HackNewHaven is a multidisciplinary collegiate hackathon intended to bring the spirit of collaboration, innovation, and experiential learning across multiple disciplines of computing, engineering, and cybersecurity. The inaugural event focused on software development tracks through AI, gaming, and app-based projects. However, rapid growth of cybersecurity education and demand in the industry created a natural impulse to incorporate a cybersecurity-focused track within the present HackNewHaven setting, thus making it more holistic and future projection-oriented.
Typically, hackathons offer a blank canvas for innovation or software design, but they do not touch on secure development and adversarial thinking, the very basis of engineering education today. To counter this contradiction, a cybersecurity track was added to bridge the gap between academic theory and its practical application. The track seeks to broaden the base of participants, including demographics who would have otherwise been steered away from software-oriented hackathons. A goal of this is to enhance interdisciplinary collaboration joining computer science, cybersecurity, and engineering orientations. Further, this addition is in line with national educational initiatives such as the NSA GenCyber and NCAE-Cyber programs, fostering an increased supply of professionals for cyber defense and systems security.
In realizing this track, the organizers decided to stage a Capture the Flag (CTF) competition via an open-source CTF platform. The CTF subjected participants to a battery of hands-on cybersecurity challenges of increasing difficulty across different domains like web exploitation, cryptography, network forensics, and reverse engineering. In placing its challenges behind the veil of a common storyline, teams were treated to a gamified simulation of real-world security operations. This locally hosted CTF instance means proper management and scoring of challenges and acceptance of team registrations. It enables the competitors to focus on problem-solving as a team under reasonable time constraints, similar to live incident response and mitigation techniques.
Are you a researcher? Would you like to cite this paper? Visit the ASEE document repository at peer.asee.org for more tools and easy citations.