EAGER: Exploring the Use of Deception to Enhance Cyber Security
EAGER:探索利用欺骗手段增强网络安全
基本信息
- 批准号:1548114
- 负责人:
- 金额:$ 18.23万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Standard Grant
- 财政年份:2015
- 资助国家:美国
- 起止时间:2015-08-01 至 2018-05-31
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
Our computing systems are constantly under attack, by everyone from pranksters to agents of hostile nations. Many of those systems and networks make the task of the adversary easier by responding to attacks with useful information. This is because software and protocols have been written for decades to provide informative feedback for error detection and correction. It is precisely this behavior that enhances the chances of success by attackers, by allowing them to map networks and determine system flaws. This research addresses the question "Are there uses of deceptive responses that help prevent successful attacks?" Furthermore, the study investigates if it is possible to characterize and model the types of situations where deception may be useful. The result of this work provides cyber system designers with some new defensive measures, and guidance as to when they are useful to deploy.The project includes two related lines of research. The first of these is to explore some new applications of deceit in system defense. The researchers investigate presenting deceptive responses to attempts to exploit known vulnerabilities, and building a file system that "lies" about the creation and deletion of key files. Each of these mechanisms should support a system's security by providing early warning of bad behavior as well as blunting attacks. Deceitful responses to attacks can lead a perpetrator to employ ineffective attacks, thus wasting time and effort. A deceptive file system can capture forensic data about an attempted attack while only appearing to allow the installation of malicious files. The second line of research explores how to apply hypergame models to cyber defenses using deceptive techniques. Hypergames are an extension of game theory that includes incorrect and uncertain information. By constructing hypergame models we should be able to determine situations where there is a favorable result when deception is employed as a defense.
我们的计算机系统不断受到攻击,从恶作剧者到敌对国家的代理人。 这些系统和网络中的许多系统和网络通过利用有用的信息对攻击做出响应,使对手的任务变得更容易。 这是因为软件和协议已经编写了几十年,为错误检测和纠正提供信息反馈。 正是这种行为增加了攻击者成功的机会,使他们能够映射网络并确定系统缺陷。 这项研究解决了这样一个问题:“是否有欺骗性的反应,有助于防止成功的攻击?“此外,该研究调查了是否有可能描述和模拟欺骗可能有用的情况类型。这项工作的结果为网络系统设计者提供了一些新的防御措施,并指导他们何时部署。 其中第一个是探索欺骗在系统防御中的一些新应用。研究人员调查了对试图利用已知漏洞的欺骗性反应,并构建了一个关于创建和删除关键文件的“谎言”文件系统。 这些机制中的每一个都应该通过提供不良行为的早期警告以及钝化攻击来支持系统的安全性。 对攻击的欺骗性反应可能导致犯罪者使用无效的攻击,从而浪费时间和精力。 欺骗性文件系统可以捕获有关尝试攻击的取证数据,同时只允许安装恶意文件。 第二条研究路线探索如何将超博弈模型应用于使用欺骗性技术的网络防御。 超博弈是博弈论的一种扩展,它包含了不正确和不确定的信息。 通过构建超博弈模型,我们应该能够确定的情况下,有一个有利的结果时,欺骗作为一种防御。
项目成果
期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
数据更新时间:{{ journalArticles.updateTime }}
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Eugene Spafford其他文献
Eugene Spafford的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Eugene Spafford', 18)}}的其他基金
A Dual-Track Masters Degree Program for Information Security Specialists
信息安全专家双轨硕士学位课程
- 批准号:
0965780 - 财政年份:2010
- 资助金额:
$ 18.23万 - 项目类别:
Standard Grant
SoD: Collaborative Research: Transparency and Legal Compliance in Software Systems
SoD:协作研究:软件系统的透明度和法律合规性
- 批准号:
0725152 - 财政年份:2007
- 资助金额:
$ 18.23万 - 项目类别:
Standard Grant
CT-ISG: Designing Next-Generation, Reliable Internet Servers
CT-ISG:设计下一代可靠的互联网服务器
- 批准号:
0523243 - 财政年份:2005
- 资助金额:
$ 18.23万 - 项目类别:
Standard Grant
Exposing Grand Challenges in Information Security & Assurance
暴露信息安全的巨大挑战
- 批准号:
0335324 - 财政年份:2003
- 资助金额:
$ 18.23万 - 项目类别:
Continuing Grant
A Dual-Track Masters Degree Program for Information Security Specialists
信息安全专家双轨硕士学位课程
- 批准号:
0113730 - 财政年份:2001
- 资助金额:
$ 18.23万 - 项目类别:
Continuing Grant
CISE Experimental Partnerships: Audit Trails: Content, Storage and Processing
CISE 实验合作伙伴:审核跟踪:内容、存储和处理
- 批准号:
9903545 - 财政年份:1999
- 资助金额:
$ 18.23万 - 项目类别:
Standard Grant
RIA: Debugging with Test-Based Information
RIA:使用基于测试的信息进行调试
- 批准号:
8910306 - 财政年份:1989
- 资助金额:
$ 18.23万 - 项目类别:
Standard Grant
相似国自然基金
Exploring Changing Fertility Intentions in China
- 批准号:
- 批准年份:2024
- 资助金额:万元
- 项目类别:外国学者研究基金
Exploring the Intrinsic Mechanisms of CEO Turnover and Market
- 批准号:
- 批准年份:2024
- 资助金额:万元
- 项目类别:外国学者研究基金
Exploring the Intrinsic Mechanisms of CEO Turnover and Market Reaction: An Explanation Based on Information Asymmetry
- 批准号:W2433169
- 批准年份:2024
- 资助金额:万元
- 项目类别:外国学者研究基金项目
相似海外基金
Postdoctoral Fellowship: STEMEdIPRF: Exploring the use of mechanistic reasoning in undergraduate physiology education
博士后奖学金:STEMEdIPRF:探索机械推理在本科生理学教育中的应用
- 批准号:
2327451 - 财政年份:2024
- 资助金额:
$ 18.23万 - 项目类别:
Standard Grant
A roadmap to a toolkit: exploring intervention opportunities for tobacco and cannabis co-use in the Further Education sector
工具包路线图:探索继续教育部门烟草和大麻共同使用的干预机会
- 批准号:
ES/Y008227/1 - 财政年份:2023
- 资助金额:
$ 18.23万 - 项目类别:
Fellowship
Exploring the Impact of Future Land Use Change on Global Air Quality and Nutrient Deposition
探索未来土地利用变化对全球空气质量和养分沉积的影响
- 批准号:
2223070 - 财政年份:2023
- 资助金额:
$ 18.23万 - 项目类别:
Standard Grant
Exploring affect-motivated alcohol use as a value-based decision-making process
探索情感驱动的饮酒作为基于价值的决策过程
- 批准号:
10738470 - 财政年份:2023
- 资助金额:
$ 18.23万 - 项目类别:
The Siyaphambili Substance Use Study: Exploring substance use and its treatment in the context of achieving sustained ART adherence among female sex workers
Siyaphambili 物质使用研究:在女性性工作者实现持续 ART 坚持的背景下探索物质使用及其治疗
- 批准号:
10619245 - 财政年份:2023
- 资助金额:
$ 18.23万 - 项目类别:
Portfolio of compositions: Creating electroacoustic works through the sonification of recursive neural networks, and exploring the creative use of in
作品组合:通过递归神经网络的发声创作电声作品,并探索in的创造性运用
- 批准号:
2886370 - 财政年份:2023
- 资助金额:
$ 18.23万 - 项目类别:
Studentship
Looking through the bottle: Exploring alcohol use among emergency medical service providers
透过瓶子:探索紧急医疗服务提供者的酒精使用情况
- 批准号:
10712278 - 财政年份:2023
- 资助金额:
$ 18.23万 - 项目类别:
Exploring Long-Term Care Housing Solutions for Older Adults Experiencing Homelessness and Substance Use: An Innovative Model
探索针对无家可归和吸毒老年人的长期护理住房解决方案:创新模式
- 批准号:
484607 - 财政年份:2023
- 资助金额:
$ 18.23万 - 项目类别:
Fellowship Programs
Crisis Intervention Teams in Corrections: Exploring the impact on officer use of force and the well-being of incarcerated people with mental illness
惩教中的危机干预小组:探讨对警官使用武力以及患有精神疾病的被监禁者福祉的影响
- 批准号:
10734687 - 财政年份:2023
- 资助金额:
$ 18.23万 - 项目类别:
Building digital replicas of unpaid carers to better meet community needs: : Exploring the use of Personal Digital Twin (PDT) technology
构建无薪护理人员的数字复制品,以更好地满足社区需求::探索个人数字孪生(PDT)技术的使用
- 批准号:
2880842 - 财政年份:2023
- 资助金额:
$ 18.23万 - 项目类别:
Studentship