Automatic Intrusion Detection and Response system for Cyberinfrastructure-Oriented Systems (AIDR-COS)
Automatic Intrusion Detection and Response system for Cyberinfrastructure-Oriented Systems (AIDR-COS)
批准号:
1063831
负责人:
Jessie Walker
金额:
$14.99万
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2010
资助国家:
美国
项目状态:
已结题
起止时间:
2010-10-15 至 2012-09-30
中文摘要
在这个EAGER项目中,位于派恩布拉夫的阿肯色大学正在对面向网络基础设施的系统的自动入侵检测和响应进行初步调查。该项目的目的是开发一个可扩展的框架,以自动评估、测量和评估安全威胁,即通过网络空间使用软件和硬件连接在一起的复杂网络系统中的入侵。网络基础设施由计算系统、数据存储系统、数据存储库和先进仪器以及可视化环境组成,通过软件和先进网络连接在一起,以提高科学生产力,实现其他方式无法实现的突破。该框架将被设计为现有系统的一个主动/可编程组件,将是自动化、动态和自适应的。此外,该项目将使用来自阿肯色大学小石城卓越保证、安全和软件可用性、研究和教育中心(ASSURE)的入侵数据来构建入侵行为模式的可视化表示和预测模型,以预测对此类系统的未来攻击。该项目是一个有针对性的探索性项目,它是新颖的,对计算机/网络安全和信息保障社区在五个核心领域具有潜在的重要价值,因为它们与网络基础设施资源安全有关:(1)开发面向网络基础设施系统内入侵的统一定量系统;(2)开发面向网络基础设施系统内入侵的自动评估机制;(3)开发面向网络基础设施系统内入侵的安全可视化模型,以便对入侵类型进行分类和分类;(4)在网络基础设施安全领域扩大教学型大学教师的专业知识(5)扩大接触网络基础设施安全概念、理论、实践和原则的学生群体。知识价值拟议的AIDR-COS项目的知识价值在于建立一个灵活的安全框架,以检查面向网络基础设施的系统内的入侵。该项目涉及许多独特的跨学科研究问题,如在面向网络基础设施的系统中识别入侵类型、自适应入侵分类结构、动态生成的解决方案和独特的定量测量过程。此外,开发了基于自动入侵检测的自主机制、响应模型,使系统能够根据入侵类别进行自主调整。更广泛的影响本项目的更广泛影响包括:(1)扩大网络基础设施安全领域内的研究/教育界的新合作,包括更多历史上代表性不足的少数民族和以教学为导向的大学;(2)扩大组织整合利用现有资源的成熟安全解决方案的能力,从而提高现有计算基础设施的投资回报,并简化不断发展的网络基础设施系统的整合;(3)提高安全工程师为非单一网络基础设施系统开发安全解决方案的能力;(4)在与自动入侵检测和分类以及网络安全相关的网络基础设施安全领域发生创新时,开发共享知识和资源的途径。
英文摘要
In this EAGER project, the University of Arkansas at Pine Bluff is carrying out a preliminary investigation into automatic intrusion detection and response for cyberinfrastructure-oriented systems. The aim of the project is to develop an extendable framework to automatically evaluate, measure, and rate security threats, i.e. intrusions within complex network systems linked together via cyberspace using software and hardware. The cyberinfrastructure consists of computing systems, data storage systems, data repositories and advanced instruments, and visualization environments, linked together by software and advanced networks to improve scientific productivity and enable breakthroughs not otherwise possible. The framework will be designed to operate as an active/programmable component of existing systems that will be automated, dynamic and adaptive. In addition, the project will use intrusion data from the University of Arkansas at Little Rock, Center for Excellence for Assurance, Security, and Software Usability, Research, and Education (ASSURE) to construct visual representations of intrusion behavior patterns and predictive models to forecast future attacks on such systems. The project is a targeted exploratory project that is novel, and has potentially significant value for the computer/network security, and information assurance communities within five core areas as they relate to cyberinfrastructure resourcesSecurity: (1) developing a unifying quantitative system for intrusions within cyberinfrastructureoriented systems (2) developing mechanisms to automatically appraise intrusions within cyberinfrastructure-oriented systems (3) developing security visualization models to represent intrusions within cyberinfrastructure-oriented systems to allow for the classification, and categorization of intrusion types, (4) expanding the expertise of faculty members at teaching oriented universities within the domain of cyberinfrastructure security (5) expanding the community of students exposed to cyberinfrastructure security concepts, theories, practices, and principles.Intellectual MeritThe intellectual merit of the proposed AIDR-COS project is to carve out a flexible security framework to examine intrusions within cyberinfrastructure-oriented systems. The project involves a number of unique interdisciplinary research issues such as identification of intrusion types within cyberinfrastructure-oriented systems, adaptive intrusion classification structures, dynamically generated solutions, and a unique quantitative measurement process. In addition, to the development of autonomous mechanisms based on automatic intrusion detection, response models to enable autonomous system adjustments depending on intrusion classes.Broader ImpactsThe broader impacts of this project include: (1) new collaborations to expand the research/education community within the domain of cyberinfrastructure security, to include greater numbers of historically underrepresented minorities, and teaching-oriented universities, (2) expanding the ability of organizations to integrate in proven security solutions that harness available resources, thus extending the return on investment of the existing computing infrastructure and easing the integration of evolving cyberinfrastructure systems, (3) improving the ability of security engineers to develop security solutions for non-monolithiccyberinfrastructure systems, (4) developing avenues for sharing knowledge and resources as innovation takes place within the domain of cyberinfrastructure security as it relates to automatic intrusion detection and classification, and cyber security.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
Demonstration Project: Arkansas Minority Cyberinfrastructure Training, Education Consortium (AMC-TEC)
-
批准号:1041420
-
项目类别:Standard Grant
-
资助金额:$23.17万
-
财政年份:2010
-
负责人:Jessie Walker
-
依托单位:
Collaborative Research: BPC-A: ARTSI: Advancing Robotics Technology for Social Impact
-
批准号:0742098
-
项目类别:Continuing Grant
-
资助金额:$0.0万
-
财政年份:2007
-
负责人:Jessie Walker
-
依托单位:
海外基金