EAGER: Collaborative: Towards Understanding the Attack Vector of Privacy Technologies
EAGER: Collaborative: Towards Understanding the Attack Vector of Privacy Technologies
批准号:
1643207
负责人:
David Mohaisen
金额:
$12.5万
依托单位:
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2016
资助国家:
美国
项目状态:
已结题
起止时间:
2016-09-01 至 2017-12-31
中文摘要
点击翻译按钮获取中文摘要
英文摘要
Advances in privacy-enhancing technologies, including cryptographic mechanisms, standardized security protocols, and infrastructure, significantly improved privacy and had a significant impact on society by protecting users. At the same time, the success of such infrastructure has attracted abuse from illegal activities, including sophisticated botnets and ransomware, and has become a marketplace for drugs and contraband; botnets rose to be a major tool for cybercrime and their developers proved to be highly resourceful. It is contended that the next waves of botnets will extensively attempt to subvert privacy infrastructure and cryptographic mechanisms, which has the potential of both undermining their legal basis and future performance. This project will develop the theoretical and experimental foundations for analyzing, monitoring and mitigating the next generation of botnets that subvert privacy-enhancing technologies. Towards that goal, the project will develop tools for: 1) Analytical framework: the project develops a concrete strategy for approaching the detection, characterization, and mitigation of abuse of privacy infrastructure by crystallizing an analytical framework for reasoning about such botnets. This includes the identification
and formalization of their key properties (e.g., traceback and tomography resiliency, stealthy monetization), enabling mechanisms (e.g., IP address de-coupling, control/data traffic indistinguishability), fundamental limitations, and evaluation metrics. The project will explore analogous scenarios of abuse in future Internet architectures where anonymity is facilitated by design. 2) Monitoring and analysis: the project develops an experimental framework to track activities of the next generation of botnets for scalable and effective mitigation. Such framework will exploit their ideal design and behavioral properties, and draws on various preliminary measurement results in related contexts. 3) Mitigation: The project has the ultimate
goal of proactively developing an arsenal of mitigation techniques grounded in a sound theoretical foundation, analyzed within the theoretical framework, and evaluated within the experimental framework. The mitigation techniques span the gamut of increasing the cost of operating such botnets, to actively containing
and neutralizing bots, to proposing modifications to the privacy-enhancing protocols. The results of this project will be communicated with the concerned communities for having a direct and immediate impact on existing and future privacy infrastructure. The project will also develop educational material to train students in the foundations and systems for enabling privacy enhancing technologies.
期刊论文(5)
专著(0)
科研奖励(0)
会议论文
登录
查看更多内容
DOI:
10.1007/978-3-319-70972-7_5
发表时间:
2017-04
期刊:
影响因子:
--
作者:
[Qian Wang;K. Ren;Minxin Du;Qi Li;Aziz Mohaisen]
通讯作者:
Qian Wang;K. Ren;Minxin Du;Qi Li;Aziz Mohaisen
DOI:
10.1109/infocom.2017.8057219
发表时间:
2017-05
期刊:
IEEE INFOCOM 2017 - IEEE Conference on Computer Communications
影响因子:
--
作者:
[Fan Dang;Pengfei Zhou;Zhenhua Li;Ennan Zhai;Aziz Mohaisen;Q. Wen;Mo Li]
通讯作者:
Fan Dang;Pengfei Zhou;Zhenhua Li;Ennan Zhai;Aziz Mohaisen;Q. Wen;Mo Li
Leakage of .onion at the DNS Root: Measurements, Causes, and Countermeasures
DNS 根处的 .onion 泄漏:测量、原因和对策
DOI:
10.1109/tnet.2017.2717965
发表时间:
2017
期刊:
IEEE/ACM Transactions on Networking
影响因子:
--
作者:
[Mohaisen, Aziz, Ren, Kui]
通讯作者:
Ren, Kui
Privacy Implications of DNSSEC Look-Aside Validation
DNSSEC 旁视验证的隐私影响
DOI:
10.1109/icdcs.2017.147
发表时间:
2017
期刊:
ICDCS 2017
影响因子:
--
作者:
[Mohaisen, Aziz, Gu, Zhongshu, Ren, Kui]
通讯作者:
Ren, Kui
NSF Student Travel Grant for 2021 ACM CCS
-
批准号:2140576
-
项目类别:Standard Grant
-
资助金额:$2.5万
-
财政年份:2021
-
负责人:David Mohaisen
-
依托单位:
EAGER: Collaborative: Towards Understanding the Attack Vector of Privacy Technologies
-
批准号:1809000
-
项目类别:Standard Grant
-
资助金额:$10.22万
-
财政年份:2017
-
负责人:David Mohaisen
-
依托单位:
SaTC: Student Travel Support for IEEE CNS 2016
-
批准号:1606354
-
项目类别:Standard Grant
-
资助金额:$1.0万
-
财政年份:2016
-
负责人:David Mohaisen
-
依托单位:
海外基金