CICI:SIVD:Context-Aware Vulnerability Detection in Configurable Scientific Computing Environments
CICI:SIVD:可配置科学计算环境中的上下文感知漏洞检测
基本信息
- 批准号:2115167
- 负责人:
- 金额:$ 49.98万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Standard Grant
- 财政年份:2021
- 资助国家:美国
- 起止时间:2021-07-01 至 2025-06-30
- 项目状态:未结题
- 来源:
- 关键词:
项目摘要
Computational infrastructures have increasingly become the enabling factor for scientific discovery, in critical application domains including seismic imaging, air quality monitoring, epidemiology, drug discovery and nuclear engineering. The security of these infrastructures is thus of crucial importance, as the vulnerabilities in their unique software stacks can cause significant damage to economy, environment, public health, and national security. This project aims to safeguard scientific computing infrastructures via automatically identifying hidden software vulnerabilities in a timely manner. Particularly, the goal of this project is to address the challenging problem of configuration-related security bugs in highly customizable high-performance computing environments. Detecting such vulnerabilities is a hard problem. The stateof- the-art general vulnerability analyzers are unable to capture the specific runtime contexts of multiple interdependent software elements in specialized scientific computing environments. To bridge this gap, this project connects advanced bug-finding techniques to dedicated high-performance computing settings. In addition, it also seeks to leverage the unique characteristics of scientific computing environments to facilitate vulnerability discovery. Hence, this research provides a comprehensive understanding of the software security problems in real-world scientific computing systems, and builds robust solutions to secure these systems.Specifically, this project develops novel deployment-specific vulnerability detection techniques, that can (a) discover seemingly well-formed, yet inconsistent configuration values within scientific computing contexts, (b) detect cross-component vulnerabilities caused by the settings of interconnected computing software, and (c) take full advantage of the de facto workflow of high-performance computing systems to reduce the complexity of finding bugs. This research consists of three tasks: (1) it investigates the deployment contexts in real-world high-performance computing systems and develops both offline and online tools to automatically collect contextual information; (2) it applies extracted contexts to detecting misconfiguration and configuration-triggered code vulnerabilities at both deployment time and incrementally at runtime; (3) it tests the novel technique in real-world testbeds and scientific computing environments to evaluate its accuracy, efficiency and effectiveness.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
在关键的应用领域,包括地震成像,空气质量监测,流行病学,药物发现和核工程在内的关键应用领域中,计算基础设施越来越成为科学发现的推动因素。因此,这些基础设施的安全至关重要,因为其独特的软件堆栈中的脆弱性会对经济,环境,公共卫生和国家安全造成重大损害。该项目旨在通过及时识别隐藏的软件漏洞来保护科学计算基础架构。特别是,该项目的目的是解决高度可自定义的高性能计算环境中与配置相关的安全错误的挑战性问题。检测这种漏洞是一个棘手的问题。在专用科学计算环境中,总体脆弱性分析仪无法捕获多个相互依存的软件元素的特定运行时环境。为了弥合此差距,该项目将高级错误调查技术连接到专用的高性能计算设置。此外,它还试图利用科学计算环境的独特特征来促进脆弱性发现。因此,这项研究提供了对现实世界科学计算系统中软件安全问题的全面理解,并构建了可靠的解决方案以保护这些系统。特别是,该项目开发了新颖的特定部署特定脆弱性检测技术,可以(a)(a)发现既构成良好又构成了不一致的计算范围的计算上下文(B)(B)在(b)中造成的不一致的配置值(B)(B)(b)b)软件和(c)充分利用了高性能计算系统的事实上的工作流程,以减少查找错误的复杂性。这项研究包括三个任务:(1)它研究了现实世界中高性能计算系统中的部署环境,并开发了离线和在线工具,以自动收集上下文信息; (2)它应用了提取的上下文来检测部署时间和在运行时逐步增长的配置和配置触发的代码漏洞; (3)它在现实世界测试台和科学计算环境中测试了新技术,以评估其准确性,效率和有效性。该奖项反映了NSF的法定任务,并被认为是值得通过基金会的智力优点评估来支持的,并具有更广泛的影响。
项目成果
期刊论文数量(2)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
Automated Generation of Security-Centric Descriptions for Smart Contract Bytecode
- DOI:10.1145/3597926.3598132
- 发表时间:2023-07
- 期刊:
- 影响因子:0
- 作者:Yufei Pan;Zhichao Xu;Li Li-Li;Yunhe Yang;Mu Zhang
- 通讯作者:Yufei Pan;Zhichao Xu;Li Li-Li;Yunhe Yang;Mu Zhang
Arvin: Greybox Fuzzing Using Approximate Dynamic CFG Analysis
Arvin:使用近似动态 CFG 分析进行灰盒模糊测试
- DOI:10.1145/3579856.3582813
- 发表时间:2023
- 期刊:
- 影响因子:0
- 作者:Shahini, Sirus;Zhang, Mu;Payer, Mathias;Ricci, Robert
- 通讯作者:Ricci, Robert
共 2 条
- 1
Mu Zhang其他文献
Broken windows in tourism: The effect of occupational stigma perception of tour guides on interpersonal deviance toward tourists
旅游业的破窗:导游职业耻辱感对游客人际偏差的影响
- DOI:
- 发表时间:20222022
- 期刊:
- 影响因子:0
- 作者:Shaogui Xu;Y. Zuo;Sirong Chen;R. Law;Mu ZhangShaogui Xu;Y. Zuo;Sirong Chen;R. Law;Mu Zhang
- 通讯作者:Mu ZhangMu Zhang
An improved inter-cluster multi-hop LEACH protocol oriented reliable transmission in WSNs
改进的无线传感器网络中面向簇间多跳LEACH协议的可靠传输
- DOI:10.1109/compcomm.2017.832253910.1109/compcomm.2017.8322539
- 发表时间:20172017
- 期刊:
- 影响因子:0
- 作者:Hui Chen;Feng Wang;Mu ZhangHui Chen;Feng Wang;Mu Zhang
- 通讯作者:Mu ZhangMu Zhang
Comparation of Se accumulation and distribution of two rice (Oryza sativa L.) cultivars with high- and low- Se efficiency as affected by exogenous application of selenite
外源亚硒酸盐对高硒效率和低硒效率两个水稻品种硒积累和分配的比较
- DOI:10.1016/j.jcs.2022.10347510.1016/j.jcs.2022.103475
- 发表时间:2022-042022-04
- 期刊:
- 影响因子:3.8
- 作者:Qiong Yi;Xing Sun;Shuanhu Tang;Peizhi Xu;Yuwan Pang;Xu Huang;Qiaoyi Huang;Jianfeng Huang;Mu ZhangQiong Yi;Xing Sun;Shuanhu Tang;Peizhi Xu;Yuwan Pang;Xu Huang;Qiaoyi Huang;Jianfeng Huang;Mu Zhang
- 通讯作者:Mu ZhangMu Zhang
Coupled Effects of Reduced Chemical Fertilization and Biochar Supplementation on Availability and Transformations of Nitrogen and Phosphorus in Vegetable Farmland Soil: An In Situ Study in Southern China
减少化肥和添加生物炭对蔬菜农田土壤氮磷的有效性和转化的耦合影响:中国南方的现场研究
- DOI:10.3390/agriculture1110097910.3390/agriculture11100979
- 发表时间:2021-102021-10
- 期刊:
- 影响因子:0
- 作者:Xiongsheng Yu;Yong Liu;Mu Zhang;Shaoying Ai 1;Rongping Wang;Li’an Zhu;Huihua ZhangXiongsheng Yu;Yong Liu;Mu Zhang;Shaoying Ai 1;Rongping Wang;Li’an Zhu;Huihua Zhang
- 通讯作者:Huihua ZhangHuihua Zhang
Research on the Sustainable Development of Urban Night Tourism Economy: A Case Study of Shenzhen City
城市夜间旅游经济可持续发展研究——以深圳市为例
- DOI:10.3389/frsc.2022.87069710.3389/frsc.2022.870697
- 发表时间:20222022
- 期刊:
- 影响因子:3.9
- 作者:Rui Zhang;Sirong Chen;Shaogui Xu;R. Law;Mu ZhangRui Zhang;Sirong Chen;Shaogui Xu;R. Law;Mu Zhang
- 通讯作者:Mu ZhangMu Zhang
共 52 条
- 1
- 2
- 3
- 4
- 5
- 6
- 11
相似国自然基金
基于空间协方差分析建立的AD和SIVD脑灌注模式:生物标志物和机制研究
- 批准号:81870831
- 批准年份:2018
- 资助金额:56.0 万元
- 项目类别:面上项目
基于DTI探讨白质超微结构改变在化瘀通络灸干预SIVD中的作用
- 批准号:81574075
- 批准年份:2015
- 资助金额:59.0 万元
- 项目类别:面上项目
相似海外基金
CICI: SIVD: Discover and defend cyber vulnerabilities of deep learning medical diagnosis models to adversarial attacks
CICI:SIVD:发现并防御深度学习医疗诊断模型针对对抗性攻击的网络漏洞
- 批准号:21150822115082
- 财政年份:2021
- 资助金额:$ 49.98万$ 49.98万
- 项目类别:Standard GrantStandard Grant
LONGITUDINAL STUDIES OF AD AND SIVD
AD 和 SIVD 的纵向研究
- 批准号:74588857458885
- 财政年份:2007
- 资助金额:$ 49.98万$ 49.98万
- 项目类别:
1H MRSI AND PERFUSION MRI OF SIVD
SIVD 的 1H MRSI 和灌注 MRI
- 批准号:65963696596369
- 财政年份:2002
- 资助金额:$ 49.98万$ 49.98万
- 项目类别:
LONGITUDINAL STUDIES OF ALZHEIMERS DISEASE AND SIVD
阿尔茨海默病和 SIVD 的纵向研究
- 批准号:65963736596373
- 财政年份:2002
- 资助金额:$ 49.98万$ 49.98万
- 项目类别:
1H MRSI AND PERFUSION MRI OF SIVD
SIVD 的 1H MRSI 和灌注 MRI
- 批准号:64722576472257
- 财政年份:2001
- 资助金额:$ 49.98万$ 49.98万
- 项目类别: