Author: Dr. Zhijiang Chen (Frostburg State University)
The week moves from core definitions to practical security decisions.
Core reading concept for Week 15.
Core reading concept for Week 15.
Core reading concept for Week 15.
Core reading concept for Week 15.
Students should explain, apply, and evaluate the week’s main security ideas.
Use a realistic scenario to anchor Emerging Threats and the Future of Cybersecurity in operational decision-making.
This final chapter looks forward — examining how the threat landscape is evolving, what new technologies are reshaping both offensive and defensive security, and what the field…
The cybersecurity threat landscape has shifted dramatically over the past two decades.
The defining characteristics of APTs are: - Advanced : Use of custom-developed malware, zero-day exploits, and sophisticated techniques to evade detection.
The MITRE ATT&CK framework (Adversarial Tactics, Techniques, and Common Knowledge) is the most comprehensive publicly available knowledge base of APT behavior.
A supply chain attack targets the software or hardware supply chain rather than the end target directly.
The SolarWinds attack, attributed to Russia's SVR intelligence service (APT29), is considered the most sophisticated supply chain attack ever publicly disclosed.
In March 2024, a Microsoft employee named Andres Freund discovered a backdoor in XZ Utils, a widely-used data compression library present in most Linux distributions.
A zero-day vulnerability is a security flaw that is unknown to the software vendor and for which no patch exists.
Zero-days are discovered through security research: manual code review, fuzzing (automated generation of malformed inputs to trigger unexpected behavior), and binary analysis.
A gray and black market exists for zero-day exploits.
AI and machine learning are transforming cybersecurity from both sides of the offensive-defensive divide.
AI-Generated Phishing : Large Language Models (LLMs) like GPT-4 can generate highly convincing, personalized phishing emails at scale — without grammatical errors or the stilted…
Anomaly Detection : ML models can learn baselines of normal network traffic, user behavior, and system activity, and flag deviations that may indicate compromise.
Quantum computers leverage quantum mechanical phenomena (superposition, entanglement) to perform certain computations exponentially faster than classical computers.
The National Institute of Standards and Technology (NIST) conducted a multi-year Post-Quantum Cryptography (PQC) standardization competition.
The Internet of Things (IoT) encompasses billions of embedded devices — smart thermostats, medical devices, industrial sensors, cameras, vehicles, and consumer electronics —…
Cyber-physical systems (CPS) tightly couple computation with physical processes.
5G networks offer dramatically higher bandwidth, lower latency, and the ability to support massive numbers of connected devices — enabling smart cities, autonomous vehicles,…
The global cybersecurity workforce shortage remains severe.
Security Operations / SOC Analyst (Tier 1–3) : Monitor security alerts, investigate incidents, and escalate true positives.
Vocabulary becomes useful when students can connect terms to scenarios and evidence.
Comparing related ideas helps students avoid shallow memorization.
Students should translate concepts into a defensible security decision.
Retrieval practice should ask students to define, compare, apply, and evaluate.
The reading should transfer into evidence-based lab work and written explanations.
The central takeaway from Week 15 is to reason from risk to evidence to action.