CAREER: Graph-Based Security Analytics: New Algorithms, Robustness under Adversarial Settings, and Robustness Enhancements
CAREER: Graph-Based Security Analytics: New Algorithms, Robustness under Adversarial Settings, and Robustness Enhancements
批准号:
1750198
负责人:
Neil Gong
金额:
$42.91万
依托单位:
依托单位国家:
美国
项目类别:
Continuing Grant
财政年份:
2018
资助国家:
美国
项目状态:
已结题
起止时间:
2018-03-15 至 2019-08-31
中文摘要
该项目的目标是使基于图的安全分析实用且强大。 通用图算法和基于图的机器学习方法在应用于从检测计算机网络中的恶意网站和受损设备到检测社交网络中的受损或不真实账户的许多安全问题时已经取得了一些成功。 然而,由于现有的方法是专为通用的情况下,而不是特定的安全问题,有空间来提高其性能检测网络中的不良行为者。 此外,在安全环境中,通常有一个坚定的对手试图逃避检测,通用算法的设计不考虑,这使得他们容易受到攻击。 该项目将开发新的图推理算法,考虑到安全问题的独特特征,分析对这些算法的可能攻击的频谱,定义其对攻击的鲁棒性的措施,并开发提高其鲁棒性的方法。 该项目团队将创建和共享与基于图形的安全分析相关的数据集,沿着软件,该软件可与行业从业者和其他研究人员实现其算法和鲁棒性措施。 他们还将指导研究中的本科生和研究生,利用问题和数据支持新的大学课程和K-12学生的科学,技术,工程和数学(STEM)外展活动。这项工作的重点是集体分类算法,同时将网络中的所有节点标记为恶意或良性。 第一个主要的研究重点涉及先进的分析技术,结合联合收割机随机游走和循环的信念传播为基础的算法,通过本地规则,模型的联合概率给定的节点和它的邻居是恶意的。 为此,该团队将开发放宽邻近节点具有强同质性假设的算法版本,开发邻近节点关系的特征并创建利用这些特征的新型马尔可夫随机场公式。 第二个研究重点将对集体分类算法的攻击面进行建模,描述攻击者的目标和能力,规避行动(如创建节点或边缘和生成网络活动)的成本,以及不同目标,能力和规避水平对算法性能的影响。 第三个重点将是通过开发抗攻击的链接预测算法和相似性度量来开发识别这种规避的方法,然后通过开发基于本地规则的技术来减轻规避工作,这些技术以混淆攻击的方式向图形添加噪声。 该团队将评估来自多个领域的数据集的指标和算法,包括社交网络中的恶意用户、网络图中的恶意URL、嵌入域名服务重定向中的恶意域名以及电子商务市场中的恶意订单。 这些问题和相关的数据集将被纳入现有的数据驱动安全课程和新的集体分类研究生研讨会课程。所有活动的结果将被用作现有课程和新课程的案例和材料,以及K-12夏季计划和围绕检测网络中的恶意行为者组织的网络安全竞赛。该奖项反映了NSF的法定使命,并通过使用基金会的知识价值和更广泛的影响审查标准进行评估,被认为值得支持。
英文摘要
The goal of this project is to make graph-based security analytics practical and robust. General-purpose graph algorithms and graph-based machine learning methods have had some success when applied to a number of security problems ranging from detecting malicious websites and compromised devices in computer networks to detecting compromised or inauthentic accounts in social networks. However, because the existing methods are designed for generic contexts rather than for specific security problems, there is room to improve their performance in detecting bad actors in networks. Further, in security contexts, there is often a determined adversary trying to evade detection that general-purpose algorithms are not designed to consider, which makes them vulnerable to attack. This project will develop novel graph inference algorithms that consider unique characteristics of security problems, analyze the spectrum of possible attacks on such algorithms, define measures of their robustness against attack, and develop methods to improve their robustness. The project team will create and share datasets related to graph-based security analytics along with software that implements their algorithms and robustness measures with both industrial practitioners and other researchers. They will also mentor undergraduate and graduate students in the research, using the problems and data to support new college courses and Science, Technology, Engineering, and Mathematics (STEM) outreach activities for K-12 students.The work focuses on collective classification algorithms that simultaneously label all nodes in a network as malicious or benign. The first main research thrust involves advancing analytic techniques that combine random walk and loopy belief propagation-based algorithms through local rules that model the joint probabilities of a given node and its neighbors being malicious. To do this, the team will develop versions of the algorithms that relax assumptions that neighboring nodes have strong homophily, developing characterizations of neighboring nodes' relationships and creating novel Markov Random Field formulations that leverage these characterizations. The second research thrust will model the attack surface of collective classification algorithms, characterizing the goals and capabilities of attackers, the cost of evasive moves such as creating nodes or edges and generating network activity, and the effect of different goals, capabilities, and levels of evasion on the algorithms' performance. The third thrust will be to develop methods to identify such evasion by developing attacker-resistant link prediction algorithms and similarity metrics, then mitigate evasion efforts through developing local rule-based techniques that add noise to graphs in ways that confound attacks. The team will evaluate the metrics and algorithms on datasets from a number of domains, including malicious users in social networks, malicious URLs in the web graph, malicious domains embedded in domain name service redirects, and malicious orders in an e-commerce marketplace. These problems, and the associated datasets, will be integrated into an existing course on data-driven security and a new graduate seminar course on collective classification. Results from all activities will be used as cases and materials in both existing and new courses, as well as a K-12 summer program and cybersecurity competition organized around detecting malicious actors in networks.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
期刊论文(4)
专著(0)
科研奖励(0)
会议论文
登录
查看更多内容
DOI:
10.1145/3274694.3274706
发表时间:
2018-09
期刊:
Proceedings of the 34th Annual Computer Security Applications Conference
影响因子:
--
作者:
[Minghong Fang;Guolei Yang;N. Gong;Jia Liu]
通讯作者:
Minghong Fang;Guolei Yang;N. Gong;Jia Liu
DOI:
10.14722/ndss.2019.23226
发表时间:
2018-12
期刊:
ArXiv
影响因子:
--
作者:
[Binghui Wang;Jinyuan Jia;N. Gong]
通讯作者:
Binghui Wang;Jinyuan Jia;N. Gong
SybilBlind: Detecting Fake Users in Online Social Networks without Manual Labels
SybilBlind:在没有手动标签的情况下检测在线社交网络中的虚假用户
DOI:
--
发表时间:
2018
期刊:
Intrusions and Defenses
影响因子:
--
作者:
[Wang, Binghui, Zhang, Le, Gong, Neil Zhenqiang]
通讯作者:
Gong, Neil Zhenqiang
DOI:
10.1109/cns.2018.8433147
发表时间:
2018-03
期刊:
ArXiv
影响因子:
--
作者:
[Peng Gao;Binghui Wang;N. Gong;Sanjeev R. Kulkarni;Kurt Thomas;Prateek Mittal]
通讯作者:
Peng Gao;Binghui Wang;N. Gong;Sanjeev R. Kulkarni;Kurt Thomas;Prateek Mittal
Collaborative Research: SaTC: CORE: Medium: Towards Secure Federated Learning
-
批准号:2131859
-
项目类别:Standard Grant
-
资助金额:$60.0万
-
财政年份:2022
-
负责人:Neil Gong
-
依托单位:
Collaborative Research: SaTC: CORE: Small: Securing Recommender Systems against Data Poisoning Attacks
-
批准号:2125977
-
项目类别:Standard Grant
-
资助金额:$40.0万
-
财政年份:2022
-
负责人:Neil Gong
-
依托单位:
SaTC: CORE: Medium: Collaborative: Towards Robust Machine Learning Systems
-
批准号:1937786
-
项目类别:Standard Grant
-
资助金额:$40.0万
-
财政年份:2019
-
负责人:Neil Gong
-
依托单位:
CAREER: Graph-Based Security Analytics: New Algorithms, Robustness under Adversarial Settings, and Robustness Enhancements
-
批准号:1937787
-
项目类别:Continuing Grant
-
资助金额:$37.11万
-
财政年份:2019
-
负责人:Neil Gong
-
依托单位:
SaTC: CORE: Medium: Collaborative: Towards Robust Machine Learning Systems
-
批准号:1801584
-
项目类别:Standard Grant
-
资助金额:$40.0万
-
财政年份:2018
-
负责人:Neil Gong
-
依托单位:
国内基金
海外基金
登录
查看更多内容
基于Graph-PINN的层结稳定度参数化建模与沙尘跨介质耦合传输模拟研
-
批准号:
-
项目类别:省市级项目
-
资助金额:--
-
批准年份:2025
-
负责人:梅奥
-
依托单位:
平面三角剖分flip graph的强凸性研究
-
批准号:12301432
-
项目类别:青年科学基金项目
-
资助金额:30.00万元
-
批准年份:2023
-
负责人:王子丽
-
依托单位:
基于graph的多对比度磁共振图像重建方法
-
批准号:61901188
-
项目类别:青年科学基金项目
-
资助金额:24.5万元
-
批准年份:2019
-
负责人:赖宗英
-
依托单位:
基于de bruijn graph梳理的宏基因组拼接算法开发
-
批准号:61771009
-
项目类别:面上项目
-
资助金额:50.0万元
-
批准年份:2017
-
负责人:李国君
-
依托单位:
基于Graph和ISA的红外目标分割与识别方法研究
-
批准号:61101246
-
项目类别:青年科学基金项目
-
资助金额:22.0万元
-
批准年份:2011
-
负责人:刘靳
-
依托单位:
中国Web Graph的挖掘与应用研究
-
批准号:60473122
-
项目类别:面上项目
-
资助金额:23.0万元
-
批准年份:2004
-
负责人:俞勇
-
依托单位: