TC: Medium: Collaborative Research: Tracking Adversarial Behavior in Distributed Systems with Secure Networked Provenance
TC: Medium: Collaborative Research: Tracking Adversarial Behavior in Distributed Systems with Secure Networked Provenance
批准号:
1064986
负责人:
Micah Sherr
金额:
$35.24万
依托单位:
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2011
资助国家:
美国
项目状态:
已结题
起止时间:
2011-09-01 至 2016-08-31
中文摘要
点击翻译按钮获取中文摘要
英文摘要
Operators of networks and distributed systems often find themselves needing to answer a diagnostic or forensic question -- some part of the system is found to be in an unexpected state, and the operators must decide whether the state is legitimate or a symptom of a clandestine attack. In such cases, it would be useful to ask the system for an 'explanation' of the observed state. In the absence of attacks, emerging network provenance techniques can construct such explanations by constructing a chain of events that links the observed state to its root causes. However, an attacker can cause the nodes under his control to forge or suppress information and thus produce a plausible (but incorrect) explanation. As a result, the operators may fail to notice the attack.This research develops secure network provenance techniques that can provide useful explanations even when the system is under attack by a powerful adversary. The project (i) substantially extends and generalizes the concept of network provenance by adding capabilities needed in a forensic setting; (ii) develops techniques for securely storing provenance without any trusted components; (iii) designs methods for efficiently querying secure provenance; (iv) introduces methods for protecting the confidentiality of provenance; and (v) evaluates these techniques in the context of concrete applications.The project's theme of provenance and forensics is integrated with Penn's new undergraduate program in Market and Social Systems Engineering. It will provide forensics support for a wide variety of distributed applications, including emerging cloud applications upon which critical infrastructure may soon be based.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
Collaborative Research: SaTC: EDU: Security and Privacy Implications of Remote Proctoring for School Policies and Practices
-
批准号:2138078
-
项目类别:Standard Grant
-
资助金额:$19.07万
-
财政年份:2022
-
负责人:Micah Sherr
-
依托单位:
SaTC: Expanding Research Frontiers with a Next-Generation Anonymous Communication Experimentation (ACE) Framework
-
批准号:1925497
-
项目类别:Standard Grant
-
资助金额:$149.9万
-
财政年份:2019
-
负责人:Micah Sherr
-
依托单位:
SaTC: CORE: Small: Practical and Robust Hidden Voice Commands
-
批准号:1718498
-
项目类别:Standard Grant
-
资助金额:$50.63万
-
财政年份:2017
-
负责人:Micah Sherr
-
依托单位:
TWC: TTP Option: Small: Collaborative: Enhancing Anonymity Network Resilience against Pervasive Internet Attacks
-
批准号:1527401
-
项目类别:Standard Grant
-
资助金额:$44.98万
-
财政年份:2015
-
负责人:Micah Sherr
-
依托单位:
EAGER: Collaborative: Secure and Efficient Data Provenance
-
批准号:1445967
-
项目类别:Standard Grant
-
资助金额:$9.67万
-
财政年份:2014
-
负责人:Micah Sherr
-
依托单位:
CAREER: Private Communication in Strongly Adversarial Networks
-
批准号:1149832
-
项目类别:Continuing Grant
-
资助金额:$31.26万
-
财政年份:2012
-
负责人:Micah Sherr
-
依托单位:
海外基金