Cybersecurity Training and Analysis

Current research in the Laboratory of Software Architectures and Information Systems, Lasaris, at the Faculty of Informatics, Masaryk University, is focused on data analysis in the cybersecurity domain.

As operational networks are not suitable for building and studying knowledge of cyber threats and training responses to them, we have developed the KYPO Cyber Range Platform – the first open-source virtual environment where hands-on cybersecurity training can be organized. From the very beginning, we put emphasis on user experience, user-centered design of user interfaces, and the support of learning and visual analytics. Data collected from training sessions are analyzed in order to continuously improve the quality of training sessions and increase the impact on the trainees. Our research aims to provide visual situational awareness, insight into the abstract cybersecurity processes and threats, storytelling, and advanced analytical tools. This research is conducted in close cooperation with CSIRT team (Computer Security Incident Response Team) of Masaryk University.

The CSIRT team is also responsible for the investigation of suspicious computers connected to the university network. Together with them, we develop advanced exploratory techniques to support the forensic investigation of real incidents. 

Related projects:

2020 – 2022

Research of New Technologies to Increase the Capabilities of Cybersecurity Experts (KYPOLAB)

My role: Member of the research team, leader of the work package „SW for the evaluation of cybersecurity training“.

2018 – 2023

2016 – 2019

Simulation, detection, and mitigation of cyber threats endangering critical infrastructure (KYPO II)

My role: Co-investigator (leader at FI MU, software architect, head of the “visualization” research team).

2013 – 2015

Cybernetic Proving Ground (KYPO)

My role: Co-investigator (leader at FI MU, head of the “visualization” research team).

The project was awarded by the Ministry of Interior for its exceptional results in the field of security research.

Software:

The KYPO Analyst – a prototype implementation of the analytical dashboard for post-training analysis of data gathered from the KYPO Cyber Range Platform. The tool is based on principles of visual analytics, utilizing process mining techniques, metrics-based behavioral analysis, and ML-based clustering of trainees.

The KYPO Cyber Range Platform is used as a training platform for the regular education of students of Masaryk University as well as for the organization of the biggest cyber defense exercise in the Czech Republic called Cyber Czech (in cooperation with the Czech NSA). In 2021 released as open-source.

Awards:

  • 2015: Ministry of Interior of the Czech Republic for exceptional security research results.
  • 2021: European Commission’s Innovation Radar Prize for Innovation in Disruptive Tech.

The FIMETIS (FIlesystem METadata analysIS) tool is developed in cooperation with the CSIRT (Computer Security Incident Response Team) team of Masaryk University, which is responsible for the investigation of cybersecurity incidents in the university network. Together with them, we develop advanced visual and exploratory techniques to support the forensic investigation processes. We primarily focus on the analysis of file systems using user-centered design and visual techniques.

Selected publications:

Process-driven visual analysis of cybersecurity capture the flag exercises

OŠLEJŠEK, Radek; Radoslav CHUDOVSKÝ and Martin MACÁK

Information Systems (Elsevier journal). 2026

Details Publisher

Using data clustering to reveal trainees’ behavior in cybersecurity education

DOČKALOVÁ BURSKÁ, Karolína; Jakub Rudolf MLYNÁRIK and Radek OŠLEJŠEK

Education and Information Technologies (Springer journal, open-access). 2024

Details PDF Publisher

Hands-on Cybersecurity Training Behavior Data for Process Mining

OŠLEJŠEK, Radek; Martin MACÁK and Karolína DOČKALOVÁ BURSKÁ

Data in Brief (Elsevier journal, open-access). 2024

Details PDF Publisher

Process Mining Analysis of Puzzle-Based Cybersecurity Training.

MACÁK, MartinRadek OŠLEJŠEK and Barbora BÜHNOVÁ

ACM Conference on Innovation and Technology in Computer Science Education (ITiCSE’22). 2022

Details PDF Publisher

Data-Driven Insight into the Puzzle-Based Cybersecurity Training.

DOČKALOVÁ BURSKÁ, KarolínaVít RUSŇÁK and Radek OŠLEJŠEK

Computers & Graphics journal. 2022

Details PDF Publisher

Conceptual Model of Visual Analytics for Hands-on Cybersecurity Training.

OŠLEJŠEK, R.V. RUSŇÁKK. BURSKÁV. ŠVÁBENSKÝ, J. VYKOPAL and J. ČEGAN

IEEE Transactions on Visualization and Computer Graphics (TVCG journal). 2021

Details PDF Publisher Trailer VIS'20 talk

Optimization of Cyber Defense Exercises Using Balanced Software Development Methodology.

OŠLEJŠEK, Radek and Tomáš PITNER

International Journal of Information Technologies and Systems Approach (IJITSA). 2021

Details PDF Publisher

Enhancing Situational Awareness for Tutors of Cybersecurity Capture the Flag Games.

DOČKALOVÁ BURSKÁ, KarolínaVít RUSŇÁK and Radek OŠLEJŠEK

International Conference Information Visualization (iV’21). 2021

Details PDF Trailer

Exploratory Analysis of File System Metadata for Rapid Investigation of Security Incidents

BERAN, Michal, František HRDINA, Dan KOUŘIL, Radek, OŠLEJŠEK, and Kristína ZÁKOPČANOVÁ

IEEE Symposium on Visualization for Cyber Security (VizSec’20). 2020

Details PDF Trailer Demo VisSec'20 talk

Timely Feedback in Unstructured Cybersecurity Exercises.

VYKOPAL, JanRadek OŠLEJŠEKKarolína BURSKÁ and Kristína ZÁKOPČANOVÁ

ACM Technical Symposium on Computer Science Education (SIGCSE’18). 2018

Details PDF Publisher

KYPO Cyber Range: Design and Use Cases.

VYKOPAL, JanRadek OŠLEJŠEKPavel ČELEDA, Martin VIZVÁRY and Daniel TOVARŇÁK

International Conference on Software Technologies (ICSOFT’17). 2017

Details PDF Publisher

Lessons Learned From Complex Hands-on Defence Exercises in a Cyber Range.

VYKOPAL, Jan, Martin VIZVÁRY, Radek OŠLEJŠEKPavel ČELEDA and Daniel TOVARŇÁK

IEEE Frontiers in Education (FIE’17). 2017

Details PDF Publisher

>> all publications