PulseExploreJournal ClubDebatesTrendingResearchersJournals
Instagram
HomeExploreJournal ClubTrending
Synapse
⌘+K
Synapse
February 16, 2026SAGE Open3 citationsOpen Access

Cybersecurity in Higher Education Institutions Digitalisation: Addressing Threats and Vulnerabilities

View Full Paper
MSMaznifah SalamKBKhairul Azmi Abu BakarAGAhmad Tarmizi Abdul Ghani

Key Points

  • This research aims to systematically capture cybersecurity vulnerabilities in higher education institutions from 2018 to 2025.
  • Utilized the PRISMA framework for transparency in the methodology
  • Conducted thematic and content analysis of 33 peer-reviewed articles
  • Identified nine main cybersecurity challenges within HEIs
  • Phishing and malware remain the most reported threats
  • Human factors, such as lack of cybersecurity awareness, increase institutional risk
  • Highlighted unbalanced coverage in research methods, with a predominance of quantitative studies

Abstract

Although higher learning institutions (HEIs) are quickly evolving and opening to cyber-attacks, we question this very process cautiously with the intention of capturing the vulnerabilities of the HEIs systematically over the time frame of the 2018 to 2025, which PRISMA framework allows transparency and rigour in the methodology. The thematic and content analysis of 33 peer-reviewed articles revealed nine main cybersecurity challenges that include phishing, malware attacks, intellectual property theft, external threat actors, software vulnerabilities, password insecurity, insufficient physical protection, and weak incident disclosure practices. Their results suggest that phishing and malware have remained the most reported most reported threats, and human factors such as the absence of cybersecurity awareness and inadequate training provided keep on increasing the institutional risk. In addition, the research points out to unbalanced coverage of research methods where quantitative research studies prevail, and the qualitative or mixed methods research studies are underrepresented. This research is significant because it discusses general threats in the various categories of threats and distinguishes between outside and inside vulnerability of an organisation, and matches the threats with the current frameworks, such as the CIA (Confidentiality, Integrity, Availability) triad and NIST cybersecurity standards. The review summarises the implications with practical suggestions for implementing integrated cybersecurity frameworks, integrating technical protection, user education and policy planning. Other directions for future research include expanding geographically and investigating the new threats presented by artificial intelligence, cloud computing and Internet of Things (IoT) infrastructure in HEIs.

Ask AI
Helpful
Bookmark
Share
View Full Paper

Cite This Study

Salam et al. (2026) studied this question.

synapsesocial.com/papers/6992b4c59b75e639e9b09d13https://doi.org/10.1177/21582440251413473
Ask AI
Helpful
Bookmark
Share
View Full Paper