WebHOLE: Developing a web-based hands-on learning environment to assist beginners in learning web application security

被引:1
作者
Su, Jun-Ming [1 ]
机构
[1] Natl Univ Tainan, Dept Informat & Learning Technol, Tainan, Taiwan
关键词
Cybersecurity education; Web application security; Practical hands-on ability; Hands-on learning; Web-based learning; Portfolio analysis; CYBERSECURITY EDUCATION; FRAMEWORK; KNOWLEDGE;
D O I
10.1007/s10639-023-12090-z
中图分类号
G40 [教育学];
学科分类号
040101 ; 120403 ;
摘要
With the rapid growth of web applications, web application security (WAS) has become an important cybersecurity issue. For effective WAS protection, it is necessary to cultivate and train personnel, especially beginners, to develop correct concepts and practical hands-on abilities through cybersecurity education. At present, many methods offer vulnerable web environments to support practical hands-on training, including large-scale "Capture the Flag" mode (e.g., Cyber Range), pre-configured virtual machine images (e.g., Mutillidae), pre-built stand-alone applications (e.g., WebGoat), and web-based system (e.g., Damn Vulnerable Web Application). However, beginners need not only hands-on training tools and systems but also assistance to support effective learning. Moreover, pre-built training content and exercises are usually not easy to modify and thus lack the flexibility to meet specific teaching needs. Therefore, this study proposed and developed the Web-based Hands-On Learning Environment (WebHOLE) to efficiently assist beginners in learning WAS. To improve the flexibility of the training content, a web-based authoring tool was developed in WebHOLE to create customized hands-on learning exercises. Accordingly, learners can learn and practice the WAS training content online with learning assistance provided by the hands-on learning system. The hands-on abilities of the learners can be efficiently assessed by the hands-on testing system using online exams with progressive hints and automatic grading. Furthermore, to improve the effectiveness of teaching and testing, a portfolio analysis scheme using a data mining technique was developed to identify learning barriers and problematic test items. WebHOLE was applied to an actual beginner-level WAS course for undergraduate students. The experimental results showed the benefits of WebHOLE on WAS learning, with a significant improvement in learning outcomes. Students expressed high satisfaction with WebHOLE's learning assistance, rating it with average satisfaction scores above 4.0 out of 5.0. The portfolio analysis scheme also showed the effectiveness of WebHOLE in identifying learning problems and refining test items.
引用
收藏
页码:6579 / 6610
页数:32
相关论文
共 50 条
[31]   IMPROVING STUDENT CONCEPTUALISATIONS THROUGH MANIPULATION IN A WEB-BASED LEARNING ENVIRONMENT [J].
Castera, Jeremy ;
Sarapuu, Tago ;
Piksoeoet, Jaanika .
LEVERAGING TECHNOLOGY FOR LEARNING, VOL I, 2012, :449-454
[32]   Collaborative Inquiry with a Web-Based Science Learning Environment: When Teachers Enact It Differently [J].
Sun, Daner ;
Looi, Chee-Kit ;
Xie, Wenting .
EDUCATIONAL TECHNOLOGY & SOCIETY, 2014, 17 (04) :390-403
[33]   Modeling an immersive VR driving learning platform in a web-based collaborative design environment [J].
Liang, Janus S. .
COMPUTER APPLICATIONS IN ENGINEERING EDUCATION, 2012, 20 (03) :553-567
[34]   Developing an Interactive Web-Based Learning Program on Skin Cancer: the Learning Experiences of Clinical Educators [J].
Waqas R. Shaikh ;
Alan Geller ;
Gwen Alexander ;
Maryam M. Asgari ;
Gunther J. Chanange ;
Stephen Dusza ;
Melody J. Eide ;
Suzanne W. Fletcher ;
Jacqueline M. Goulart ;
Allan C. Halpern ;
Shoshana Landow ;
Ashfaq A. Marghoob ;
Elizabeth A. Quigley ;
Martin A. Weinstock .
Journal of Cancer Education, 2012, 27 :709-716
[35]   Developing an Interactive Web-Based Learning Program on Skin Cancer: the Learning Experiences of Clinical Educators [J].
Shaikh, Waqas R. ;
Geller, Alan ;
Alexander, Gwen ;
Asgari, Maryam M. ;
Chanange, Gunther J. ;
Dusza, Stephen ;
Eide, Melody J. ;
Fletcher, Suzanne W. ;
Goulart, Jacqueline M. ;
Halpern, Allan C. ;
Landow, Shoshana ;
Marghoob, Ashfaq A. ;
Quigley, Elizabeth A. ;
Weinstock, Martin A. .
JOURNAL OF CANCER EDUCATION, 2012, 27 (04) :709-716
[36]   Content and timing of feedback in a web-based learning environment: effects on learning as a function of prior knowledge [J].
Smits, Marieke H. S. B. ;
Boon, Jo ;
Sluijsmans, Dominique M. A. ;
van Gog, Tamara .
INTERACTIVE LEARNING ENVIRONMENTS, 2008, 16 (02) :183-193
[37]   Web-based Learning System for Developing and Assessing Clinical Diagnostic Skills for Dermatology Residency Program [J].
Kuo, Fan-Ray ;
Chin, Yi-Ying ;
Lee, Chao-Hsien ;
Chiu, Yu-Hsien ;
Hong, Chien-Hui ;
Lee, Kuang-Lieh ;
Ho, Wen-Hsien ;
Lee, Chih-Hung .
EDUCATIONAL TECHNOLOGY & SOCIETY, 2016, 19 (03) :194-206
[38]   Effectiveness of Web-Based Courses on Technical Learning [J].
Lam, Monica .
JOURNAL OF EDUCATION FOR BUSINESS, 2009, 84 (06) :323-331
[39]   Designing metacognitive maps for web-based learning [J].
Lee, M ;
Baylor, AL .
EDUCATIONAL TECHNOLOGY & SOCIETY, 2006, 9 (01) :344-348
[40]   Web-Based Learning - Yes We Can! [J].
Schroeder, Ulrik .
ADVANCES IN WEB BASED LEARNING - ICWL 2009, 2009, 5686 :25-33