Repository logo
Communities & Collections
All of DSpace
  • English
  • العربية
  • বাংলা
  • Català
  • Čeština
  • Deutsch
  • Ελληνικά
  • Español
  • Suomi
  • Français
  • Gàidhlig
  • हिंदी
  • Magyar
  • Italiano
  • Қазақ
  • Latviešu
  • Nederlands
  • Polski
  • Português
  • Português do Brasil
  • Srpski (lat)
  • Српски
  • Svenska
  • Türkçe
  • Yкраї́нська
  • Tiếng Việt
Log In
New user? Click here to register.Have you forgotten your password?
  1. Home
  2. Browse by Author

Browsing by Author "Hassan, Md. Maruf"

Filter results by typing the first few letters
Now showing 1 - 15 of 15
  • Results Per Page
  • Sort Options
  • No Thumbnail Available
    Item
    A New 8-Directional Pixel Selection Technique of LSB Based Image Steganography
    (Springer, 2020) Alam, Sheikh Thanbir; Jahan, Nusrat; Hassan, Md. Maruf
    Pixel selection for data hiding becomes crucial for the solutions in spatial domain of steganography to ensure imperceptibility. This paper presents an efficient approach of pixel selection technique for hiding secret data in cover object of image steganography. After reviewing recent literature, it has been observed that most of the works on pixel selection uses zig-zag technique for their solution. However, it becomes very prone to steganalysis based attacks by the intruders. In this study, 8-directions pixel selection technique is proposed to embed data in the cover image where Least Significant Bit (LSB) method has been used on Red, Green and Blue (RGB) color image especially focused on JPG, JPEG, and PNG. Since this projected procedure avoids the known steganalysis techniques, it will be challenging for the attacker to recognize the presence of secret information from the stego image. To measure the quality, statistical analysis has been performed where the value of the quality measurement matrices has provided better results.
  • No Thumbnail Available
    Item
    A Risk Based Analysis on Linux Hosted E-Commerce Sites in Bangladesh
    (Springer, 2020-07-30) Royel, Rejaul Islam; Sharif, Md. Hasan; Risha, Rafika; Bhuiyan, Touhid; Hassan, Md. Maruf; Hassan, Md. Sharif
    E-commerce plays a significant role to grow its business globally by satisfying the modern consumer’s expectations. Without the help of Operating System (OS), e-commerce applications cannot be operated as well as broadcasted on the web. It is evident after analyzing this study that web administrators of the business are sometimes being careless, in some cases unaware about the risk of cyber-attack due the lack of vulnerability research on their OS. Therefore, a good number of the e-commerce applications are faced different type of OS exploitations through different types of attack e.g. denial of service, bypass, DECOVF, etc. that breaches the OS’s confidentiality, integrity and availability. In this paper, we analyzed 140 e-commerce sites servers’ information and its related 1138 vulnerabilities information to examine the risks and risky versions of the OS in e-commerce business. The probabilities of vulnerability are calculated using Orange 3 and feature selection operation has been performed using Weka through IBM statistical tool SPSS. This study identifies few versions of Ubuntu that are found in critical status in terms of risk position.
  • No Thumbnail Available
    Item
    ADT-SQLi: An Automated Detection of SQL Injection Vulnerability in Web Applications
    (Springer, 2023-06-28) Hassan, Md. Maruf; Risha, Rafika; Esha, Ashrafia
    Web applications are constantly being developed to make life easier and more convenient for businesses and customers; it makes intruders involved in conducting malicious activities. Intruders use vulnerabilities to perform malicious attacks, and injection is the top-ranked vulnerability of web applications. SQL injection is a technique of code injection that places malicious code through web page input in SQL statements. Several numbers of case studies are found in previous research on vulnerability in the web application layer. Various models are introduced, built, and compared with many current SQL injection models and other vulnerabilities in the web application layer. However, there are few automation detections works on SQL injection that provide high precision and no finite state model-based works. This research aimed to propose a model and develop an automated SQL injection detection tool called ADT-SQLi based on the proposed model. In addition, this work was intended to simulate the proposed model with automata called a finite state machine. ADT-SQLi provides better efficacy on the identification of SQL injection and found ADT-SQLi as a finite model as it has exactly one of a finite number of states at any given time.
  • Thumbnail Image
    Item
    An Exploratory Analysis of Effect of Adversarial Machine Learning Attack on IoT-enabled Industrial Control Systems
    (IEEE, 2023-05-05) Trivedi, Sandeep; Tran, Tien Anh; Faruqui, Nuruzzaman; Hassan, Md. Maruf
    Machine Learning (ML)-based Intrusion Detection Systems (IDS) is an effective technology to automatically detect cyber attacks in the Internet of Things (IoT) dependent Industrial Control Systems (ICS). It is faster, more efficient, and can detect attacks without human intervention. However, ML-based IDSs have introduced another security threat called Adversarial Machine Learning (AML). An AML attack may cause severe industrial infrastructural and production damage resulting in substantial financial loss. This paper presents an exploratory analysis of initiating an AML attack using adversarial samples created using a Fast Gradient Sign Method (FGSM). The research presented in this paper has been conducted from a dataset generated from a full-fledged singular module of a power distribution industry controlled by IoT-enabled ICSs. We explored the AML attack on Gradient Boosting (GB) and Iterative Dichotomiser 3 (ID3) model and discovered the average classification accuracy, precision, recall, and F1-scores are 87%, 88%, 87.5%, and 87%, respectively. The AML attack reduces the average precision, recall, and F1-score by 20.5%, 20.5%, and 22.5%, respectively, when 50% perturbations are added to 10% samples.
  • No Thumbnail Available
    Item
    Comparing the performance of different ultrasonic images enhancement for speckle noise reduction in ultrasound images using techniques: a preference study
    (SPIE Digital Library, 2017-06-19) Rana, Md. Shohel; Sarker, Kaushik; Bhuiyan, Touhid; Hassan, Md. Maruf
    Diagnostic ultrasound (US) is an important tool in today's sophisticated medical diagnostics. Nearly every medical discipline benefits itself from this relatively inexpensive method that provides a view of the inner organs of the human body without exposing the patient to any harmful radiations. Medical diagnostic images are usually corrupted by noise during their acquisition and most of the noise is speckle noise. To solve this problem, instead of using adaptive filters which are widely used, No-Local Means based filters have been used to de-noise the images. Ultrasound images of four organs such as Abdomen, Ortho, Liver, Kidney, Brest and Prostrate of a Human body have been used and applied comparative analysis study to find out the output. These images were taken from Siemens SONOLINE G60 S System and the output was compared by matrices like SNR, RMSE, PSNR IMGQ and SSIM. The significance and compared results were shown in a tabular format. Full Text Link: https://doi.org/10.1117/12.2280277
  • No Thumbnail Available
    Item
    Efficient Anti-kidnapping and Anti-harassment (Avoidance-detection-notification) Mobile Application for Unwanted Incidents
    (2019 IEEE Student Conference on Research and Development, 2019) Hossain, Md. Elias; Rahman, Mostafijur; Hassan, Md. Maruf
    Kidnapping and harassment is not only a global issue but also a historic issue in Bangladesh. In between the years of 2010 and 2018, the total number of kidnapping events were found, 6708 (Avg. 745.33 events per year) in Bangladesh. The government is trying to capture and punish the kidnappers. But there are a few ways by which the victim can also notify the responsible persons about the unwanted incidents in real-time. This research proposes to design and develop an anti-kidnapping and anti-harassment mobile application that is consists of two modules, the Avoidance and the Detection modules. The Avoidance module notifies the user about some unsafe locations. The Detection module is further divided into four sub modules, the Notification module, Sound module, Sensor module, and Spy module. The Notification module is activated by pressing the SOS key and the Sound module is activated by voice command. Both of these modules can send the current location of the user by sending SMS to some selected contact numbers. In the Voice module, the audio voice can be recorded for 15 seconds and saved in phone storage or cloud. The Sensor module uses accelerometer sensor and compass sensor. During unwanted circumstances, the accelerometer sensor is activated by shaking the phone three times and the compass sensor is activated by the movement of the user. The Notification module is tested by sending notifications in different areas in Bangladesh. It is found that the average response time of the notification module is 0.74 milliseconds. The complete application is tested by following the System Usability Scale (SUS) method. It is found that the SUS score of the system is 75.56 %, which indicates that the system is good enough to use.
  • No Thumbnail Available
    Item
    Extremely Low Loss Optical Waveguide for Terahertz Pulse Guidance
    (Results in Physics, Elsevier, 2019-12) Paul, Bikash Kumar; Abdulrazak, Lway Faisal; Bhuiyan, Touhid; Sarker, Kaushik; Hassan, Md. Maruf; Shariful, S.; Ahmed, Kawsar
    This study proposed a dielectric terahertz (THz) D-shape core based photonic crystal fiber (PCF) with very low level of effective material loss (EML) for efficient THz pulse propagation. The modal parameters of the proposed fiber have been rigorously computed using finite element method (FEM) by considering the absorption boundary condition (ABC) using perfectly matched layer (PML). Investigation results of the fiber exhibit a low material absorption loss of 0.027 cm−1 and zero flatted dispersion within the 0.85–1.25 THz range. Additionally, large number of crucial features of the fiber have been evaluated. It reduces the bulk absorption loss of ~87% at the same time offers single mode operation. The proposed fiber can be easily fabricated by using stack and draw or sol-gel technique. Due to excellent optical guiding properties, it can be a potential prospect in THz sensing, communication and imaging applications.
  • Thumbnail Image
    Item
    Important Factors To Remember When Constructing a Cross-Site Scripting Prevention Mechanism
    (Daffodil International University, 2022-04-02) Hassan, Md. Maruf; Ahmad, Badlishah R.; Esha, Ashrafia; Risha, Rafika; Hasan, Mohammad S.
    Web application has become an essential part of daily activities to provide easy accessibility that ensures better performance. It is a platform where sensitive information such as username, password, credit card details, operating system and software version. is stored that attracts intruders to generate most of their attacks. Intruders can steal valuable data by compromising web application security flaws; cross site scripting (XSS) vulnerability is one of these. Several studies have been conducted in order to prevent the XSS vulnerability. In this research, we searched Scopus Indexed articles published in the last 11 years (between 2008 and 2020) using two keywords (“XSS attack prevention” and “XSS prevention”). The purpose of this study was to conduct a literature review on XSS prevention techniques e.g., strengths and weaknesses, including structural issues and real-time deployment location in order to extract valuable information. This review identified 14 articles among the 25 selected articles that provided various suitable prevention techniques for XSS attacks. Seven articles are based on tools that have been implemented and take into account design, coding, testing, and integrating validation processes, six articles are about server site solutions, and one is about automatic mitigation solutions. As a result, this research will be invaluable in guiding the advancement of XSS prevention techniques.
  • No Thumbnail Available
    Item
    OSCRUM: A Modified Scrum for Open Source Software Development
    (Researchgate, 2018) Rahman, Sheikh Shah Mohammad Motiur; Mollah, Saiful Alam; Anirban, Shikha; Rahman, Md. Habibur; Rahman, Mostafijur; Hassan, Md. Maruf; Sharif, Md. Hasan
    The Open Source Software Development (OSSD) is a movement, challenges many traditional and commercial theories of software development. A group of developers, programmers, and other community members develop the Open Source Software (OSS) in a collaborative manner. Community and contributors provide great support to make the source code of the software easily understandable and modifiable. However, there are insignificant such standard model or methodologies for OSSD has yet been established. Currently, researchers are proposing methodologies in this area. This paper proposes a new model, OScrum by modifying the scrum to make it applicable for OSSD. The proposed model has been constructed after analyzing the key metrics, pillars, and values of Scrum and OSSD. The model has been evaluated through comparing implementation process and working procedure of OSSD. The result shows that the implementation process of OSCRUM has a very close relationship with the process of OSSD and therefore, it fits well in such software development.
  • Thumbnail Image
    Item
    Patients' Intention To Adopt Fintech Services
    (Scopus, 22-11-19) Hassan, Md. Sharif; Islam, Md. Aminul; Sobhani, Farid Ahammad; Hassan, Md. Maruf; Hassan, Md. Arif
    Advancement in technology has facilitated the shift toward new financial services. Numerous industries have undergone a digital transformation because of the expansion of cashless payment systems and other cutting-edge technologies. This study aimed to identify the factors that stimulate the patient’s intention to adopt fintech services in the Bangladesh healthcare sector. To facilitate the study, data were collected through survey questionnaires from different hospitals and diagnostic centers patients. A total of 279 patients responded to the survey. The study employed structural equation modelling to analyze the data using SMART PLS 3.2.9. The results revealed that a significant relationship exists between perceived ease of use, social influence, facilitating conditions, personal innovativeness, and perceived trust in fintech services, and the adoption intention of the patients. The results of the study are beneficial to the healthcare sector and fintech companies who wish to make necessary arrangements to advance the growth of cashless fintech-based transactions.
  • No Thumbnail Available
    Item
    RFI and SQLi based local file inclusion vulnerabilities in web applications of Bangladesh
    (IEEE Xplore, 2017-02-23) Begum, Afsana; Hassan, Md. Maruf; Bhuiyan, Touhid; Sharif, Md. Hasan
    People nowadays cannot think of even a single moment without the internet. Doubtlessly, web applications are currently the key to all change in the world. The features and facilities of web applications make our lives easier and also demonstrate different channels of communication and exchange of data. The number of internet user is increasing day by day in Bangladesh. Web applications are not only encouraging internet users to easily receive diversified services, but also creating new opportunities in every business sector. With the help of web applications, businesses can easily enhance the quality of their services to consumers with minimal effort. However, at the same time, many threats have arisen as a result of the misuse of this technology. Cyber attacks could emerge as a major threat to the digital transformation of Bangladesh, given the vulnerability in web applications caused by careless coding during the development of such applications. During our review, we observed that the existence of Local File Inclusion (LFI) vulnerability in the web applications of Bangladesh was very critical. This paper explores in detail the harmful web application vulnerability attack, Local File Inclusion (LFI) based on Remote File Inclusion (RFI) as well as Structured Query Language Injection (SQLi), and their impact on the applications of Bangladesh. Full Text Link: http://doi.org/10.1109/IWCI.2016.7860332
  • Thumbnail Image
    Item
    Selective opposition based constrained barnacle mating optimization: Theory and applications
    (Scopus, 2024-12) Ahmed, Marzia; Sulaiman, Mohd Herwan; Hassan, Md. Maruf; Rahaman, Md. Atikur; Abdullah, Masuk
    Mathematical models of Barnacle Mating Optimization (BMO) are based on observations of real-world barnacle mating behaviors such as sperm casting and self-fertilization. Nevertheless, BMO considers penis length to produce new offspring through pseudo-copulated mating behavior, with no constraints like strong wave motion, food availability, or wind direction considered. Exploration and exploitation are two crucial optimization stages as we implement the constrained BMO. They are informed by models of navigational sperm casting properties, food availability, food attractiveness, wind direction, and intertidal zone wave movement experienced by barnacles during mating. We will later integrate opposition-based learning (OBL) with constrained BMO (C-BMO) to improve its exploratory behavior while retaining a quick convergence rate. Rather than opposing all barnacle dimensions, we just opposed those that went over the border. In addition to increasing efficiency by cutting down on wasted time spent exploring, this also increases the likelihood of stumbling onto optimal solutions. After that, it is put through its paces in a real-world case study, where it proves to be superior to the most cutting-edge algorithms available.
  • Thumbnail Image
    Item
    Selective Opposition Based Constrained Barnacle Mating Optimization: Theory and Applications
    (Elsevier, 2024-10-26) Ahmed, Marzia; Sulaiman, Mohd Herwan; Hassan, Md. Maruf; Rahaman, Md. Atikur; Abdullah, Masuk
    Mathematical models of Barnacle Mating Optimization (BMO) are based on observations of real-world barnacle mating behaviors such as sperm casting and self-fertilization. Nevertheless, BMO considers penis length to produce new offspring through pseudo-copulated mating behavior, with no constraints like strong wave motion, food availability, or wind direction considered. Exploration and exploitation are two crucial optimization stages as we implement the constrained BMO. They are informed by models of navigational sperm casting properties, food availability, food attractiveness, wind direction, and intertidal zone wave movement experienced by barnacles during mating. We will later integrate opposition-based learning (OBL) with constrained BMO (C-BMO) to improve its exploratory behavior while retaining a quick convergence rate. Rather than opposing all barnacle dimensions, we just opposed those that went over the border. In addition to increasing efficiency by cutting down on wasted time spent exploring, this also increases the likelihood of stumbling onto optimal solutions. After that, it is put through its paces in a real-world case study, where it proves to be superior to the most cutting-edge algorithms available.
  • No Thumbnail Available
    Item
    SQL Injection Vulnerability Detection Using Deep Learning
    (Indonesian Journal of Electrical Engineering and Informatics, 2021) Hassan, Md. Maruf; Ahmad, R. Badlishah; Ghosh, Tonmoy
    SQL injection (SQLi), a well-known exploitation technique, is a serious risk factor for database-driven web applications that are used to manage the core business functions of organizations. SQLi enables an unauthorized user to get access to sensitive information of the database, and subsequently, to the application’s administrative privileges. Therefore, the detection of SQLi is crucial for businesses to prevent financial losses. There are different rules and learning-based solutions to help with detection, and pattern recognition through support vector machines (SVMs) and random forest (RF) have recently become popular in detecting SQLi. However, these classifiers ensure 97.33% accuracy with our dataset. In this paper, we propose a deep learning-based solution for detecting SQLi in web applications. The solution employs both correlation and chi-squared methods to rank the features from the dataset. Feed-forward network approach has been applied not only in feature selection but also in the detection process. Our solution provides 98.04% accuracy over 1,850+ recorded datasets, where it proves its superior efficiency among other existing machine learning solutions.
  • No Thumbnail Available
    Item
    Studies with Callus Induction of Vitex Negundo: an Aromatic Medicinal Plant
    (The American-Eurasian Network for Scientific Information (AENSI), 2011) Chowdhury, Farzana Begum; Azam, F.M. Safiul; Hassan, Md. Maruf; Jahan, Farhana Israt; Chowdhury, Anita Rani; Seraj, Syeda; Khatun, Zubaida; Rahmatullah, Mohammed
    Vitex negundo (Family: Verbenaceae) is a commonly used medicinal plant of Bangladesh. It has a broad range of uses in folk medicine. The plant parts possess diverse pharmacological activities including antimicrobial, analgesic, antiinflammatory, anti-fertility, antioxidant, antihyperglycemic, and hepato-protective effects. Considering its importance in folk medicine, an in vitro method of callus induction for this plant was developed. The objective was to investigate the effects of phytohormones for callus induction in the species. Explants (leaves and internodes) collected from field grown plants were cultured onto Murashige-Skoog’s (MS) medium following surface sterilization with 0.1% HgCl2 containing different concentrations and combination of 2, 4-dichlorophenoxy acetic acid (2, 4-D), a-naphthalene acetic acid (NAA), 6-benzylaminopurine (BAP); 3% sugar and 7% agar. Among the auxins, 2, 4-D [2.0 mg/l] supplemented in MS medium showed highest response for callogenesis with white and friable callus, whereas slower response than 2, 4-D, but friable and embryonic callus was obtained in MS + NAA [1.5 mg/l]. Quick and fastest callus growth was observed when the combination of 2, 4-D [3.0 mg/l] and NAA [1.0 mg/l] was added to MS medium. The only exception between the combinations was the variation in forming loose and wet callus. This callus induction protocol developed from our experiment can successfully play a role for large-scale culture of this shrub in vitro and isolation of bioactive compounds from this plant.

© Open Research Bangladesh

  • Privacy policy
  • End User Agreement
  • Send Feedback