of Trends, Legal Evolution, and Emerging Challenges

    No full text
    Privacy harms have expanded alongside rapid technological change, challenging the adequacy of existing regulatory frameworks. This systematic review (1990–2025) systematically maps documented privacy harms to specific legal mechanisms and observed enforcement outcomes across jurisdictions, using PRISMA-guided methods and ROBIS risk-of-bias assessment. We synthesize evidence on major regimes (e.g., GDPR, COPPA, CCPA, HIPAA, GLBA) and conduct comparative legal analysis across the U.S., E.U., and underexplored regions in Asia, Latin America, and Africa. Key findings indicate increased recognition of data subject rights, persistent gaps in cross-border data governance, and emerging risks from AI/ML/LLMs, IoT, and blockchain, including data breaches, algorithmic discrimination, and surveillance. While regulations have advanced, enforcement variability and fragmented standards limit effectiveness. We propose strategies for harmonization and risk-based, technology-neutral safeguards. While focusing on the U.S. sectoral and E.U. comprehensive models, we include targeted comparisons with Canada (PIPEDA), Australia (Privacy Act/APPs), Japan (APPI), India (DPDPA), Africa (POPIA/NDPR/Kenya DPA), and ASEAN interoperability instruments. This review presents an evidence-based framework for understanding the interplay between evolving harms, emerging technologies, and legal protections, and identifies priorities for strengthening global privacy governance

    Research Aiming to Understand Baseline Cybersecurity Awareness for Senior Citizens and Their Training Needs

    Get PDF
    Cybercrime evolves over time to create significant dangers that affect individuals of all ages. The senior population faces extraordinary risk from cybercriminals who specifically target them. The Senior Citizen Cybersecurity Awareness Training Program emerged as a response to the increasing security concern. The initiative delivers specialized training to older adults between 60 and 90 years old to teach them essential digital threat protection skills. The research drew its motivation from individual experiences combined with a goal to defend aging family members through video-based instructional teaching of essential cybersecurity principles. The training program includes six important cybersecurity concepts: Social Network Attacks, Password Security, Phishing, Mobile Security, Vishing/Pretexting, and Multi-Factor Authentication (MFA). These topics are important for understanding and implementing effective cybersecurity awareness. The participants watched an educational video while taking surveys at the beginning and end of the training sessions. The research findings show that senior participants experienced quantifiable growth in their understanding of cybersecurity principles. The research-based program delivers benefits to both the researcher\u27s family members and provides a replicable framework for reaching more community members. The research establishes a safer online environment by reducing digital security risks for older adults which benefits everyone

    If You Have Nothing to Hide, You Still Have Something to Fear: How Libraries Can Support Alternative Information Channels

    No full text
    Libraries in the U.S. have seen massive increases in book challenges in recent years. Since books are one of the library’s vital resources, censoring books can have a great impact on libraries and patrons. To counteract the effects of censorship, libraries need to adopt and support alternative information channels so information can still be accessed through other channels even if one is shut down.https://scholar.dsu.edu/research-symposium/1065/thumbnail.jp

    Machine Learning and SHAP Interpretability for Chronic Disease Understanding

    Get PDF
    Our study predicts non-communicable diseases (NCDs), such as diabetes, by leveraging machine learning algorithms. We leverage hyperparameter tuning techniques for model development and SHapley Additive exPlanation (SHAP) for results interpretations.https://scholar.dsu.edu/erposters/1013/thumbnail.jp

    Deep Learning in Computer Programming Courses: Designing Related Syllabus in the IS Curriculum

    No full text
    Teaching computer programming (CP) requires cutting-edge practical approaches, including (i) updated course design, (ii) modern pedagogical techniques, and (iii) course completion that verifies practically applicable knowledge. Most existing literature has examined various teaching methods and their combinations for conducting CP courses (ii) in the information systems (IS) discipline. However, the other two practical aspects (i & iii) have rarely been considered together for developing effective teaching and learning environments, even though combining different teaching approaches greatly promotes deep learning and helps build practice-oriented knowledge. Therefore, this study argues that achieving this goal is unlikely without the comprehensive and integrated development of all three practical aspects. This research offers a clear pathway for organizing introductory CP courses within the IS curriculum by uniting these course practicalities into a single framework. The framework was created based on data from a Norwegian public university and evaluated at a state university in the US. With necessary adjustments, this study can also be applied to teaching other CP courses in this field

    Assessing Evasion Attacks on Tree-Based Machine Learning Models: Supervised vs. Unsupervised Approaches

    No full text
    An evasion attack is a type of attack where an attacker maliciously modifies queries to a machine learning model to cause it to return incorrect or altered predictions. This paper presents and evaluates three evasion attack algorithms that target tree-based learners, including decision trees, random forests, adaptive boosting ensembles, and isolation forests. We evaluate these three attack algorithms using the RT-IoT2022 network traffic dataset. The evaluation results indicate that the presented evasion attacks are effective across all four target models. We also compare the three algorithms using perturbation measurements. Our study shows that the perturbations generated for the isolation forest model were significantly larger than those generated for the other supervised classifiers, despite the use of similar attack algorithms across the ensemble models. To the best of our knowledge, this is the first study to present an effective evasion attack against the isolation forest algorithm

    Automatic dependent surveillance: attacks, challenges and countermeasures

    No full text
    This work surveys existing research involving Cybersecurity proposals to improve the Confidentiality and Integrity of Automatic Dependent Surveillance (ADS) messages. The ADS network represents the International Civil Aviation Organization’s (ICAO) recommended standard for tracking navigational information about aircraft in transit. The standard utilizes existing hardware and transmission protocols to allow for easy adoption using hardware already installed on aircraft however, due to size limitations, structure, and traffic congestion, offers limited to no protections in terms of data integrity and confidentiality. While the lack of confidentiality is typically driven by ICAO’s and the Federal Aviation Administration’s (FAA) desire for civil aviation flight navigation to be open and transparent, the lack of data integrity protection seems to revolve around cyber security being an afterthought. Researchers have identified this gap have provided proposals on how to introduce measures to protect the integrity of ADS data and in some cases introduce a level of confidentiality as well, throughout this survey we will explore the existing research to identify gaps and avenues of advancing the research further

    Evaluating and Proposing the Best Practices for DevSecOps: A Research-Based Analysis

    No full text
    This research evaluates the adoption of DevSecOps among small to medium sized enterprises (SMEs), identifying key challenges, best practices, and future trends. Through a mixed methods approach backed by the Technology Acceptance Model (TAM) and Diffusion of Innovations (DOI) theory, we analyzed survey data from 405 SME professionals, revealing that while 68% have implemented DevSecOps, adoption is hindered by technical complexity (41%), resource constraints (35%), and cultural resistance (38%). Despite strong leadership prioritization of security (73%), automation gaps persist, with only 12% of organizations performing security scans per commit. Our findings highlight a growing integration of security tools, particularly API security (63%), software composition analysis (62%), static application security testing (SAST) (60%), and infrastructure as code (IaC) security (59%), although container security adoption remains low (34%). Looking ahead, SMEs anticipate artificial intelligence and machine learning to significantly influence DevSecOps, highlighting the need for proactive adoption of AI driven security enhancements. Based on our findings, this research proposes strategic best practices to enhance Continuous Integration and Continuous Delivery (CI/CD) pipeline security including automation, leadership driven security culture, and cross team collaboration. This research bridges theory and practice, offering actionable recommendations to empower SMEs in building resilient cybersecurity ecosystems

    998

    full texts

    1,393

    metadata records
    Updated in last 30 days.
    Beadle Scholar at Dakota State University
    Access Repository Dashboard
    Do you manage Open Research Online? Become a CORE Member to access insider analytics, issue reports and manage access to outputs from your repository in the CORE Repository Dashboard! 👇