TWC: Medium: Collaborative: Know Thy Enemy: Data Mining Meets Networks for Understanding Web-Based Malware Dissemination
TWC: Medium: Collaborative: Know Thy Enemy: Data Mining Meets Networks for Understanding Web-Based Malware Dissemination
批准号:
1314935
负责人:
Michalis Faloutsos
金额:
$33.3万
依托单位:
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2013
资助国家:
美国
项目状态:
已结题
起止时间:
2013-09-01 至 2016-07-31
中文摘要
点击翻译按钮获取中文摘要
英文摘要
How does web-based malware spread? We use the term web-based malware to describe malware that is distributed through websites, and malicious posts in social networks. We are in an arms race against web-based malware distributors; and as in any war, knowledge is power. The more we know about them, the better we can defend ourselves. Our goal is to understand the dissemination of web-based malware by creating "MalScope", a suite of methods and tools that uses cutting-edge approaches to build spatiotemporal models, generators and sampling techniques for malware dissemination. From a scientific point of view, this project brings together two disciplines: Data Mining and Network Security. The outcome is a suite of novel, sophisticated, and scalable techniques and models that will enhance our understanding of malware dissemination at a large scale. We use two types of web-based malware dissemination data: (1) user machines accessing dangerous sites and downloading web-based malware; and (2) Facebook users being exposed to malicious posts. We already have and will continue to obtain more data from our industry partners (e.g. Symantec's WINE project), open-access projects, or collect on our own (e.g MyPageKeeper).The broader impact of our work is that it will enable the development of security solutions for end-users and industry. A 15-minute network outage costs a 200-employee company about $40K, while identity theft costs about $1,500 per person on average. By knowing the enemy better, security researchers and industry can more effectively stop the interconnected manifestations of Internet threats: identity theft, the creation of botnets, and DoS attacks. The PIs have a track record of technology transfer, with collaborators at industrial labs (Yahoo, MSR, Symantec, AT&T, IBM), national labs (LLNL, Sandia), open-source software (``Pegasus''), and spin-off startups (StopTheHacker). Educational impacts include developing a new course, providing publicly available educational material, and open-source software.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
SaTC: CORE: Small: SOFIA: Finding and profiling malware source-code in public archives at scale
-
批准号:2132642
-
项目类别:Standard Grant
-
资助金额:$50.0万
-
财政年份:2021
-
负责人:Michalis Faloutsos
-
依托单位:
TWC: Medium: Collaborative: Know Thy Enemy: Data Mining Meets Networks for Understanding Web-Based Malware Dissemination
-
批准号:1638219
-
项目类别:Standard Grant
-
资助金额:$5.23万
-
财政年份:2016
-
负责人:Michalis Faloutsos
-
依托单位:
NECO: A Graph-Based Approach to Traffic Monitoring and Application Classification
-
批准号:1316446
-
项目类别:Standard Grant
-
资助金额:$1.88万
-
财政年份:2012
-
负责人:Michalis Faloutsos
-
依托单位:
NECO: A Graph-Based Approach to Traffic Monitoring and Application Classification
-
批准号:0832069
-
项目类别:Standard Grant
-
资助金额:$25.0万
-
财政年份:2008
-
负责人:Michalis Faloutsos
-
依托单位:
Collaborative Research: NETS-NBD: RIDR: Towards Robust Inter-Domain Routing: Measurements, Models, and Deployable Tools
-
批准号:0721889
-
项目类别:Continuing Grant
-
资助金额:$24.5万
-
财政年份:2007
-
负责人:Michalis Faloutsos
-
依托单位:
Collaborative Research: NetMine: Finding Patterns in Network Data
-
批准号:0208950
-
项目类别:Continuing Grant
-
资助金额:$12.0万
-
财政年份:2002
-
负责人:Michalis Faloutsos
-
依托单位:
CAREER: Multicast Protocols and Topology Models for the Internet
-
批准号:9985195
-
项目类别:Standard Grant
-
资助金额:$37.69万
-
财政年份:2000
-
负责人:Michalis Faloutsos
-
依托单位:
海外基金