EAGER: Identifying Security Critical Properties of a Processor
EAGER:识别处理器的安全关键属性
基本信息
- 批准号:1651276
- 负责人:
- 金额:$ 15万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Standard Grant
- 财政年份:2016
- 资助国家:美国
- 起止时间:2016-09-15 至 2018-08-31
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
This project focuses on shoring up the security vulnerabilities that exist in computer processors. Just like in software, bugs in hardware present vulnerabilities that can be exploited by determined attackers. Prior work has developed a method whereby the processor monitors itself and sends an alert to software whenever dangerous, anomalous behavior is observed. The question of what constitutes dangerous behavior is an open one, and tackling it is the goal of this research. In doing so the project has the potential to make self-monitoring processors practical and efficacious, significantly advancing the state of the art in protecting hardware from malicious attack.The self-monitoring processor works by encoding in hardware the properties that a processor should always maintain and then throwing an exception to software if one of the properties is ever violated. In this project, the researchers develop a semi-automated methodology and tool-chain to identify and build the security-critical properties encoded in a hardware design language. The project uses a set of already-patched bugs of a processor design to automatically create an initial set of security-critical properties, and machine learning techniques to infer an additional set of properties that are not tied to any particular known vulnerability, yet are critical to security.
这个项目的重点是加强存在于计算机处理器中的安全漏洞。就像在软件中一样,硬件中的错误也存在漏洞,可以被坚定的攻击者利用。先前的工作已经开发了一种方法,通过该方法,处理器可以监控自己,并在观察到危险的异常行为时向软件发送警报。什么构成危险行为的问题是一个开放的问题,解决这个问题是这项研究的目标。在这样做的过程中,该项目有可能使自我监控处理器实用和有效,显着推进保护硬件免受恶意攻击的最新技术。自我监控处理器的工作原理是在硬件中编码处理器应该始终保持的属性,然后在其中一个属性被违反时向软件抛出异常。在这个项目中,研究人员开发了一种半自动化的方法和工具链来识别和构建以硬件设计语言编码的安全关键属性。该项目使用一组已经修补的处理器设计错误来自动创建一组初始的安全关键属性,并使用机器学习技术来推断一组与任何特定已知漏洞无关但对安全至关重要的附加属性。
项目成果
期刊论文数量(4)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
End-to-End Automated Exploit Generation for Validating the Security of Processor Designs
- DOI:10.1109/micro.2018.00071
- 发表时间:2018-10
- 期刊:
- 影响因子:0
- 作者:Rui Zhang;Calvin Deutschbein;Peng Huang;C. Sturton
- 通讯作者:Rui Zhang;Calvin Deutschbein;Peng Huang;C. Sturton
Identifying Security Critical Properties for the Dynamic Verification of a Processor
识别处理器动态验证的安全关键属性
- DOI:10.1145/3037697.3037734
- 发表时间:2017
- 期刊:
- 影响因子:0
- 作者:Zhang, Rui;Stanley, Natalie;Griggs, Christopher;Chi, Andrew;Sturton, Cynthia
- 通讯作者:Sturton, Cynthia
End-to-End Automated Exploit Generation for Processor Security Validation
用于处理器安全验证的端到端自动漏洞利用生成
- DOI:10.1109/mdat.2021.3063314
- 发表时间:2021
- 期刊:
- 影响因子:2
- 作者:Zhang, Rui;Deutschbein, Calvin;Huang, Peng;Sturton, Cynthia
- 通讯作者:Sturton, Cynthia
A recursive strategy for symbolic execution to find exploits in hardware designs
用于寻找硬件设计漏洞的符号执行递归策略
- DOI:10.1145/3219763.3219764
- 发表时间:2018
- 期刊:
- 影响因子:0
- 作者:Zhang, Rui;Sturton, Cynthia
- 通讯作者:Sturton, Cynthia
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Cynthia Sturton其他文献
Cynthia Sturton的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Cynthia Sturton', 18)}}的其他基金
Collaborative Research: SaTC: CORE: Medium: Hardware Security Insights: Analyzing Hardware Designs to Understand and Assess Security Weaknesses and Vulnerabilities
协作研究:SaTC:核心:中:硬件安全见解:分析硬件设计以了解和评估安全弱点和漏洞
- 批准号:
2247754 - 财政年份:2023
- 资助金额:
$ 15万 - 项目类别:
Continuing Grant
SaTC: STARSS: Small: Tackling the Corner Cases: Finding Security Vulnerabilities in CPU Designs
SaTC:STARSS:小型:解决极端情况:查找 CPU 设计中的安全漏洞
- 批准号:
1816637 - 财政年份:2018
- 资助金额:
$ 15万 - 项目类别:
Standard Grant
CPS: Frontier: Collaborative Research: VeHICaL: Verified Human Interfaces, Control, and Learning for Semi-Autonomous Systems
CPS:前沿:协作研究:VeHCaL:半自主系统的经过验证的人机界面、控制和学习
- 批准号:
1544924 - 财政年份:2016
- 资助金额:
$ 15万 - 项目类别:
Continuing Grant
CRII: SaTC: Detecting Security Vulnerabilities in Instruction Set Architectures
CRII:SaTC:检测指令集架构中的安全漏洞
- 批准号:
1464209 - 财政年份:2015
- 资助金额:
$ 15万 - 项目类别:
Standard Grant
相似海外基金
Identifying potential trade-offs of adapting to climate change
确定适应气候变化的潜在权衡
- 批准号:
DP240100230 - 财政年份:2024
- 资助金额:
$ 15万 - 项目类别:
Discovery Projects
Identifying key fire drivers in Australia; biomass, climate or people
确定澳大利亚的主要火灾驱动因素;
- 批准号:
DE240100340 - 财政年份:2024
- 资助金额:
$ 15万 - 项目类别:
Discovery Early Career Researcher Award
Collaborative Research: Dynamic connectivity of river networks as a framework for identifying controls on flux propagation and assessing landscape vulnerability to change
合作研究:河流网络的动态连通性作为识别通量传播控制和评估景观变化脆弱性的框架
- 批准号:
2342936 - 财政年份:2024
- 资助金额:
$ 15万 - 项目类别:
Continuing Grant
Collaborative Research: Dynamic connectivity of river networks as a framework for identifying controls on flux propagation and assessing landscape vulnerability to change
合作研究:河流网络的动态连通性作为识别通量传播控制和评估景观变化脆弱性的框架
- 批准号:
2342937 - 财政年份:2024
- 资助金额:
$ 15万 - 项目类别:
Continuing Grant
Identifying the goals and strategies people use to make others feel worse
确定人们用来让别人感觉更糟的目标和策略
- 批准号:
FT230100401 - 财政年份:2024
- 资助金额:
$ 15万 - 项目类别:
ARC Future Fellowships
NPBactID - Differential binding of peptoid functionalized nanoparticles to bacteria for identifying specific strains
NPBactID - 类肽功能化纳米粒子与细菌的差异结合,用于识别特定菌株
- 批准号:
EP/Y029542/1 - 财政年份:2024
- 资助金额:
$ 15万 - 项目类别:
Fellowship
Developing Algorithms for Identifying Gene Modules in Single-Cell RNA-Seq Using Signed Graphs
开发使用符号图识别单细胞 RNA-Seq 中基因模块的算法
- 批准号:
24K18100 - 财政年份:2024
- 资助金额:
$ 15万 - 项目类别:
Grant-in-Aid for Early-Career Scientists
Postdoctoral Fellowship: OPP-PRF: Identifying Central and Peripheral Thermosensors in Eurythermal and Stenothermal Arctic Fishes
博士后奖学金:OPP-PRF:识别广温和窄温北极鱼类的中央和外周热传感器
- 批准号:
2317970 - 财政年份:2024
- 资助金额:
$ 15万 - 项目类别:
Standard Grant
Antecedents and consequences of cruise travel experience: Identifying contributors to well-being of cruise tourists.
邮轮旅行体验的前因和后果:确定邮轮游客福祉的贡献者。
- 批准号:
24K15536 - 财政年份:2024
- 资助金额:
$ 15万 - 项目类别:
Grant-in-Aid for Scientific Research (C)
CAREER: Identifying reaction mechanisms for the formation of stable interphases in lithium metal batteries
职业:确定锂金属电池中形成稳定界面的反应机制
- 批准号:
2338202 - 财政年份:2024
- 资助金额:
$ 15万 - 项目类别:
Continuing Grant