EAGER: Collaborative: Towards Understanding the Attack Vector of Privacy Technologies
EAGER:协作:了解隐私技术的攻击向量
基本信息
- 批准号:1809000
- 负责人:
- 金额:$ 10.22万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Standard Grant
- 财政年份:2017
- 资助国家:美国
- 起止时间:2017-11-10 至 2019-08-31
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
Advances in privacy-enhancing technologies, including cryptographic mechanisms, standardized security protocols, and infrastructure, significantly improved privacy and had a significant impact on society by protecting users. At the same time, the success of such infrastructure has attracted abuse from illegal activities, including sophisticated botnets and ransomware, and has become a marketplace for drugs and contraband; botnets rose to be a major tool for cybercrime and their developers proved to be highly resourceful. It is contended that the next waves of botnets will extensively attempt to subvert privacy infrastructure and cryptographic mechanisms, which has the potential of both undermining their legal basis and future performance. This project will develop the theoretical and experimental foundations for analyzing, monitoring and mitigating the next generation of botnets that subvert privacy-enhancing technologies. Towards that goal, the project will develop tools for: 1) Analytical framework: the project develops a concrete strategy for approaching the detection, characterization, and mitigation of abuse of privacy infrastructure by crystallizing an analytical framework for reasoning about such botnets. This includes the identification
and formalization of their key properties (e.g., traceback and tomography resiliency, stealthy monetization), enabling mechanisms (e.g., IP address de-coupling, control/data traffic indistinguishability), fundamental limitations, and evaluation metrics. The project will explore analogous scenarios of abuse in future Internet architectures where anonymity is facilitated by design. 2) Monitoring and analysis: the project develops an experimental framework to track activities of the next generation of botnets for scalable and effective mitigation. Such framework will exploit their ideal design and behavioral properties, and draws on various preliminary measurement results in related contexts. 3) Mitigation: The project has the ultimate
goal of proactively developing an arsenal of mitigation techniques grounded in a sound theoretical foundation, analyzed within the theoretical framework, and evaluated within the experimental framework. The mitigation techniques span the gamut of increasing the cost of operating such botnets, to actively containing
and neutralizing bots, to proposing modifications to the privacy-enhancing protocols. The results of this project will be communicated with the concerned communities for having a direct and immediate impact on existing and future privacy infrastructure. The project will also develop educational material to train students in the foundations and systems for enabling privacy enhancing technologies.
加密机制、标准化安全协议和基础设施等隐私增强技术的进步,大大改善了隐私,并通过保护用户对社会产生了重大影响。与此同时,这种基础设施的成功吸引了非法活动的滥用,包括复杂的僵尸网络和勒索软件,并已成为毒品和违禁品的市场;僵尸网络已成为网络犯罪的主要工具,其开发者证明非常足智多谋。有人认为,下一波僵尸网络将广泛地试图破坏隐私基础设施和加密机制,这有可能破坏其法律的基础和未来的表现。该项目将为分析、监控和缓解下一代破坏隐私增强技术的僵尸网络奠定理论和实验基础。为实现这一目标,该项目将开发工具:1)分析框架:该项目通过明确分析僵尸网络的推理框架,制定一项具体战略,以接近隐私基础设施滥用的检测,定性和缓解。这包括识别#8232;和其关键属性的形式化(例如,回溯和层析成像弹性,隐形货币化),使能机制(例如,IP地址去耦合、控制/数据业务不可扩展性)、基本限制和评估指标。该项目将探讨未来互联网架构中类似的滥用情况,在这些架构中,匿名性通过设计得到促进。2)监测和分析:该项目开发了一个实验框架,以跟踪下一代僵尸网络的活动,从而实现可扩展和有效的缓解。这种框架将利用他们的理想设计和行为特性,并借鉴了相关背景下的各种初步测量结果。3)缓解措施:该项目具有最终
目标是积极主动地开发一套基于良好理论基础的缓解技术,在理论框架内进行分析,并在实验框架内进行评估。缓解技术涵盖了增加运营此类僵尸网络的成本,积极遏制和中和僵尸程序,以及对隐私增强协议提出修改的范围。该项目的结果将与有关社区进行沟通,对现有和未来的隐私基础设施产生直接和直接的影响。该项目还将开发教育材料,对学生进行基础和系统方面的培训,以实现隐私增强技术。
项目成果
期刊论文数量(12)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
Digitalseal: a Transaction Authentication Tool for Online and Offline Transactions
Digitalseal:线上线下交易的交易认证工具
- DOI:10.1109/icassp.2018.8462341
- 发表时间:2018
- 期刊:
- 影响因子:0
- 作者:Jung, Changhun;Kang, Jeonil;Mohaisen, Aziz;Nyang, DaeHun
- 通讯作者:Nyang, DaeHun
Where Are You Taking Me? Behavioral Analysis of Open DNS Resolvers
- DOI:10.1109/dsn.2019.00057
- 发表时间:2019-06
- 期刊:
- 影响因子:0
- 作者:Jeman Park;Aminollah Khormali;Manar Mohaisen;Aziz Mohaisen
- 通讯作者:Jeman Park;Aminollah Khormali;Manar Mohaisen;Aziz Mohaisen
Understanding the Hidden Cost of Software Vulnerabilities: Measurements and Predictions
了解软件漏洞的隐藏成本:测量和预测
- DOI:
- 发表时间:2018
- 期刊:
- 影响因子:0
- 作者:Anwar, Afsah;Khormali, Aminollah;Nyang, DaeHun;Mohaisen, Aziz
- 通讯作者:Mohaisen, Aziz
Delving Into Internet DDoS Attacks by Botnets: Characterization and Analysis
- DOI:10.1109/tnet.2018.2874896
- 发表时间:2018-12-01
- 期刊:
- 影响因子:3.7
- 作者:Wang, An;Chang, Wentao;Mohaisen, Aziz
- 通讯作者:Mohaisen, Aziz
ABC: Enabling Smartphone Authentication with Built-in Camera
ABC:使用内置摄像头启用智能手机身份验证
- DOI:10.14722/ndss.2018.23099
- 发表时间:2018
- 期刊:
- 影响因子:0
- 作者:Ba, Zhongjie;Piao, Sixu;Fu, Xinwen;Koutsonikolas, Dimitrios;Mohaisen, Aziz;Ren, Kui
- 通讯作者:Ren, Kui
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
David Mohaisen其他文献
David Mohaisen的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('David Mohaisen', 18)}}的其他基金
NSF Student Travel Grant for 2021 ACM CCS
2021 年 ACM CCS 的 NSF 学生旅行补助金
- 批准号:
2140576 - 财政年份:2021
- 资助金额:
$ 10.22万 - 项目类别:
Standard Grant
SaTC: Student Travel Support for IEEE CNS 2016
SaTC:IEEE CNS 2016 学生旅行支持
- 批准号:
1606354 - 财政年份:2016
- 资助金额:
$ 10.22万 - 项目类别:
Standard Grant
EAGER: Collaborative: Towards Understanding the Attack Vector of Privacy Technologies
EAGER:协作:了解隐私技术的攻击向量
- 批准号:
1643207 - 财政年份:2016
- 资助金额:
$ 10.22万 - 项目类别:
Standard Grant
相似海外基金
Collaborative Research: EAGER: Towards Safeguarding the Emerging Miniapp Paradigm in Mobile Super Apps
合作研究:EAGER:捍卫移动超级应用中新兴的小应用范式
- 批准号:
2330265 - 财政年份:2023
- 资助金额:
$ 10.22万 - 项目类别:
Standard Grant
COLLABORATIVE RESEARCH: EAGER: Towards Building a CyberInfrastructure for Facilitating the Assessment, Dissemination, Discovery, & Reuse of Software and Data Products
合作研究:渴望:建立网络基础设施以促进评估、传播、发现、
- 批准号:
2314202 - 财政年份:2023
- 资助金额:
$ 10.22万 - 项目类别:
Standard Grant
Collaborative Research: EAGER: Towards Safeguarding the Emerging Miniapp Paradigm in Mobile Super Apps
合作研究:EAGER:捍卫移动超级应用中新兴的小应用范式
- 批准号:
2330264 - 财政年份:2023
- 资助金额:
$ 10.22万 - 项目类别:
Standard Grant
Collaborative Research: EAGER: Towards a Design Methodology for Software-Driven Sustainability
合作研究:EAGER:迈向软件驱动的可持续性设计方法
- 批准号:
2233871 - 财政年份:2022
- 资助金额:
$ 10.22万 - 项目类别:
Standard Grant
Collaborative Research: EAGER: Towards a Design Methodology for Software-Driven Sustainability
合作研究:EAGER:迈向软件驱动的可持续性设计方法
- 批准号:
2233873 - 财政年份:2022
- 资助金额:
$ 10.22万 - 项目类别:
Standard Grant
Collaborative Research: EAGER: Towards a Design Methodology for Software-Driven Sustainability
合作研究:EAGER:迈向软件驱动的可持续性设计方法
- 批准号:
2233872 - 财政年份:2022
- 资助金额:
$ 10.22万 - 项目类别:
Standard Grant
EAGER: Collaborative Research: Towards an Extensible Internet
EAGER:协作研究:迈向可扩展的互联网
- 批准号:
2137220 - 财政年份:2021
- 资助金额:
$ 10.22万 - 项目类别:
Standard Grant
EAGER: Collaborative Research: Towards an Extensible Internet
EAGER:协作研究:迈向可扩展的互联网
- 批准号:
2137219 - 财政年份:2021
- 资助金额:
$ 10.22万 - 项目类别:
Standard Grant
EAGER: Collaborative Research: Towards an Extensible Internet
EAGER:协作研究:迈向可扩展的互联网
- 批准号:
2137222 - 财政年份:2021
- 资助金额:
$ 10.22万 - 项目类别:
Standard Grant
EAGER: Collaborative Research: Towards an Extensible Internet
EAGER:协作研究:迈向可扩展的互联网
- 批准号:
2137221 - 财政年份:2021
- 资助金额:
$ 10.22万 - 项目类别:
Standard Grant