Cybersecurity vulnerabilities and solutions in Ethiopian university websites

被引:2
|
作者
Eshetu, Ali Yimam [1 ]
Mohammed, Endris Abdu [1 ]
Salau, Ayodeji Olalekan [2 ,3 ]
机构
[1] Woldia Univ, Inst Technol, Sch Elect & Comp Engn, Woldia, Ethiopia
[2] Afe Babalola Univ, Dept Elect Elect & Comp Engn, Ado Ekiti, Nigeria
[3] Saveetha Inst Med & Tech Sci, Saveetha Sch Engn, Chennai, Tamil Nadu, India
关键词
Cybersecurity in higher education; Information security standards; Nessus; Nmap; VAPT; Vega; SECURITY;
D O I
10.1186/s40537-024-00980-z
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
This study investigates the causes and countermeasures of cybercrime vulnerabilities, specifically focusing on selected 16 Ethiopian university websites. This study uses a cybersecurity awareness survey, and automated vulnerability assessment and penetration testing (VAPT) technique tools, namely, Nmap, Nessus, and Vega, to identify potential security threats and vulnerabilities. The assessment was performed according to the ISO/IEC 27001 series of standards, ensuring a comprehensive and globally recognized approach to information security. The results of this study provide valuable insights into the current state of cybersecurity in Ethiopian universities and reveals a range of issues, from outdated software and poor password management to a lack of encryption and inadequate access control. Vega vulnerability assessment reports 11,286 total findings, and Nessus identified a total of 1749 vulnerabilities across all the websites of the institutions examined. Based on these findings, the study proposes counteractive measures tailored to the specific needs of each identified defect. These recommendations aim to strengthen the security posture of the university websites, thereby protecting sensitive data and maintaining the trust of students, staff, and other stakeholders. The study emphasizes the need for proactive cybersecurity measures in the realm of higher education and presents a strategic plan for universities to improve their digital security. The study investigates the causes of cybersecurity vulnerabilities in university websites, with a focus on Ethiopian Universities.The evaluation was based on ISO/IEC 27001 series standards and utilized three different automatic VAPT evaluation tools: Nmap, NESSUS, and VEGA.The research identified a range of issues contributing to cybersecurity vulnerabilities, including outdated software, poor password management, a lack of encryption, and inadequate access control.The study underscores the importance of proactive cybersecurity practices in the higher education sector and provides a roadmap for universities to enhance their digital security.
引用
收藏
页数:35
相关论文
共 50 条
  • [1] Vulnerabilities, Attacks and Solutions of Cybersecurity in Medical Domain
    Dhanare, Ritesh
    Sharma, Prakash Chandra
    Srivastava, Devesh Kumar
    2021 INTERNATIONAL CONFERENCE ON COMPUTATIONAL PERFORMANCE EVALUATION (COMPE-2021), 2021, : 34 - +
  • [2] Survey: Cybersecurity Vulnerabilities, Attacks and Solutions in the Medical Domain
    Razaque, Abdul
    Amsaad, Fathi
    Khan, Meer Jaro
    Hariri, Salim
    Chen, Shujing
    Chen Siting
    Ji, Xingchen
    IEEE ACCESS, 2019, 7 : 168774 - 168797
  • [3] Cybersecurity in the Oil and Gas Sector: Vulnerabilities, Solutions, and Future Directions
    Pothana, Prasad
    Gokapai, Vasanth
    Ramaseri-Chandra, Ananth N.
    2024 CYBER AWARENESS AND RESEARCH SYMPOSIUM, CARS 2024, 2024,
  • [4] Cybersecurity Threats and Vulnerabilities in the Metaverse
    Sharma, Ramesh C.
    Zamfiroiu, Alin
    2023 INTERNATIONAL CONFERENCE ON INTELLIGENT METAVERSE TECHNOLOGIES & APPLICATIONS, IMETA, 2023, : 188 - 194
  • [5] Impact of Human Vulnerabilities on Cybersecurity
    Alsharif M.
    Mishra S.
    AlShehri M.
    Computer Systems Science and Engineering, 2021, 40 (03): : 1153 - 1166
  • [6] Impact of Human Vulnerabilities on Cybersecurity
    Alsharif, Maher
    Mishra, Shailendra
    AlShehri, Mohammed
    COMPUTER SYSTEMS SCIENCE AND ENGINEERING, 2022, 40 (03): : 1153 - 1166
  • [7] A survey of cybersecurity vulnerabilities in healthcare systems
    Alodaynan, Abdullah Mohammed
    Alanazi, Adwan Alownie
    INTERNATIONAL JOURNAL OF ADVANCED AND APPLIED SCIENCES, 2021, 8 (12): : 48 - 55
  • [8] A survey on blockchain cybersecurity vulnerabilities and possible countermeasures
    Hasanova, Huru
    Baek, Ui-jun
    Shin, Mu-gon
    Cho, Kyunghee
    Kim, Myung-Sup
    INTERNATIONAL JOURNAL OF NETWORK MANAGEMENT, 2019, 29 (02)
  • [9] Cybersecurity Vulnerabilities in Off-Site Construction
    Nyamuchiwa, Kudakwashe
    Lei, Zhen
    Aranas, Clodualdo, Jr.
    APPLIED SCIENCES-BASEL, 2022, 12 (10):
  • [10] A Review on Cybersecurity Vulnerabilities for Unmanned Aerial Vehicles
    Krishna, Leela C. G.
    Murphy, Robin R.
    2017 IEEE INTERNATIONAL SYMPOSIUM ON SAFETY, SECURITY AND RESCUE ROBOTICS (SSRR), 2017, : 194 - 199