CT-T: Proactive Techniques for Preserving System Integrity: A Basis for Robust Defense Against Malware

CT-T:保护系统完整性的主动技术:强大防御恶意软件的基础

基本信息

  • 批准号:
    0831298
  • 负责人:
  • 金额:
    $ 100万
  • 依托单位:
  • 依托单位国家:
    美国
  • 项目类别:
    Continuing Grant
  • 财政年份:
    2008
  • 资助国家:
    美国
  • 起止时间:
    2008-09-01 至 2015-08-31
  • 项目状态:
    已结题

项目摘要

Cyber threats have escalated rapidly over the past decade. "Zero-dayattacks" have become significant, delivered increasingly throughseemingly innocuous means such as web pages, images, and documents.Malware is rampant, being installed surreptitiously on millions ofcomputers around the world using a combination of spam, phishing,malicious shareware and freeware. Today's defenses use techniques such as signature-based scanning andfile integrity monitoring to detect the presence of malware, and thenremove them. Unfortunately, clever adversaries can quickly developmalware that conceals itself from these detection mechanisms, andhence defeat such reactive defenses. In contrast, this project willdevelop an approach that dramatically improves defenses againstmalware, and put a computer owner back in control over theattackers. This approach, based on synthesizing and enforcinglow-level information flow properties from generic high levelpolicies, will be used to identify components of a computer systemthat are critical for its trustworthiness, and preserve theirintegrity. In doing so, the approach will enable users to continue touse popular operating systems, applications, and add-on software, while stillassuring system security.Specifically, this project will develop techniques to protect (a) the OSand critical applications from untrusted code or data, (b) criticalapplications from modules and extensions (e.g., browser plug-ins and mediaplayer codecs) that run within the same address space, and (c) the OS kernelfrom damage due to untrusted kernel extensions such as device drivers.In terms of broader impact, this project will train several graduatestudents, the research will be integrated into the teaching activities ofthe PIs, and finally, the solutions developed will be distributed asopen-source software and/or tools.
在过去的十年中,网络威胁迅速升级。 “零日攻击”变得重要,越来越多地提供了诸如网页,图像和文档之类的不可分割的无害手段。Malware猖ramp,使用垃圾邮件,播放器,恶意软件和免费软件的垃圾邮件组合在世界各地的数百万个计算机上进行了秘密安装。当今的防御技术使用基于签名的扫描和文件完整性监控等技术来检测恶意软件的存在,然后将其置于范围内。不幸的是,聪明的对手可以迅速开发出掩盖这些检测机制的武器,并击败这种反应性防御。相比之下,该项目将开发一种方法,该方法可以极大地改善对Malware的防御能力,并使计算机所有者重新控制了TheatTackers。这种方法基于综合和执行的基础信息流属性属性,将使用通用高级别的质量,用于识别计算机系统的组件,这对于其信任度至关重要,并且保留其整体性。 In doing so, the approach will enable users to continue touse popular operating systems, applications, and add-on software, while stillassuring system security.Specifically, this project will develop techniques to protect (a) the OSand critical applications from untrusted code or data, (b) criticalapplications from modules and extensions (e.g., browser plug-ins and mediaplayer codecs) that run within the same address space, and (c) the OS内核损坏是由于不受信任的内核扩展(例如设备驱动程序)而造成的。在更广泛的影响方面,该项目将培训几个毕业生,研究将整合到PIS的教学活动中,最后,开发的解决方案将被分发为ASOPEN ASOPEN-SOPEN-SOPERCE-SORPERCE软件和/或工具。

项目成果

期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ monograph.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ sciAawards.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ conferencePapers.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ patent.updateTime }}

Ramasubramanian Sekar其他文献

Ramasubramanian Sekar的其他文献

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

{{ truncateString('Ramasubramanian Sekar', 18)}}的其他基金

SaTC: CORE: Medium: WebSheets: A New Privacy-Centric Framework for Web Applications
SaTC:核心:媒介:WebSheets:一种新的以隐私为中心的 Web 应用程序框架
  • 批准号:
    2153056
  • 财政年份:
    2022
  • 资助金额:
    $ 100万
  • 项目类别:
    Standard Grant
SaTC: CORE: Medium: Collaborative: RADAR: Real-time Advanced Detection and Attack Reconstruction
SaTC:核心:中等:协作:雷达:实时高级检测和攻击重建
  • 批准号:
    1918667
  • 财政年份:
    2019
  • 资助金额:
    $ 100万
  • 项目类别:
    Standard Grant
TWC: Small: A platform for enhancing security of binary code
TWC:小型:增强二进制代码安全性的平台
  • 批准号:
    1319137
  • 财政年份:
    2013
  • 资助金额:
    $ 100万
  • 项目类别:
    Standard Grant
Collaborative Project: An Extensible Software Platform for a Virtual Cyber Security Laboratory
合作项目:虚拟网络安全实验室的可扩展软件平台
  • 批准号:
    0817188
  • 财政年份:
    2008
  • 资助金额:
    $ 100万
  • 项目类别:
    Standard Grant
Center for Information Protection: A Multi-University Industry/University Collaborative Research Center
信息保护中心:多大学产学合作研究中心
  • 批准号:
    0733935
  • 财政年份:
    2007
  • 资助金额:
    $ 100万
  • 项目类别:
    Continuing Grant
CT: New Techniques for Attack Detection, Prevention and Immunization
CT:攻击检测、预防和免疫的新技术
  • 批准号:
    0627687
  • 财政年份:
    2006
  • 资助金额:
    $ 100万
  • 项目类别:
    Continuing Grant
A Plan for Developing a Multi-University Industry/University Collaborative Research Center on Cyber Security
建立多所大学网络安全产学合作研究中心计划
  • 批准号:
    0532030
  • 财政年份:
    2005
  • 资助金额:
    $ 100万
  • 项目类别:
    Standard Grant
Scholarship for Service in Information Assurance
信息保障服务奖学金
  • 批准号:
    0417103
  • 财政年份:
    2004
  • 资助金额:
    $ 100万
  • 项目类别:
    Continuing Grant
Collaborative Research: Capacity Expansion in Information Assurance
合作研究:信息保障能力扩展
  • 批准号:
    0313858
  • 财政年份:
    2003
  • 资助金额:
    $ 100万
  • 项目类别:
    Standard Grant
A New Approach for Securing Systems Using Automated Adaptive Intrusion Response
使用自动自适应入侵响应保护系统安全的新方法
  • 批准号:
    0208877
  • 财政年份:
    2002
  • 资助金额:
    $ 100万
  • 项目类别:
    Continuing Grant

相似海外基金

Brainstem Modulation of Proactive Coping
主动应对的脑干调节
  • 批准号:
    10660652
  • 财政年份:
    2023
  • 资助金额:
    $ 100万
  • 项目类别:
Aging effects on the neural coding of proactive and reactive cognitive control
衰老对主动和反应认知控制的神经编码的影响
  • 批准号:
    10705622
  • 财政年份:
    2022
  • 资助金额:
    $ 100万
  • 项目类别:
Aging effects on the neural coding of proactive and reactive cognitive control: Administrative Supplement
衰老对主动和反应性认知控制神经编码的影响:行政补充
  • 批准号:
    10715441
  • 财政年份:
    2022
  • 资助金额:
    $ 100万
  • 项目类别:
Real-time Proactive Road Safety Management Techniques
实时主动道路安全管理技术
  • 批准号:
    RGPIN-2022-04486
  • 财政年份:
    2022
  • 资助金额:
    $ 100万
  • 项目类别:
    Discovery Grants Program - Individual
Aging effects on the neural coding of proactive and reactive cognitive control
衰老对主动和反应认知控制的神经编码的影响
  • 批准号:
    10462368
  • 财政年份:
    2022
  • 资助金额:
    $ 100万
  • 项目类别:
{{ showInfoDetail.title }}

作者:{{ showInfoDetail.author }}

知道了