Araştırma Makalesi

A Novel Approach to Enhancing Active Directory Security in Academic Institutions

Cilt: 12 Sayı: 4 7 Ocak 2025
PDF İndir
EN

A Novel Approach to Enhancing Active Directory Security in Academic Institutions

Öz

This research rigorously investigates the cybersecurity frameworks within academic institutions, emphasizing the pivotal role and security of Active Directory (AD) systems. By conducting an in-depth analysis of AD infrastructures across 12 universities with critical digital environments, this study scrutinizes access control mechanisms, user identity management, and network segmentation strategies. The findings reveal profound security lapses, such as excessive administrative privileges granted to 75% of non-administrative users and the absence of Demilitarized Zones (DMZs) in 80% of the institutions. Additionally, 65% of the institutions exhibited critical vulnerabilities by not integrating public devices, such as printers and laboratory computers, into the AD framework. The study further highlights the escalating threat of cryptolocker and ransomware attacks, which have increasingly targeted institutions, resulting in significant data encryption and operational disruptions. Moreover, challenges related to the deployment and management of advanced cybersecurity solutions, like CrowdStrike, underscore the complexities in maintaining up-to-date defenses. These issues are compounded by frequent update and upgrade failures, adversely impacting AD health and overall network security. This paper delineates strategic recommendations to enhance AD security, supported by empirical evidence showing a 92% improvement in defense against cyber attacks upon implementing these measures. The insights garnered from this study are aimed at fortifying the cybersecurity postures of academic institutions, thereby mitigating the escalating threats in the digital landscape.

Anahtar Kelimeler

Kaynakça

  1. [1] Chilberto, J., Zaal, S., Aroraa, G., Price, E. (2020). Identity Security with Azure Active Directory. In: Cloud Debugging and Profiling in Microsoft Azure. Apress, Berkeley, CA. https://doi.org/10.1007/978-1-4842-5437-0_7.
  2. [2] Crandall, Carolyn; Cole, Tony, (2022). How to stop attackers from owning your Active Directory. Cyber Security: A Peer-Reviewed Journal, Volume 5 / Number 4 / Summer 2022, pp. 294-302(9).
  3. [3] Guido Grillenmeier,(2023). Improving your Active Directory security posture: AdminSDHolder to the rescue. Cyber Security: A Peer-Reviewed Journal, Volume 6 / Number 3 / Spring 2023, pp. 242-260(19).
  4. [4] Matthew Wharton, Effectively integrating physical security technology into the operational technology domain. (2020). Cyber Security: A Peer-Reviewed Journal, Volume 4 / Number 1 / Autumn/Fall 2020, pp. 29-39(11).
  5. [5] Makadia, Sanam, Think beyond IT security — cyber resilience to build future-ready world : OT and ICS, critical infrastructure and beyond.(2023). Cyber Security: A Peer-Reviewed Journal, Volume 6 / Number 2 / Winter 2022–23, pp. 119-131(13).
  6. [6] Microsoft Digital Defense Report (2022). Microsoft. https://www.microsoft.com, (2023).
  7. [7] Cissé, Moh, An ISO 27001 compliance project for a cyber security service team. (2019), Cyber Security: A Peer-Reviewed Journal, Volume 2 / Number 4 / Summer 2019, pp. 346-359(14).
  8. [8] Wheeler, Evan. Framing cyber security as a business risk. (2019). Cyber Security: A Peer-Reviewed Journal, Volume 2 / Number 3 / Winter 2018–19, pp. 202-210(9).

Ayrıntılar

Birincil Dil

İngilizce

Konular

Yazılım Mühendisliği (Diğer)

Bölüm

Araştırma Makalesi

Erken Görünüm Tarihi

13 Ocak 2025

Yayımlanma Tarihi

7 Ocak 2025

Gönderilme Tarihi

15 Ekim 2024

Kabul Tarihi

6 Kasım 2024

Yayımlandığı Sayı

Yıl 2024 Cilt: 12 Sayı: 4

Kaynak Göster

APA
İş, H. (2025). A Novel Approach to Enhancing Active Directory Security in Academic Institutions. Balkan Journal of Electrical and Computer Engineering, 12(4), 394-402. https://doi.org/10.17694/bajece.1567393
AMA
1.İş H. A Novel Approach to Enhancing Active Directory Security in Academic Institutions. Balkan Journal of Electrical and Computer Engineering. 2025;12(4):394-402. doi:10.17694/bajece.1567393
Chicago
İş, Hafzullah. 2025. “A Novel Approach to Enhancing Active Directory Security in Academic Institutions”. Balkan Journal of Electrical and Computer Engineering 12 (4): 394-402. https://doi.org/10.17694/bajece.1567393.
EndNote
İş H (01 Ocak 2025) A Novel Approach to Enhancing Active Directory Security in Academic Institutions. Balkan Journal of Electrical and Computer Engineering 12 4 394–402.
IEEE
[1]H. İş, “A Novel Approach to Enhancing Active Directory Security in Academic Institutions”, Balkan Journal of Electrical and Computer Engineering, c. 12, sy 4, ss. 394–402, Oca. 2025, doi: 10.17694/bajece.1567393.
ISNAD
İş, Hafzullah. “A Novel Approach to Enhancing Active Directory Security in Academic Institutions”. Balkan Journal of Electrical and Computer Engineering 12/4 (01 Ocak 2025): 394-402. https://doi.org/10.17694/bajece.1567393.
JAMA
1.İş H. A Novel Approach to Enhancing Active Directory Security in Academic Institutions. Balkan Journal of Electrical and Computer Engineering. 2025;12:394–402.
MLA
İş, Hafzullah. “A Novel Approach to Enhancing Active Directory Security in Academic Institutions”. Balkan Journal of Electrical and Computer Engineering, c. 12, sy 4, Ocak 2025, ss. 394-02, doi:10.17694/bajece.1567393.
Vancouver
1.Hafzullah İş. A Novel Approach to Enhancing Active Directory Security in Academic Institutions. Balkan Journal of Electrical and Computer Engineering. 01 Ocak 2025;12(4):394-402. doi:10.17694/bajece.1567393

Cited By

All articles published by BAJECE are licensed under the Creative Commons Attribution 4.0 International License. This permits anyone to copy, redistribute, remix, transmit and adapt the work provided the original work and source is appropriately cited.Creative Commons Lisans