skip to main content
10.1145/3125659.3125686acmconferencesArticle/Chapter ViewAbstractPublication PagesiteConference Proceedingsconference-collections
research-article

Using Capture-the-Flag to Enhance the Effectiveness of Cybersecurity Education

Published:27 September 2017Publication History

ABSTRACT

Incorporating gamified simulations of cybersecurity breach scenarios in the form of Capture-The-Flag (CTF) sessions increases student engagement and leads to more well-developed skills. Furthermore, it enhances the confidence of students in their own abilities. Our argument is supported by a study in which undergraduate students taking a cybersecurity class were surveyed before and after participating in a CTF.

References

  1. J. Ebersole. 2014. Top Issues Facing Higher Education in 2014. Forbes.Google ScholarGoogle Scholar
  2. Facebook. 2017. Facebook CTF Platform. Available at https://github.com/facebook/fbctf.Google ScholarGoogle Scholar
  3. N. Firdausi, H. W. Prabawa, and H. Sutarno. 2017. Improve Student Understanding Ability Through Gamification in Instructional Media Based Explicit Instruction. IOP Conference Series: Journal of Physics.Google ScholarGoogle Scholar
  4. B. Geelan, K. de Salas, I. Lewis, C. King, D. Edwards, and A. O'Mara. 2015. Improving Learning Experiences Through Gamification: A Case Study. Australian Educational Computing Vol. 30 (1).Google ScholarGoogle Scholar
  5. Divakaran Liginlal, Inkook Sim, and Lara Khansa. 2009. How significant is human error as a cause of privacy breaches? An empirical study and a framework for error management. Computers & Security Vol. 28: 215--228. Google ScholarGoogle ScholarDigital LibraryDigital Library
  6. C. Linehan, B. Kirman, S. Lawson, and G. Chan. 2011. Practical, Appropriate, Empirically-Validated Guidelines for Designing Educational Games Proceedings of the SIGCHI Conference on Human Factors in Computing Systems. 1979--1888. Google ScholarGoogle ScholarDigital LibraryDigital Library
  7. R. P. Lopes. 2014. Gamification as a Learning Tool. International Journal of Development and Educational Psychology Vol. 2: 565--574.Google ScholarGoogle Scholar
  8. T. Malone. 1981. Toward a Theory of Intrinsically Motivating Instruction. Cognitive Science. 4.Google ScholarGoogle Scholar
  9. National Audit Office. 2013. The UK cyber security strategy: Landscape review.Google ScholarGoogle Scholar
  10. R. Richter, D. Raban, and S. Rafaeli 2015. Studying Gamification: The Effect of Rewards and Incentives on Motivation. Gamification in Education and Business.Google ScholarGoogle Scholar
  11. D. Shernoff, M. Csikszentmihalyi, B. Schneider, and E. Shernoff 2003. Student Engagement in High School Classrooms from the Perspective of Flow Theory. School Psychology Quarterly Vol. 18(2).Google ScholarGoogle Scholar
  12. Gina Stevens. 2012. Data Security Breach Notification Laws. bibinfotypeTechnical Report. Congressional Research Service.Google ScholarGoogle Scholar
  13. The MITRE Corporation. 2008. CVE-2008-4250. Available from MITRE, CVE-ID CVE-2008-4250.Google ScholarGoogle Scholar
  14. The MITRE Corporation. 2014. CVE-2014-10021. Available from MITRE, CVE-ID CVE-2014-10021.Google ScholarGoogle Scholar
  15. Verizon Business. 2015. 2015 Data Breach Investigations Report.Google ScholarGoogle Scholar
  16. Verizon Business. 2016. 2016 Data Breach Investigations Report.Google ScholarGoogle Scholar

Index Terms

  1. Using Capture-the-Flag to Enhance the Effectiveness of Cybersecurity Education

          Recommendations

          Comments

          Login options

          Check if you have access through your login credentials or your institution to get full access on this article.

          Sign in
          • Published in

            cover image ACM Conferences
            SIGITE '17: Proceedings of the 18th Annual Conference on Information Technology Education
            September 2017
            202 pages
            ISBN:9781450351003
            DOI:10.1145/3125659

            Copyright © 2017 ACM

            Permission to make digital or hard copies of all or part of this work for personal or classroom use is granted without fee provided that copies are not made or distributed for profit or commercial advantage and that copies bear this notice and the full citation on the first page. Copyrights for components of this work owned by others than ACM must be honored. Abstracting with credit is permitted. To copy otherwise, or republish, to post on servers or to redistribute to lists, requires prior specific permission and/or a fee. Request permissions from [email protected]

            Publisher

            Association for Computing Machinery

            New York, NY, United States

            Publication History

            • Published: 27 September 2017

            Permissions

            Request permissions about this article.

            Request Permissions

            Check for updates

            Qualifiers

            • research-article

            Acceptance Rates

            SIGITE '17 Paper Acceptance Rate23of58submissions,40%Overall Acceptance Rate176of429submissions,41%

          PDF Format

          View or Download as a PDF file.

          PDF

          eReader

          View online with eReader.

          eReader