SaTC: CORE: Medium: Collaborative: REVELARE: A Hardware-Supported Dynamic Information Flow Tracking Framework for IoT Security and Forensics
SaTC:核心:媒介:协作:REVELARE:用于物联网安全和取证的硬件支持的动态信息流跟踪框架
基本信息
- 批准号:1801613
- 负责人:
- 金额:$ 29.97万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Standard Grant
- 财政年份:2018
- 资助国家:美国
- 起止时间:2018-08-15 至 2020-10-31
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
Smart and connected devices, also known as Internet of Things (IoT) devices, are now an integral part of our daily lives. These devices are found in cars, phones, watches, appliances, home security systems, and in critical applications, such as utilities and in the biomedical industry. The convenience provided by IoT devices comes with unique security and privacy concerns. Because of the shortened time-to-market and the fierce competition among companies, security has not been treated as a priority in these devices. Very importantly, IoT security challenges are different from those present in conventional devices because IoT devices (i) are heterogeneous, (ii) have limited computational resources, and (iii) can be prevalent in very large numbers. Thus, there is an urgent need to develop standardized, efficient, and embedded security modules to protect such devices from cyber attacks. The goal of this project is to design, implement, and fabricate REVELARE, a security solution for IoT devices, which protects IoT devices in two ways. The first is through a hardware module embedded in the device, which can analyze and filter low-level events based on predefined security policies. The second component resides on a cloud environment and performs forensic analyses on a large set of events continuously recorded from the IoT device. This project has the potential to immensely improve IoT security. Manufacturers will be able to ship IoT devices with built-in protection against cyber attacks. The principal investigators, with complementary expertises in the Computer Science and Engineering fields, have a strong record of advancement of female and minority students, as well as involvement of undergraduate students in research projects. Further, this project opens up new avenues for future work in hardware-for-software security, an area which, while still in its infancy, has the potential for breakthroughs in cyber security.REVELARE is a hardware-supported dynamic information flow tracking (DIFT) framework to enhance IoT security and forensics. It consists of the following components: (i) a DIFT-enabling core for the ARM and the RISC-V architectures, which complements the main processor with DIFT capabilities, (ii) two DIFT-based security policies (prevention of memory corruption and in-memory-only attacks) enforced by hardware, whose accuracy is enhanced by the capture of DIFT indirect flows, and (iii) a mechanism for IoT virtualization-based security analysis and forensics, with the implementation of two types of security/forensics analyses: causality graphs and personalized (per-device) anomaly detection. REVELARE realizes the potential of DIFT capabilities for the needs of IoT security and forensics, transforming the state-of-the-art for how researchers in academia and industry have been addressing IoT security. Our efficient (architecture-supported) and effective (addressing indirect flows) DIFT framework can also inform future research on architecture-supported DIFT for other architectures (e.g., Intel x86) leveraged in traditional devices. Our combination of in-device built-in protection with cloud heavy-weight analysis and forensics has the potential to ignite the new field of IoT virtualization, in which IoT device management and security are outsourced to the cloud via virtualized devices.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
智能互联设备,也称为物联网(IoT)设备,现在是我们日常生活中不可或缺的一部分。这些设备在汽车、手机、手表、家用电器、家庭安全系统以及公用事业和生物医药行业等关键应用中都有应用。物联网设备提供的便利伴随着独特的安全和隐私问题。由于上市时间的缩短和公司之间的激烈竞争,安全并没有被视为这些设备的优先事项。非常重要的是,物联网安全挑战不同于传统设备中存在的挑战,因为物联网设备(I)是异构性的,(Ii)计算资源有限,(Iii)可能非常普遍。因此,迫切需要开发标准化、高效和嵌入式的安全模块,以保护此类设备免受网络攻击。该项目的目标是设计、实施和制造物联网设备安全解决方案REVELARE,该解决方案通过两种方式保护物联网设备。第一种是通过嵌入在设备中的硬件模块,该模块可以根据预定义的安全策略分析和过滤低级别事件。第二个组件驻留在云环境中,对从物联网设备连续记录的大量事件执行取证分析。该项目有可能极大地提高物联网安全。制造商将能够发货具有内置网络攻击保护的物联网设备。首席调查人员在计算机科学和工程领域拥有互补的专业知识,在女性和少数族裔学生以及本科生参与研究项目方面都有很好的记录。此外,该项目为硬件换软件安全方面的未来工作开辟了新的途径,该领域虽然仍处于初级阶段,但有可能在网络安全方面取得突破。REVELARE是一个硬件支持的动态信息流跟踪(DIFT)框架,用于增强物联网安全和取证。它由以下组件组成:(I)用于ARM和RISC-V架构的支持DIFT的核心,它补充了主处理器的DIFT功能;(Ii)由硬件实施的两个基于DIFT的安全策略(防止内存崩溃和仅内存中的攻击),其准确性通过捕获DIFT间接流而得到提高;以及(Iii)基于物联网虚拟化的安全分析和取证机制,通过实施两种类型的安全/取证分析:因果图和个性化(按设备)异常检测。REVELARE认识到DIFT功能满足物联网安全和取证需求的潜力,改变了学术界和工业界研究人员一直在解决物联网安全问题的最先进方式。我们高效的(架构支持的)和有效的(解决间接流动)DIFT框架还可以为未来研究传统设备中使用的其他架构(例如Intel x86)的架构支持的DIFT提供信息。我们将设备内内置保护与云重量级分析和取证相结合,有可能点燃物联网虚拟化的新领域,在该领域,物联网设备管理和安全通过虚拟化设备外包到云。该奖项反映了NSF的法定使命,并通过使用基金会的智力优势和更广泛的影响审查标准进行评估,被认为值得支持。
项目成果
期刊论文数量(1)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
Detecting TCP/IP Connections via IPID Hash Collisions
- DOI:10.2478/popets-2019-0071
- 发表时间:2019-07
- 期刊:
- 影响因子:0
- 作者:Geoffrey Alexander;Antonio M. Espinoza;Jedidiah R. Crandall
- 通讯作者:Geoffrey Alexander;Antonio M. Espinoza;Jedidiah R. Crandall
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Jedidiah Crandall其他文献
Jedidiah Crandall的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Jedidiah Crandall', 18)}}的其他基金
Collaborative Research: SaTC: CORE: Medium: Rethinking the Fundamentals of Tunneling Technologies for Security, Privacy, and Usability
协作研究:SaTC:核心:中:重新思考隧道技术的安全性、隐私性和可用性的基础知识
- 批准号:
2141547 - 财政年份:2022
- 资助金额:
$ 29.97万 - 项目类别:
Continuing Grant
Collaborative Research: CNS Core: Small: Internet-Scale Measurement of TCP/IP Implementation Weaknesses
合作研究:CNS 核心:小型:TCP/IP 实施弱点的互联网规模测量
- 批准号:
2007741 - 财政年份:2020
- 资助金额:
$ 29.97万 - 项目类别:
Standard Grant
SaTC: CORE: Medium: Collaborative: REVELARE: A Hardware-Supported Dynamic Information Flow Tracking Framework for IoT Security and Forensics
SaTC:核心:媒介:协作:REVELARE:用于物联网安全和取证的硬件支持的动态信息流跟踪框架
- 批准号:
2042795 - 财政年份:2020
- 资助金额:
$ 29.97万 - 项目类别:
Standard Grant
NeTS: Large: Measuring and Modeling Internet Choke Points as Threats to Online Freedom
NetS:大型:测量和建模作为在线自由威胁的互联网瓶颈
- 批准号:
1518878 - 财政年份:2015
- 资助金额:
$ 29.97万 - 项目类别:
Standard Grant
TWC: TTP Option: Large: Collaborative: Towards a Science of Censorship Resistance
TWC:TTP 选项:大:协作:走向审查制度抵抗的科学
- 批准号:
1518523 - 财政年份:2015
- 资助金额:
$ 29.97万 - 项目类别:
Continuing Grant
TWC: Small: Developing Advanced Digital Forensic Tools Based on Network Stack Side Channels
TWC:小型:开发基于网络堆栈侧通道的高级数字取证工具
- 批准号:
1420716 - 财政年份:2014
- 资助金额:
$ 29.97万 - 项目类别:
Standard Grant
TWC: Medium: Collaborative: Measurement and Analysis Techniques for Internet Freedom on IP and Social Networks
TWC:媒介:协作:IP 和社交网络上互联网自由的测量和分析技术
- 批准号:
1314297 - 财政年份:2013
- 资助金额:
$ 29.97万 - 项目类别:
Standard Grant
Realizing Full-System Dynamic Information Flow Tracking via Relaxed Static Stability
通过宽松的静态稳定性实现全系统动态信息流跟踪
- 批准号:
1017602 - 财政年份:2010
- 资助金额:
$ 29.97万 - 项目类别:
Standard Grant
TC: Medium: Collaborative Research: Securing Concurrency in Modern Systems
TC:媒介:协作研究:确保现代系统中的并发性
- 批准号:
0905177 - 财政年份:2009
- 资助金额:
$ 29.97万 - 项目类别:
Standard Grant
CAREER: Internet Measurement in the Cat's Cradle of Global Internet Censorship
职业:全球互联网审查摇篮中的互联网测量
- 批准号:
0844880 - 财政年份:2009
- 资助金额:
$ 29.97万 - 项目类别:
Standard Grant
相似国自然基金
胆固醇羟化酶CH25H非酶活依赖性促进乙型肝炎病毒蛋白Core及Pre-core降解的分子机制研究
- 批准号:82371765
- 批准年份:2023
- 资助金额:50 万元
- 项目类别:面上项目
锕系元素5f-in-core的GTH赝势和基组的开发
- 批准号:22303037
- 批准年份:2023
- 资助金额:30 万元
- 项目类别:青年科学基金项目
基于合成致死策略搭建Core-matched前药共组装体克服肿瘤耐药的机制研究
- 批准号:
- 批准年份:2022
- 资助金额:52 万元
- 项目类别:
鼠伤寒沙门氏菌LPS core经由CD209/SphK1促进树突状细胞迁移加重炎症性肠病的机制研究
- 批准号:
- 批准年份:2022
- 资助金额:30 万元
- 项目类别:青年科学基金项目
基于外泌体精准调控的“核-壳”(core-shell)同步血管化骨组织工程策略的应用与机制探讨
- 批准号:
- 批准年份:2020
- 资助金额:55 万元
- 项目类别:
肌营养不良蛋白聚糖Core M3型甘露糖肽的精确制备及功能探索
- 批准号:92053110
- 批准年份:2020
- 资助金额:70.0 万元
- 项目类别:重大研究计划
Core-1-O型聚糖黏蛋白缺陷诱导胃炎发生并介导慢性胃炎向胃癌转化的分子机制研究
- 批准号:81902805
- 批准年份:2019
- 资助金额:20.5 万元
- 项目类别:青年科学基金项目
原始地球增生晚期的Core-merging大碰撞事件:地核增生、核幔平衡与核幔边界结构的新认识
- 批准号:41973063
- 批准年份:2019
- 资助金额:65.0 万元
- 项目类别:面上项目
CORDEX-CORE区域气候模拟与预估研讨会
- 批准号:41981240365
- 批准年份:2019
- 资助金额:1.5 万元
- 项目类别:国际(地区)合作与交流项目
RBM38通过协助Pol-ε结合、招募core调控HBV复制
- 批准号:31900138
- 批准年份:2019
- 资助金额:24.0 万元
- 项目类别:青年科学基金项目
相似海外基金
Collaborative Research: SaTC: CORE: Medium: Differentially Private SQL with flexible privacy modeling, machine-checked system design, and accuracy optimization
协作研究:SaTC:核心:中:具有灵活隐私建模、机器检查系统设计和准确性优化的差异化私有 SQL
- 批准号:
2317232 - 财政年份:2024
- 资助金额:
$ 29.97万 - 项目类别:
Continuing Grant
Collaborative Research: SaTC: CORE: Medium: Using Intelligent Conversational Agents to Empower Adolescents to be Resilient Against Cybergrooming
合作研究:SaTC:核心:中:使用智能会话代理使青少年能够抵御网络诱骗
- 批准号:
2330940 - 财政年份:2024
- 资助金额:
$ 29.97万 - 项目类别:
Continuing Grant
Collaborative Research: SaTC: CORE: Medium: Differentially Private SQL with flexible privacy modeling, machine-checked system design, and accuracy optimization
协作研究:SaTC:核心:中:具有灵活隐私建模、机器检查系统设计和准确性优化的差异化私有 SQL
- 批准号:
2317233 - 财政年份:2024
- 资助金额:
$ 29.97万 - 项目类别:
Continuing Grant
SaTC: CORE: Medium: Testing the causal influence of social media on well-being and animosity
SaTC:核心:中:测试社交媒体对幸福感和敌意的因果影响
- 批准号:
2334148 - 财政年份:2024
- 资助金额:
$ 29.97万 - 项目类别:
Standard Grant
Collaborative Research: SaTC: CORE: Medium: Using Intelligent Conversational Agents to Empower Adolescents to be Resilient Against Cybergrooming
合作研究:SaTC:核心:中:使用智能会话代理使青少年能够抵御网络诱骗
- 批准号:
2330941 - 财政年份:2024
- 资助金额:
$ 29.97万 - 项目类别:
Continuing Grant
SaTC: CORE: Medium: Increasing user autonomy and advertiser and platform responsibility in online advertising
SaTC:核心:中:增加在线广告中的用户自主权以及广告商和平台责任
- 批准号:
2318290 - 财政年份:2024
- 资助金额:
$ 29.97万 - 项目类别:
Continuing Grant
SaTC: CORE: Medium: Collaborative: Hardening Off-the-Shelf Software Against Side Channel Attacks
SaTC:核心:媒介:协作:强化现成软件以抵御侧通道攻击
- 批准号:
2425665 - 财政年份:2024
- 资助金额:
$ 29.97万 - 项目类别:
Continuing Grant
Collaborative Research: SaTC: CORE: Medium: Understanding the Impact of Privacy Interventions on the Online Publishing Ecosystem
协作研究:SaTC:核心:媒介:了解隐私干预对在线出版生态系统的影响
- 批准号:
2237329 - 财政年份:2023
- 资助金额:
$ 29.97万 - 项目类别:
Standard Grant
Collaborative Research: SaTC: CORE: Medium: Securing Interactions between Driver and Vehicle Using Batteries
合作研究:SaTC:核心:中:使用电池确保驾驶员和车辆之间的交互安全
- 批准号:
2245224 - 财政年份:2023
- 资助金额:
$ 29.97万 - 项目类别:
Continuing Grant
Collaborative Research: SaTC: CORE: Medium: Understanding and Combatting Impersonation Attacks and Data Leakage in Online Advertising
协作研究:SaTC:核心:媒介:理解和打击在线广告中的冒充攻击和数据泄露
- 批准号:
2247516 - 财政年份:2023
- 资助金额:
$ 29.97万 - 项目类别:
Continuing Grant