CAREER: Building Secure Decentralized Applications with Trusted Hardware and Blockchains
职业:使用可信硬件和区块链构建安全的去中心化应用程序
基本信息
- 批准号:1750060
- 负责人:
- 金额:$ 51.08万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Continuing Grant
- 财政年份:2018
- 资助国家:美国
- 起止时间:2018-05-01 至 2023-09-30
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
This project explores a new, integrated approach to securing decentralized applications. The key problem is that decentralized applications are executed by mutually distrusting entities in a decentralized distributed system (such as a blockchain), where the entities must collaborate to execute the desired computation, despite not trusting each other. Building decentralized applications is difficult and error prone because the low-level security mechanisms are too removed from the high-level policies, thus it is difficult for programmers to correctly implement the policies. In these cases, no single entity is trusted to fully specify or enforce security policies. The project will develop Flame, a programming language offering more precise abstractions for expressing security intent in decentralized systems. Using Flame gives developers assurance that their programs are both secure and realizable without requiring them to design and implement complex security protocols. This project will also develop Decent, a decentralized runtime platform for executing decentralized applications built with Flame. The project will open-source Flame and Decent and promote them with publications, tutorials, and course materials. To explore a new, integrated approach to enforce end-to-end security for decentralized applications the project will build a prototype based on techniques for decentralized information flow control, blockchain networks, trusted computing, and cryptography to create a high-level programming layer that eases the task of building, verifying, and deploying decentralized applications. The prototype will support policies that cannot be enforced in current information control models and are too difficult to realize with cryptographic and access control mechanisms alone.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
该项目探索了一种新的集成方法来保护分散的应用程序。 关键问题是,去中心化应用程序是由去中心化分布式系统(如区块链)中相互不信任的实体执行的,在这种系统中,实体必须合作执行所需的计算,尽管彼此不信任。 构建去中心化的应用程序是困难的,并且容易出错,因为低级别的安全机制与高级别的策略分离得太远,因此程序员很难正确地实现策略。在这些情况下,没有一个实体可以完全指定或强制执行安全策略。该项目将开发Flame,这是一种编程语言,提供更精确的抽象,用于在分散式系统中表达安全意图。使用Flame可以确保开发人员的程序既安全又可实现,而无需设计和实现复杂的安全协议。 该项目还将开发Decent,这是一个分散的运行时平台,用于执行使用Flame构建的分散应用程序。该项目将开源Flame and Decent,并通过出版物、教程和课程材料进行推广。为了探索一种新的集成方法来加强去中心化应用程序的端到端安全性,该项目将基于去中心化信息流控制、区块链网络、可信计算和密码学技术构建一个原型,以创建一个高级编程层,从而简化构建、验证和部署去中心化应用程序的任务。 该原型将支持在当前信息控制模型中无法执行的政策,并且单独使用密码和访问控制机制难以实现。该奖项反映了NSF的法定使命,并通过使用基金会的知识价值和更广泛的影响审查标准进行评估,被认为值得支持。
项目成果
期刊论文数量(8)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
Flow-limited authorization for consensus, replication, and secret sharing
用于共识、复制和秘密共享的流量限制授权
- DOI:10.3233/jcs-230048
- 发表时间:2023
- 期刊:
- 影响因子:1.2
- 作者:Mondal, Priyanka;Algehed, Maximilian;Arden, Owen
- 通讯作者:Arden, Owen
Total Eclipse of the Enclave: Detecting Eclipse Attacks From Inside TEEs
Enclave 的 Total Eclipse:检测 TEE 内部的 Eclipse 攻击
- DOI:10.1109/icbc51069.2021.9461081
- 发表时间:2021
- 期刊:
- 影响因子:0
- 作者:Zheng, Haofan;Tran, Tuan;Arden, Owen
- 通讯作者:Arden, Owen
First-Order Logic for Flow-Limited Authorization
限流授权的一阶逻辑
- DOI:10.1109/csf49147.2020.00017
- 发表时间:2020
- 期刊:
- 影响因子:0
- 作者:Hirsch, Andrew K.;Amorim, Pedro H.;Cecchetti, Ethan;Tate, Ross;Arden, Owen
- 通讯作者:Arden, Owen
Information Flow Control for Distributed Trusted Execution Environments
分布式可信执行环境的信息流控制
- DOI:10.1109/csf.2019.00028
- 发表时间:2019
- 期刊:
- 影响因子:0
- 作者:Gollamudi, Anitha;Chong, Stephen;Arden, Owen
- 通讯作者:Arden, Owen
Payment Channels Under Network Congestion
- DOI:10.1109/icbc54727.2022.9805547
- 发表时间:2022-05
- 期刊:
- 影响因子:0
- 作者:Tuan Tran;Haofan Zheng;P. Alvaro;Owen Arden
- 通讯作者:Tuan Tran;Haofan Zheng;P. Alvaro;Owen Arden
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Owen Arden其他文献
Decentagram: Highly-Available Decentralized Publish/Subscribe Systems
Decentagram:高可用的去中心化发布/订阅系统
- DOI:
- 发表时间:
- 期刊:
- 影响因子:0
- 作者:
Haofan Zheng;Tuan Tran;Roy Shadmon;Owen Arden - 通讯作者:
Owen Arden
Nonmalleable Information Flow: Technical Report
不可延展的信息流:技术报告
- DOI:
- 发表时间:
2017 - 期刊:
- 影响因子:0
- 作者:
Ethan Cecchetti;A. Myers;Owen Arden - 通讯作者:
Owen Arden
Fabric: Building open distributed systems securely by construction
Fabric:通过构建安全地构建开放的分布式系统
- DOI:
10.3233/jcs-15805 - 发表时间:
2017 - 期刊:
- 影响因子:0
- 作者:
Jed Liu;Owen Arden;Michael D. George;A. Myers - 通讯作者:
A. Myers
JRIF: Reactive Information Flow Control for Java
JRIF:Java 的反应式信息流控制
- DOI:
10.1007/978-3-030-19052-1_7 - 发表时间:
2016 - 期刊:
- 影响因子:0
- 作者:
Elisavet Kozyri;Owen Arden;A. Myers;F. Schneider - 通讯作者:
F. Schneider
Proximal Byzantine Consensus
近端拜占庭共识
- DOI:
- 发表时间:
2024 - 期刊:
- 影响因子:0
- 作者:
Roy Shadmon;Daniel Spencer;Owen Arden - 通讯作者:
Owen Arden
Owen Arden的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
相似国自然基金
基于支链淀粉building blocks构建优质BE突变酶定向修饰淀粉调控机制的研究
- 批准号:31771933
- 批准年份:2017
- 资助金额:60.0 万元
- 项目类别:面上项目
相似海外基金
Building public trust in technologies to secure Australia’s water future
建立公众对技术的信任,确保澳大利亚水的未来
- 批准号:
IM240100086 - 财政年份:2024
- 资助金额:
$ 51.08万 - 项目类别:
Mid-Career Industry Fellowships
SALIENT: Building a Secure and Resilient World: Research and Coordination Hub
突出:建立一个安全和有弹性的世界:研究和协调中心
- 批准号:
AH/Y505316/1 - 财政年份:2024
- 资助金额:
$ 51.08万 - 项目类别:
Research Grant
CAREER: Building Secure Applications with Non-Static Information Flow Policies
职业:使用非静态信息流策略构建安全应用程序
- 批准号:
2401182 - 财政年份:2023
- 资助金额:
$ 51.08万 - 项目类别:
Continuing Grant
NSF Convergence Accelerator Track G: Building Resilient and Secure 5G Systems (BRASS)
NSF 融合加速器轨道 G:构建弹性且安全的 5G 系统 (BRASS)
- 批准号:
2226555 - 财政年份:2022
- 资助金额:
$ 51.08万 - 项目类别:
Standard Grant
Roots of Resilience: building secure societies through preserving cultural heritage (Follow-On to Build Back Better AH/V006355/1)
复原力的根源:通过保护文化遗产建设安全的社会(重建更好的后续行动 AH/V006355/1)
- 批准号:
AH/W006979/1 - 财政年份:2021
- 资助金额:
$ 51.08万 - 项目类别:
Research Grant
Collaborative Research: CICI: Secure and Resilient Architecture: SciGuard: Building a Security Architecture for Science DMZ Based on SDN and NFV Technologies
合作研究:CICI:安全和弹性架构:SciGuard:基于SDN和NFV技术构建科学DMZ安全架构
- 批准号:
2128607 - 财政年份:2021
- 资助金额:
$ 51.08万 - 项目类别:
Standard Grant
Collaborative Research: CISE-MSI: DP: CCF: SHF: MSI/HSI Research Capacity Building via Secure and Efficient Hardware Implementation of Cellular Computational Networks
合作研究:CISE-MSI:DP:CCF:SHF:通过安全高效的蜂窝计算网络硬件实现进行 MSI/HSI 研究能力建设
- 批准号:
2131070 - 财政年份:2021
- 资助金额:
$ 51.08万 - 项目类别:
Standard Grant
Collaborative Research: CISE-MSI: DP: CCF: SHF: MSI/HSI Research Capacity Building via Secure and Efficient Hardware Implementation of Cellular Computational Networks
合作研究:CISE-MSI:DP:CCF:SHF:通过安全高效的蜂窝计算网络硬件实现进行 MSI/HSI 研究能力建设
- 批准号:
2131163 - 财政年份:2021
- 资助金额:
$ 51.08万 - 项目类别:
Standard Grant
CAREER: Building Secure Applications with Non-Static Information Flow Policies
职业:使用非静态信息流策略构建安全应用程序
- 批准号:
1942851 - 财政年份:2020
- 资助金额:
$ 51.08万 - 项目类别:
Continuing Grant
PFI-RP: Building a Modular, Reliable, Scalable, and Secure Internet of Things Infrastructure
PFI-RP:构建模块化、可靠、可扩展且安全的物联网基础设施
- 批准号:
1919159 - 财政年份:2019
- 资助金额:
$ 51.08万 - 项目类别:
Standard Grant