课题基金 / 基金详情

EAGER: Man-at-the-End Attacks: Defenses and Evaluation Techniques

EAGER: Man-at-the-End Attacks: Defenses and Evaluation Techniques
EAGER:末端人攻击:防御和评估技术
批准号:
1145913
负责人:
Christian Collberg
金额:
$26.96万
依托单位:
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2011
资助国家:
美国
项目状态:
已结题
起止时间:
2011-09-01 至 2014-10-31

项目摘要

项目成果

Christian Collberg的其他基金

相似基金

相关文献

中文摘要
翻译
本研究考虑了这样一种场景,在这种场景中,需要保护软件免受攻击者(终端攻击者,MATE)的攻击,攻击者对软件具有物理访问权限,因此能够检查、修改和执行软件。目标是防止攻击者从软件中提取敏感信息,防止他更改软件的行为,或者至少在进行此类攻击时检测并报告。末梢人攻击会造成严重后果。例如,就个人而言,它们可能侵犯医疗记录和其他敏感个人数据的隐私和完整性;在更大的范围内,这种攻击可以使国家基础设施(如电网和互联网本身)瘫痪。该项目探索保护分布式系统免受MATE攻击的创新方法。为了完成全面的防御,该项目开发了MATE攻击模型和安全指标,正式描述了设备妥协的过程,提供了攻击工具,允许轻松测试防御算法,并设计了防御评估的社区标准。严格定义的安全度量对于将研究成果与现有和未来的方法进行比较是必要的。因此,本研究的主要目标是开发MATE防御机制的评估程序。这包括通用混淆度量和详细的红队演习协议。
英文摘要
This research considers a scenario in which a piece of software needs to be protected against an attacker (the man-at-the-end, MATE) who has physical access to the software and so is able to inspect, modify, and execute it. The goal is to prevent the attacker from extracting sensitive information from the software, to prevent him from making changes to the behavior of the software, or, at least, to detect and report when such attacks are underway.Man-at-the-end attacks can have serious consequences. For example, on an individual scale they can violate the privacy and integrity of medical records and other sensitive personal data; on a larger scale, such attacks can cripple national infrastructure (such as the power grid and the Internet itself).This project explores innovative approaches to protect distributed systems from MATE attacks. To accomplish comprehensive defenses, the project develops MATE attack models and security metrics that formally characterize the process of device compromise, provides attack tools to allow easy testing of defense algorithms, and devises community standards for defense evaluation. Rigorously defined security metrics are necessary for research outcomes to be compared to existing and future approaches. A primary goal of this research is therefore to develop evaluation procedures for MATE defense mechanisms. This includes both universal obfuscation metrics and detailed red-team exercise protocols.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
SaTC: TTP: Medium: The Tigress Endpoint Protection Tool
  • 批准号:
    2040206
  • 项目类别:
    Standard Grant
  • 资助金额:
    $95.02万
  • 财政年份:
    2021
  • 负责人:
    Christian Collberg
  • 依托单位:
SaTC: EDU: LIGERLabs: Educational Modules for (Anti-)Reverse Engineering
  • 批准号:
    2029632
  • 项目类别:
    Standard Grant
  • 资助金额:
    $40.0万
  • 财政年份:
    2020
  • 负责人:
    Christian Collberg
  • 依托单位:
TWC TTP: Small: Mitigating Insider Attacks in Provenance Systems
  • 批准号:
    1318955
  • 项目类别:
    Standard Grant
  • 资助金额:
    $49.61万
  • 财政年份:
    2013
  • 负责人:
    Christian Collberg
  • 依托单位:
Software Watermarking, Obfuscation, and Tamper-Proofing for Software Protection
  • 批准号:
    0073483
  • 项目类别:
    Continuing Grant
  • 资助金额:
    $26.5万
  • 财政年份:
    2000
  • 负责人:
    Christian Collberg
  • 依托单位:
国内基金
海外基金
基于 CRISPR/Cas9-Man 定点编辑的红球藻细 胞厚壁构象应答机制研究
  • 批准号:
    Q24C200031
  • 项目类别:
    省市级项目
  • 资助金额:
    --
  • 批准年份:
    2024
  • 负责人:
    徐冉
  • 依托单位:
N-糖基转移酶 MAN1B1 通过调控 CD47 促进 膀胱癌免疫逃逸机制研究
  • 批准号:
    Y24H160082
  • 项目类别:
    省市级项目
  • 资助金额:
    --
  • 批准年份:
    2024
  • 负责人:
    余燕岚
  • 依托单位:
环状RNAcircMAN1A2_009编码的新蛋白MAN1A2-155aa调控T淋巴母细胞淋巴瘤/白血病复发耐药的分子机制研究
  • 批准号:
    82370190
  • 项目类别:
    面上项目
  • 资助金额:
    49万元
  • 批准年份:
    2023
  • 负责人:
    田小朋
  • 依托单位:
甘露糖多效价糖簇修饰纳米纤维诱导man-PTS抗菌机制研究