EAGER: Toward Automated Integration of Moving Target Defense Techniques

EAGER:迈向移动目标防御技术的自动化集成

基本信息

  • 批准号:
    1352238
  • 负责人:
  • 金额:
    $ 15万
  • 依托单位:
  • 依托单位国家:
    美国
  • 项目类别:
    Standard Grant
  • 财政年份:
    2013
  • 资助国家:
    美国
  • 起止时间:
    2013-10-01 至 2016-09-30
  • 项目状态:
    已结题

项目摘要

Moving Target defense (MTD) is a new Cybersecurity paradigm for deterring and disturbing attacks proactively in order to counter the ?asymmetry? phenomena in cyber warfare. A number of moving target techniques have been recently proposed to inverse this asymmetry by randomizing systems? attributes (e.g., configuration) and exhibiting non-determinism to attackers. However, due to potential inter-dependency between various MTD mechanisms, an ad hoc combination of MTD techniques can cause profoundly detrimental effect on security, performance and the operational integrity of the system. This project is investigating novel and transformative approaches to formulate a prescriptive framework to instantiate new MTD strategies that are correct-by-construction, from an arbitrary list of MTD mechanisms. The proposed framework enables integrating MTD mechanisms vertically, or horizontally, while balancing the benefit and cost of the synthesized integrated MTD strategy. As a case study, two main classes of MTD mechanisms, namely, Host Configuration Mutation and Network Configuration Mutation, are integrated to create a cohesive and more powerful composite MTD mechanism. To this end, the results of this research enable new theoretical foundations and transformative approaches in the science of moving target defense by contributing to the understanding of automated reasoning for moving target defense synthesis and evaluation. As this far-forward looking EAGER proposal exhibits high-risk, it also entails high-value that is to be always many steps ahead of attackers. Through the development of a framework for reasoning about MTD, MTD course modules will be developed. The software artifacts permit for further experimentation and progress in this area.
移动目标防御(MTD)是一种新的网络安全范式,旨在主动威慑和干扰攻击,以对抗网络攻击的不对称性。网络战中的现象。最近提出了一些移动目标技术来通过随机化系统来逆转这种不对称性?属性(例如,配置)和对攻击者表现出的不确定性。然而,由于各种MTD机制之间潜在的相互依赖,MTD技术的特别组合可能会对系统的安全性、性能和操作完整性造成严重的有害影响。该项目正在研究新的和变革性的方法,以制定一个规范性框架,从任意的MTD机制列表中实例化按结构正确的新的MTD战略。所提出的框架能够垂直或水平地集成MTD机制,同时平衡综合集成MTD战略的收益和成本。作为一个实例,集成了两类主要的MTD机制,即主机配置突变和网络配置突变,以创建一个具有内聚力和更强大的组合MTD机制。为此,本研究成果有助于理解运动目标防御综合与评估的自动推理,从而为运动目标防御科学提供新的理论基础和变革性的研究方法。由于这一具有远见卓识的热切提议显示出高风险,它也带来了高价值,即总是领先于攻击者许多步。通过开发关于MTD的推理框架,将开发MTD课程模块。软件构件允许在这一领域进行进一步的实验和进步。

项目成果

期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ monograph.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ sciAawards.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ conferencePapers.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ patent.updateTime }}

Ehab Al-Shaer其他文献

ROI-Driven Cyber Risk Mitigation Using Host Compliance and Network Configuration
  • DOI:
    10.1007/s10922-017-9428-x
  • 发表时间:
    2017-10-09
  • 期刊:
  • 影响因子:
    3.900
  • 作者:
    Mohammed Noraden Alsaleh;Ehab Al-Shaer;Ghaith Husari
  • 通讯作者:
    Ghaith Husari
Objective Risk Evaluation for Automated Security Management
  • DOI:
    10.1007/s10922-010-9177-6
  • 发表时间:
    2010-10-30
  • 期刊:
  • 影响因子:
    3.900
  • 作者:
    Mohammad Salim Ahmed;Ehab Al-Shaer;Mohamed Taibah;Latifur Khan
  • 通讯作者:
    Latifur Khan
Automated Security Configuration Management

Ehab Al-Shaer的其他文献

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

{{ truncateString('Ehab Al-Shaer', 18)}}的其他基金

CSR: Small: Collaborative Research: Multi-party Collaborative Data Access
CSR:小:协作研究:多方协作数据访问
  • 批准号:
    1527390
  • 财政年份:
    2015
  • 资助金额:
    $ 15万
  • 项目类别:
    Standard Grant
CyberSEES: Enabling Sustainable Civil Infrastructure Using Interactive Formal Analytics for Structural Health Diagnosis
Cyber​​SEES:使用交互式形式分析进行结构健康诊断,实现可持续的民用基础设施
  • 批准号:
    1331825
  • 财政年份:
    2013
  • 资助金额:
    $ 15万
  • 项目类别:
    Standard Grant
NeTS: Small: Collaborative Research: Enabling Network Agility Through Virtualized Infrastructure Migration
NetS:小型:协作研究:通过虚拟化基础设施迁移实现网络敏捷性
  • 批准号:
    1320662
  • 财政年份:
    2013
  • 资助金额:
    $ 15万
  • 项目类别:
    Standard Grant
I/UCRC: Collaborative Research: I/UCRC Center for Configuration Analytics and Automation
I/UCRC:合作研究:I/UCRC 配置分析和自动化中心
  • 批准号:
    1266360
  • 财政年份:
    2013
  • 资助金额:
    $ 15万
  • 项目类别:
    Continuing Grant
Planning Grant: I/UCRC for Configuration Analytics and Automation
规划资助:I/UCRC 用于配置分析和自动化
  • 批准号:
    1161015
  • 财政年份:
    2012
  • 资助金额:
    $ 15万
  • 项目类别:
    Standard Grant
SafeConfig Symposium Student Travel Award
SafeConfig 研讨会学生旅行奖
  • 批准号:
    1153691
  • 财政年份:
    2011
  • 资助金额:
    $ 15万
  • 项目类别:
    Standard Grant
TC: EAGER: Investigations of Next-generation Network Reconnaissance Attack Techniques and Limitations
TC:EAGER:下一代网络侦察攻击技术和局限性的调查
  • 批准号:
    1023868
  • 财政年份:
    2010
  • 资助金额:
    $ 15万
  • 项目类别:
    Standard Grant
CSR: Small: Collaborative Research: Towards Collaborative Overlay Problem Diagnosis Using Evidential Reasoning and Adaptive Monitoring
CSR:小型:协作研究:使用证据推理和自适应监控进行协作叠加问题诊断
  • 批准号:
    1017237
  • 财政年份:
    2010
  • 资助金额:
    $ 15万
  • 项目类别:
    Standard Grant
Global Verification and Dynamic Optimization of Network Security Polices
网络安全策略全局验证与动态优化
  • 批准号:
    1019222
  • 财政年份:
    2010
  • 资助金额:
    $ 15万
  • 项目类别:
    Continuing Grant
CSR-DMSS, SM: ConfVeal: Automated Testing of Security Configuration Enforcement in Distributed Networks
CSR-DMSS、SM:ConfVeal:分布式网络中安全配置实施的自动化测试
  • 批准号:
    1019223
  • 财政年份:
    2010
  • 资助金额:
    $ 15万
  • 项目类别:
    Standard Grant

相似国自然基金

Toward a general theory of intermittent aeolian and fluvial nonsuspended sediment transport
  • 批准号:
  • 批准年份:
    2022
  • 资助金额:
    55 万元
  • 项目类别:

相似海外基金

Toward an automated analysis of bifurcations of dynamical systems
动力系统分岔的自动分析
  • 批准号:
    23K17657
  • 财政年份:
    2023
  • 资助金额:
    $ 15万
  • 项目类别:
    Grant-in-Aid for Challenging Research (Exploratory)
Collaborative Research: SaTC: CORE: Medium: Audacity of Exploration: Toward Automated Discovery of Security Flaws in Networked Systems through Intelligent Documentation Analysis
协作研究:SaTC:核心:中:大胆探索:通过智能文档分析自动发现网络系统中的安全缺陷
  • 批准号:
    2409269
  • 财政年份:
    2023
  • 资助金额:
    $ 15万
  • 项目类别:
    Standard Grant
Toward Automated Uncertainty Quantification in Causal Inference
因果推理中的自动化不确定性量化
  • 批准号:
    2310831
  • 财政年份:
    2023
  • 资助金额:
    $ 15万
  • 项目类别:
    Continuing Grant
SHF: Small: Toward Fully Automated Formal Software Verification
SHF:小型:迈向全自动形式软件验证
  • 批准号:
    2210243
  • 财政年份:
    2022
  • 资助金额:
    $ 15万
  • 项目类别:
    Standard Grant
Collaborative Research: SaTC: CORE: Medium: Audacity of Exploration: Toward Automated Discovery of Security Flaws in Networked Systems through Intelligent Documentation Analysis
协作研究:SaTC:核心:中:大胆探索:通过智能文档分析自动发现网络系统中的安全缺陷
  • 批准号:
    2154138
  • 财政年份:
    2022
  • 资助金额:
    $ 15万
  • 项目类别:
    Standard Grant
Collaborative Research: SaTC: CORE: Medium: Audacity of Exploration: Toward Automated Discovery of Security Flaws in Networked Systems through Intelligent Documentation Analysis
协作研究:SaTC:核心:中:大胆探索:通过智能文档分析自动发现网络系统中的安全缺陷
  • 批准号:
    2154199
  • 财政年份:
    2022
  • 资助金额:
    $ 15万
  • 项目类别:
    Standard Grant
Collaborative Research: SaTC: CORE: Medium: Audacity of Exploration: Toward Automated Discovery of Security Flaws in Networked Systems through Intelligent Documentation Analysis
协作研究:SaTC:核心:中:大胆探索:通过智能文档分析自动发现网络系统中的安全缺陷
  • 批准号:
    2154078
  • 财政年份:
    2022
  • 资助金额:
    $ 15万
  • 项目类别:
    Standard Grant
Toward Self-Driving Safety: Chassis Dynamics Domain Control for Automated Vehicles
迈向自动驾驶安全:自动驾驶车辆的底盘动力学域控制
  • 批准号:
    21F21362
  • 财政年份:
    2021
  • 资助金额:
    $ 15万
  • 项目类别:
    Grant-in-Aid for JSPS Fellows
Toward Automated Video Quality Assessment of Ultrasound
超声自动化视频质量评估
  • 批准号:
    2431522
  • 财政年份:
    2020
  • 资助金额:
    $ 15万
  • 项目类别:
    Studentship
SaTC: CORE: Small: Toward Fully Automated Data-Driven Analysis of Web Censorship
SaTC:核心:小型:迈向网络审查的全自动数据驱动分析
  • 批准号:
    1814817
  • 财政年份:
    2018
  • 资助金额:
    $ 15万
  • 项目类别:
    Standard Grant
{{ showInfoDetail.title }}

作者:{{ showInfoDetail.author }}

知道了