EDU: Collaborative: Using Virtual Machine Introspection for Deep Cyber Security Education
EDU: Collaborative: Using Virtual Machine Introspection for Deep Cyber Security Education
批准号:
1623325
负责人:
Zhiqiang Lin
金额:
$14.99万
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2016
资助国家:
美国
项目状态:
已结题
起止时间:
2016-09-01 至 2018-05-31
中文摘要
网络安全是计算机科学中最具战略意义的领域之一,也是最难有效教学的学科之一。从历史上看,动手网络安全练习帮助学生加强基本概念,但大多数都集中在用户级别的攻击和防御。由于操作系统内核为应用程序提供了基础,因此对操作系统内核的任何妥协都将导致完全不可信的计算。因此,有必要教学生的内核级攻击和防御的做法。在过去的十年中,有很大的兴趣,使用虚拟化来配置文件,特征,并观察内核事件,包括安全事件。受虚拟机内省(VMI)的巨大成功的启发,该项目旨在通过在虚拟化之上直接构建实用的VMI工具和库(或工具包),并将其应用于深度网络安全教育来提供进步。深度来自于对底层系统内部的研究,如操作系统内核。该项目将进一步提供一些种子内容,教导教师和学生如何利用该工具包,不仅用于研究传统的用户级攻击,如缓冲区溢出,还用于研究操作系统内核内部的防御。该项目的成果(即,工具包和网络安全演习)将有助于改善网络安全教育的最新水平,特别是有效地进行网络安全实践演习,从而为我们社会的健康、安全和经济福祉作出贡献。
英文摘要
Cybersecurity is one of the most strategically important areas in computer science, and also one of the most difficult disciplines to teach effectively. Historically, hands-on cyber security exercises helped students reinforce basic concepts, but most of them focused on user level attacks and defenses. Since OS kernels provide the foundations to the applications, any compromise to OS kernels will lead to an entirely untrusted computing. Therefore, it is imperative to teach students the practice of kernel level attacks and defenses.Over the past decade, there has been great interest in using virtualization to profile, characterize, and observe kernel events including the security incidents. Inspired by the great success from virtual machine introspection (VMI), this project aims to provide an advancement by directly building practical VMI tools and libraries (or toolkit) on top of virtualization, and applying them for deep cybersecurity education. The deepness comes from the study of the lower level system internals such as OS kernels. The project will further provide a number of seed contents to teach both instructors and students on utilizing the toolkit to be used for studying not only traditional user level attacks such as buffer overflow, but also defenses inside the OS kernels. The outcome of this project (i.e., the toolkit and the cybersecurity exercises) will contribute to the health, safety, and economic well-being of our society by helping to improve the state-of-the-art in cybersecurity education, especially for effectively performing hands-on cybersecurity exercises.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
Collaborative Research: EAGER: Towards Safeguarding the Emerging Miniapp Paradigm in Mobile Super Apps
-
批准号:2330264
-
项目类别:Standard Grant
-
资助金额:$15.0万
-
财政年份:2023
-
负责人:Zhiqiang Lin
-
依托单位:
Collaborative Proposal: SaTC: Frontiers: Center for Distributed Confidential Computing (CDCC)
-
批准号:2207202
-
项目类别:Continuing Grant
-
资助金额:$88.0万
-
财政年份:2022
-
负责人:Zhiqiang Lin
-
依托单位:
Collaborative Research: PPoSS: Planning: Scaling Autonomous Vehicle Systems at the Edge: from On-Board Processing to Cloud Infrastructure
-
批准号:2118491
-
项目类别:Standard Grant
-
资助金额:$4.24万
-
财政年份:2021
-
负责人:Zhiqiang Lin
-
依托单位:
EDU: Collaborative: Using Virtual Machine Introspection for Deep Cyber Security Education
-
批准号:1834214
-
项目类别:Standard Grant
-
资助金额:$11.09万
-
财政年份:2018
-
负责人:Zhiqiang Lin
-
依托单位:
TWC: Medium: Collaborative: Systems, Tools, and Techniques for Executing, Managing, and Securing SGX Programs
-
批准号:1834213
-
项目类别:Standard Grant
-
资助金额:$46.15万
-
财政年份:2018
-
负责人:Zhiqiang Lin
-
依托单位:
SDI-CSCS: Collaborative Research: S2OS Enabling Infrastructure-Wide Programmable Security with SDI
-
批准号:1834216
-
项目类别:Continuing Grant
-
资助金额:$39.34万
-
财政年份:2018
-
负责人:Zhiqiang Lin
-
依托单位:
CAREER: A Dual-VM Binary Code Reuse Based Framework for Automated Virtual Machine Introspection
-
批准号:1834215
-
项目类别:Continuing Grant
-
资助金额:$48.8万
-
财政年份:2018
-
负责人:Zhiqiang Lin
-
依托单位:
SDI-CSCS: Collaborative Research: S2OS Enabling Infrastructure-Wide Programmable Security with SDI
-
批准号:1700507
-
项目类别:Continuing Grant
-
资助金额:$40.0万
-
财政年份:2017
-
负责人:Zhiqiang Lin
-
依托单位:
TWC: Medium: Collaborative: Systems, Tools, and Techniques for Executing, Managing, and Securing SGX Programs
-
批准号:1564112
-
项目类别:Standard Grant
-
资助金额:$52.82万
-
财政年份:2016
-
负责人:Zhiqiang Lin
-
依托单位:
CI-P: Collaborative: A Community-Driven Open Research Infrastructure for Intel SGX
-
批准号:1629951
-
项目类别:Standard Grant
-
资助金额:$5.0万
-
财政年份:2016
-
负责人:Zhiqiang Lin
-
依托单位:
CAREER: A Dual-VM Binary Code Reuse Based Framework for Automated Virtual Machine Introspection
-
批准号:1453011
-
项目类别:Continuing Grant
-
资助金额:$53.51万
-
财政年份:2015
-
负责人:Zhiqiang Lin
-
依托单位:
海外基金