CT-T: Enabling Collaborative Self-Healing Software Systems

CT-T:实现协作式自我修复软件系统

基本信息

  • 批准号:
    0627473
  • 负责人:
  • 金额:
    --
  • 依托单位:
  • 依托单位国家:
    美国
  • 项目类别:
    Continuing Grant
  • 财政年份:
    2006
  • 资助国家:
    美国
  • 起止时间:
    2006-09-01 至 2011-08-31
  • 项目状态:
    已结题

项目摘要

Angelos KeromytisColumbia UniversityEnabling Collaborative Self-healing Software Systems0627473Panel P060975AbstractCollaborative Self-healing Systems (COSS) is a new paradigm for protecting software systems. Software monocultures are widely used applications that share common vulnerabilities. Hence, any attack that exploits one instance of a vulnerable application provides the means for wide-spread damage. The emerging concept of collaborative security, wherein independent but cooperative entities form a group to improve their individual security, provides the opportunity to exploit the homogeneity of a software monoculture for collective and mutual protection. Monocultures can be leveraged to improve an application's overall security and reliability. COSS members running independent instances of the same application will continuously exchange information that allows them to collectively identify new application faults and attacks (collaborative monitoring), identify the core vulnerability shared by all instances of the application (vulnerability identification), and to automatically develop, test and apply fixes (heal the application). Identifying the application vulnerability requires potentially substantial costs in instrumentation and monitoring in each application instance. We leverage the size of a COSS to amortize the cost of monitoring the application's behavior on a per-instance basis by distributing the monitoring task across a large population; each instance only monitors a portion of the common application but collectively the entire application is covered. COSS may be viewed as a large-scale, diverse software-testing facility that allows its members to identify how a potentially large and complex host application behaves at a very fine level of granularity. This project develops, prototypes and evaluates technologies for automatically building collaborative, self-securing software systems, enabling reliable and secure commodity software.
Angelos Keromytis哥伦比亚大学启用协作自我修复软件系统0627473面板 P060975抽象协作自我修复系统(COSS)是保护软件系统的新范例。软件单一文化是广泛使用的应用程序,它们具有共同的漏洞。因此,任何利用易受攻击的应用程序实例的攻击都提供了造成广泛损害的手段。新兴的协作安全概念(其中独立但合作的实体组成一个团体来提高其各自的安全性)提供了利用软件单一文化的同质性进行集体和相互保护的机会。可以利用单一培养来提高应用程序的整体安全性和可靠性。运行同一应用程序的独立实例的 COSS 成员将不断交换信息,使它们能够集体识别新的应用程序故障和攻击(协同监控),识别应用程序所有实例共享的核心漏洞(漏洞识别),并自动开发、测试并应用修复(修复应用程序)。识别应用程序漏洞可能需要在每个应用程序实例中进行检测和监控,从而产生大量成本。我们利用 COSS 的大小,通过将监控任务分布到大量人群中来分摊监控每个实例的应用程序行为的成本;每个实例仅监视公共应用程序的一部分,但总体而言整个应用程序都被覆盖。 COSS 可以被视为一个大规模、多样化的软件测试设施,允许其成员以非常精细的粒度级别识别潜在的大型且复杂的主机应用程序的行为方式。该项目开发、原型化和评估自动构建协作、自我安全软件系统的技术,从而实现可靠和安全的商品软件。

项目成果

期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ monograph.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ sciAawards.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ conferencePapers.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ patent.updateTime }}

Angelos Keromytis其他文献

Angelos Keromytis的其他文献

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

{{ truncateString('Angelos Keromytis', 18)}}的其他基金

Collaborative Research: SaTC: CORE: Medium: An Anti-tracking and Robocall-free Architecture for Next-G Mobile Networks
协作研究:SaTC:CORE:Medium:下一代移动网络的防跟踪和无 Robocall 架构
  • 批准号:
    2247562
  • 财政年份:
    2023
  • 资助金额:
    --
  • 项目类别:
    Standard Grant
U.S. Open-Source Software Security Initiative Workshop
美国开源软件安全倡议研讨会
  • 批准号:
    2232616
  • 财政年份:
    2022
  • 资助金额:
    --
  • 项目类别:
    Standard Grant
TWC: Small: Auditing PII in the Cloud with CloudFence
TWC:小型:使用 CloudFence 审核云中的 PII
  • 批准号:
    1222748
  • 财政年份:
    2012
  • 资助金额:
    --
  • 项目类别:
    Standard Grant
NSF Support for the 2010 New Security Paradigms Workshop Financial Aid; September 2010; Concord, MA
NSF 支持 2010 年新安全范式研讨会财政援助;
  • 批准号:
    1019309
  • 财政年份:
    2010
  • 资助金额:
    --
  • 项目类别:
    Standard Grant
NSF Support for the 2009 New Security Paradigms Workshop Financial Aid
NSF 对 2009 年新安全范式研讨会的财政援助支持
  • 批准号:
    0957596
  • 财政年份:
    2009
  • 资助金额:
    --
  • 项目类别:
    Standard Grant
CT-ISG: Integrated Enterprise Security Management
CT-ISG:集成企业安全管理
  • 批准号:
    0714647
  • 财政年份:
    2007
  • 资助金额:
    --
  • 项目类别:
    Continuing Grant
CT-ISG: PacketSpread: Practical Network Capabilities
CT-ISG:PacketSpread:实用网络功能
  • 批准号:
    0714277
  • 财政年份:
    2007
  • 资助金额:
    --
  • 项目类别:
    Continuing Grant
DCS: Retrofitting a Flow-oriented Paradigm in Commodity Operating Systems for High-Performance Computing
DCS:在商品操作系统中改造面向流的范式以实现高性能计算
  • 批准号:
    0541093
  • 财政年份:
    2006
  • 资助金额:
    --
  • 项目类别:
    Standard Grant

相似海外基金

CT-ISG: Collaborative: Enabling Detection of Elusive Malware by by Going Out of the Box with Semantically Reconstructed View (OBSERV)
CT-ISG:协作:通过开箱即用的语义重建视图 (OBSERV) 来检测难以捉摸的恶意软件
  • 批准号:
    0852131
  • 财政年份:
    2008
  • 资助金额:
    --
  • 项目类别:
    Standard Grant
CT-ISG: Collaborative research: Enabling Routers to Detect and Filter Spoofed Traffic
CT-ISG:协作研究:使路由器能够检测和过滤欺骗流量
  • 批准号:
    0716452
  • 财政年份:
    2007
  • 资助金额:
    --
  • 项目类别:
    Continuing Grant
CT-ISG: Collaborative Proposal : Enabling Detection of Elusive Malware by Going Out of the Box with Semantically Reconstructed View (OBSERV)
CT-ISG:协作提案:通过语义重建视图 (OBSERV) 开箱即用,能够检测难以捉摸的恶意软件
  • 批准号:
    0716444
  • 财政年份:
    2007
  • 资助金额:
    --
  • 项目类别:
    Standard Grant
CT-ISG: Collaborative: Enabling Detection of Elusive Malware by by Going Out of the Box with Semantically Reconstructed View (OBSERV)
CT-ISG:协作:通过开箱即用的语义重建视图 (OBSERV) 来检测难以捉摸的恶意软件
  • 批准号:
    0716376
  • 财政年份:
    2007
  • 资助金额:
    --
  • 项目类别:
    Standard Grant
CT-ISG: Collaborative research: Enabling Routers to Detect and Filter Spoofed Traffic
CT-ISG:协作研究:使路由器能够检测和过滤欺骗流量
  • 批准号:
    0823121
  • 财政年份:
    2007
  • 资助金额:
    --
  • 项目类别:
    Continuing Grant
{{ showInfoDetail.title }}

作者:{{ showInfoDetail.author }}

知道了