CRII: SaTC: Transparent Capture and Aggregation of Secure Data Provenance for Smart Devices

CRII:SaTC:智能设备安全数据来源的透明捕获和聚合

基本信息

  • 批准号:
    1657534
  • 负责人:
  • 金额:
    $ 17.47万
  • 依托单位:
  • 依托单位国家:
    美国
  • 项目类别:
    Standard Grant
  • 财政年份:
    2017
  • 资助国家:
    美国
  • 起止时间:
    2017-03-01 至 2020-02-29
  • 项目状态:
    已结题

项目摘要

Computers are increasingly pervasive and diverse, embedded in devices ranging from smart phones and wearable computers to home automation devices and automotive systems. This explosive growth has far outpaced the speed with which device behaviors can be analyzed and understood, creating unprecedented opportunities for "Internet of Things" devices to engage in nefarious activities such as violating users' privacy or spreading malware. This project is designing and implementing new frameworks that track the provenance (i.e., history) of data processing and communications in systems of smart devices. To facilitate the identification of malicious behaviors, the project is developing non-invasive techniques for extracting device provenance, and presenting a public accountability infrastructure through which the history of interactions between smart devices can be analyzed.In light of the great diversity of computing platforms in this environment, the efficient extraction of fine-grained data provenance is difficult. To overcome these challenges, the researchers are designing and implementing minimally-invasive mechanisms and associated algorithms for the observation of smart device activity at multiple system layers. The expected results include the development of a retrofit mechanism that leverages program instrumentation to enable complete provenance mediation for commodity-off-the-shelf smart devices, and a network mediation point that monitors inter-device communication in order to extract network provenance from systems of devices. Finally, the project is developing algorithms and protocols to securely extract and aggregate device provenance to a centralized repository, enabling provenance-based crowd-sourced monitoring of the Internet of Things. This work will not only establish foundations for trust in the functionality of smart devices, but also enable further research in provenance-based analytics.
计算机越来越普遍和多样化,嵌入到从智能手机和可穿戴计算机到家庭自动化设备和汽车系统等设备中。这种爆炸性增长远远超过了设备行为分析和理解的速度,为“物联网”设备从事侵犯用户隐私或传播恶意软件等邪恶活动创造了前所未有的机会。该项目正在设计和实施新的框架,用于跟踪智能设备系统中数据处理和通信的来源(即历史)。为了促进识别恶意行为,该项目正在开发用于提取设备来源的非侵入性技术,并提出一个公共问责基础设施,通过该基础设施可以分析智能设备之间的交互历史。在这种环境下,高效提取细粒度数据来源是很困难的。为了克服这些挑战,研究人员正在设计和实施微创机制和相关算法,以观察多个系统层的智能设备活动。预期结果包括开发一种改造机制,该机制利用程序检测来实现对现成商品智能设备的完整来源中介,以及一个网络中介点,用于监视设备间通信,以便从系统中提取网络来源。设备。最后,该项目正在开发算法和协议,以安全地提取设备来源并将其聚合到集中存储库,从而实现基于来源的物联网众包监控。这项工作不仅将为人们对智能设备功能的信任奠定基础,而且还有助于对基于来源的分析进行进一步的研究。

项目成果

期刊论文数量(24)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
AliDrone: Enabling Trustworthy Proof-of-Alibi for Commercial Drone Compliance
AliDrone:为商业无人机合规性提供可靠的不在场证明
Valve: Securing Function Workfows on Serverless Computing Platforms
Valve:保护无服务器计算平台上的功能工作流
  • DOI:
    3366423.3380173
  • 发表时间:
    2020-01
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Datta, Pubali;Kumar, Prabuddha;Morris, Tristan;Grace, Michael;Rahmati, Amir;Bates, Adam
  • 通讯作者:
    Bates, Adam
Provenance for Intent-Based Networking
基于意图的网络的起源
Runtime Analysis of Whole-System Provenance
整个系统来源的运行时分析
A Provenance Model for the European Union General Data Protection Regulation
欧盟通用数据保护法规的来源模型
{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ monograph.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ sciAawards.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ conferencePapers.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ patent.updateTime }}

Adam Bates其他文献

Poster: What Behaviors Are in Your System Log Dataset?
海报:您的系统日志数据集中有哪些行为?
  • DOI:
  • 发表时间:
    2024-09-14
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Jason Liu;Andy Riddle;Kim Westfall;Adam Bates
  • 通讯作者:
    Adam Bates
Logging to the Danger Zone: Race Condition Attacks and Defenses on System Audit Frameworks
记录到危险区域:系统审计框架的竞态条件攻击和防御
Mo(bile) Money, Mo(bile) Problems
移动(胆)钱,移动(胆)问题
  • DOI:
    10.1145/3092368
  • 发表时间:
    2017-08-11
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Bradley Reaves;Jasmine Bowers;Nolen Scaife;Adam Bates;Arnav Bhartiya;Patrick Traynor;Kevin R. B. Butler
  • 通讯作者:
    Kevin R. B. Butler
Let SDN Be Your Eyes: Secure Forensics in Data Center Networks
让 SDN 成为您的眼睛:数据中心网络中的安全取证
  • DOI:
    10.14722/sent.2014.23002
  • 发表时间:
    2024-09-14
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Adam Bates;Kevin R. B. Butler;Andreas Haeberlen;M. Sherr;Wenchao Zhou
  • 通讯作者:
    Wenchao Zhou
Entity C WasGeneratedBy Entity A Entity B Activity Used Used WasControlledByAgent
实体 C WasGenerateBy 实体 A 实体 B 使用的活动 WasControlledByAgent
  • DOI:
  • 发表时间:
    2024-09-13
  • 期刊:
  • 影响因子:
    4.6
  • 作者:
    Adam Bates
  • 通讯作者:
    Adam Bates

Adam Bates的其他文献

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

{{ truncateString('Adam Bates', 18)}}的其他基金

I-Corps: Translation potential of using provenance-based threat detection for improving cybersecurity
I-Corps:使用基于来源的威胁检测来提高网络安全的转化潜力
  • 批准号:
    2424261
  • 财政年份:
    2024
  • 资助金额:
    $ 17.47万
  • 项目类别:
    Standard Grant
SaTC: CORE: Medium: Principled Foundations for the Design and Evaluation of Graph-Based Host Intrusion Detection Systems
SaTC:核心:中:基于图的主机入侵检测系统的设计和评估的原则基础
  • 批准号:
    2055127
  • 财政年份:
    2021
  • 资助金额:
    $ 17.47万
  • 项目类别:
    Standard Grant
CAREER: Scalable Information Flow Monitoring and Enforcement through Data Provenance Unification
职业:通过数据来源统一进行可扩展的信息流监控和执行
  • 批准号:
    1750024
  • 财政年份:
    2018
  • 资助金额:
    $ 17.47万
  • 项目类别:
    Continuing Grant

相似海外基金

SaTC: CORE: Small: A Transparent and Customizable Android Container-Based Virtualization Architecture for Dynamic Malware Analysis
SaTC:CORE:Small:用于动态恶意软件分析的透明且可定制的基于 Android 容器的虚拟化架构
  • 批准号:
    2312185
  • 财政年份:
    2022
  • 资助金额:
    $ 17.47万
  • 项目类别:
    Standard Grant
SaTC: CORE: Small: A Transparent and Customizable Android Container-Based Virtualization Architecture for Dynamic Malware Analysis
SaTC:CORE:Small:用于动态恶意软件分析的透明且可定制的基于 Android 容器的虚拟化架构
  • 批准号:
    2128703
  • 财政年份:
    2021
  • 资助金额:
    $ 17.47万
  • 项目类别:
    Standard Grant
EAGER: SaTC: Early-Stage Interdisciplinary Collaboration: Designing Trustworthy and Transparent Information Platforms
EAGER:SaTC:早期跨学科合作:设计值得信赖且透明的信息平台
  • 批准号:
    2128642
  • 财政年份:
    2021
  • 资助金额:
    $ 17.47万
  • 项目类别:
    Standard Grant
EAGER: SaTC: Early-Stage Interdisciplinary Collaboration: Designing Trustworthy and Transparent Information Platforms
EAGER:SaTC:早期跨学科合作:设计值得信赖且透明的信息平台
  • 批准号:
    2128642
  • 财政年份:
    2021
  • 资助金额:
    $ 17.47万
  • 项目类别:
    Standard Grant
SaTC: CORE: Small: A Transparent and Customizable Android Container-Based Virtualization Architecture for Dynamic Malware Analysis
SaTC:CORE:Small:用于动态恶意软件分析的透明且可定制的基于 Android 容器的虚拟化架构
  • 批准号:
    2128703
  • 财政年份:
    2021
  • 资助金额:
    $ 17.47万
  • 项目类别:
    Standard Grant
{{ showInfoDetail.title }}

作者:{{ showInfoDetail.author }}

知道了