Abstract
Capture the flag (CTF) has been applied with success in cybersecurity education, and works particularly well when learning offensive techniques. However, defensive security and incident response do not always naturally fit the existing approaches to CTF. We present Hackerbot, a unique approach for teaching computer security: students interact with a malicious attacker chatbot, who challenges them to complete a variety of security tasks, including defensive and investigatory challenges. Challenges are randomised using SecGen, and deployed onto an oVirt infrastructure. Evaluation data included system performance, mixed methods questionnaires (including the Instructional Materials Motivation Survey (IMMS) and the System Usability Scale (SUS)), and group interviews/focus groups. Results were encouraging, finding the approach convenient, engaging, fun, and interactive; while significantly decreasing the manual marking workload for staff. The cloud infrastructure deployment using SecGen/oVirt was a success, generating VMs with randomised challenges, and enabling students to work from home.
More Information
Status: | Published |
---|---|
Refereed: | Yes |
Publisher: | USENIX Association |
Depositing User (symplectic) | Deposited by Schreuders, Cliffe |
Date Deposited: | 13 Jun 2018 16:11 |
Last Modified: | 11 Jul 2024 07:51 |
Event Title: | 2018 USENIX Workshop on Advances in Security Education |
Event Dates: | 13 August 2018 - 13 August 2018 |
Item Type: | Conference or Workshop Item (Paper) |
Download
Note: this is the author's final manuscript and may differ from the published version which should be used for citation purposes.
License: Creative Commons Attribution
| Preview
Export Citation
Explore Further
Read more research from the author(s):