TC: Medium: Exploiting Multicore and Hardware Acceleration to Perform Efficient Behavior-Based Attack Detection and Repair
TC: Medium: Exploiting Multicore and Hardware Acceleration to Perform Efficient Behavior-Based Attack Detection and Repair
批准号:
1065112
负责人:
David Brumley
金额:
$114.02万
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2011
资助国家:
美国
项目状态:
已结题
起止时间:
2011-09-01 至 2016-08-31
中文摘要
本研究调查技术,以有效地检测第一次利用对用户系统上的未知漏洞,然后安全地修复系统,以防止进一步的攻击。 该研究使用动态分析-在执行时监视代码的能力-因为它可以用于检查实际执行的安全性和安全属性,并确保执行的每一步都是安全的。 然而,现有的动态分析技术对于最终用户来说太慢,并且目前不能帮助用户系统自我修复。 本研究调查的技术,以克服这些限制,通过开发有效的动态分析技术,以及技术诊断的根本原因,利用漏洞,修复任何损坏,并保护系统免受进一步的攻击。
英文摘要
This research investigates techniques to efficiently detect the first exploit against an unknown vulnerability on a user system, and then safely heal the system against further attacks. The research uses dynamic analysis -- the ability to monitor code as it executes -- because it can be used to check safety and security properties of actual executions and make sure that each step of the execution is safe. However, existing dynamic analysis techniques are far too slow for end users, and currently do not help user systems self-heal. This research investigates techniques to overcome these limitations by developing efficient dynamic analysis techniques, as well as techniques for diagnosing the root cause of an exploited vulnerability, repairing any damage done, and defending the system against further attacks.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
EDU: Collaborative: PicoCTF: Teaching Cybersecurity To High School Students through Scalable Challenges
-
批准号:1419362
-
项目类别:Standard Grant
-
资助金额:$22.5万
-
财政年份:2014
-
负责人:David Brumley
-
依托单位:
TWC: Medium: Collaborative: Breaking the Satisfiability Modulo Theories (SMT) Bottleneck in Symbolic Security Analysis
-
批准号:1228827
-
项目类别:Standard Grant
-
资助金额:$39.2万
-
财政年份:2012
-
负责人:David Brumley
-
依托单位:
CAREER: Towards Identifying and Eliminating Exploitable Software Bugs
-
批准号:0953751
-
项目类别:Continuing Grant
-
资助金额:$52.15万
-
财政年份:2010
-
负责人:David Brumley
-
依托单位:
海外基金