EAGER: Decomposing Operating Systems for Better Control over Policy and Privacy
EAGER:分解操作系统以更好地控制策略和隐私
基本信息
- 批准号:1840902
- 负责人:
- 金额:$ 20万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Standard Grant
- 财政年份:2018
- 资助国家:美国
- 起止时间:2018-10-01 至 2020-09-30
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
Mobile personal and internet connected devices (called Internet of Things (IoT) devices), provide functionality including communication, image/audio capture, location determination, and biometric sensing. The enhanced functionality of these devices has enabled two new classes of attacks: data breaches from malicious software applications and Operating Systems (OS) compromises, and large scale Distributed Denial of Service (DDoS) attacks. These attacks often result from users not being able to control the actions of their devices. Some actions might be in direct contradiction to the users' wishes. This project addresses the problem of mismatch between device functionality and user policy by introducing a new software layer that mediates access to low-level computing hardware.The project designs a new "Policy Kernel" that mediates with hardware and existing "Functionality Kernels". To demonstrate the policy-kernel's versatility, the proposed work includes implementation of prototype applications that address privacy leaks in mobile devices, DDoS prevention in IoT devices, and maintaining device integrity even if the functionality kernel is compromised. The policy kernel selectively intercepts all hardware access by existing kernels, and ensures that the user policy is not violated. Applying the user policy requires the policy kernel to be able to disable access to hardware selectively, and to transform or reduce the resolution of data returned by hardware devices.The ability to apply user policy unambiguously and securely will solve, perhaps, the biggest emerging problem for personal- and IoT devices. Prototype applications will demonstrate the versatility and potential of the proposed work: enabling functionality for important scenarios that, for now, must be accepted on `"faith". The proposed design relieves device manufacturers from having to anticipate how their product will be used, where it might be placed, who will use it, and what sensitive data it might inadvertently collect. Such a design can provide a foundation for how secure and privacy-preserving system software for personal- and IoT devices is built.The policy kernel source code, along with application code will be publicly available. All research results will be disseminated via conference and journal publications. All code, data, analysis tools, and publications will be online at https://www.cs.umd.edu/projects/secpath.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
移动的个人和互联网连接设备(称为物联网(IoT)设备)提供包括通信、图像/音频捕获、位置确定和生物特征感测的功能。 这些设备的增强功能使两类新的攻击成为可能:恶意软件应用程序和操作系统(OS)入侵造成的数据泄露,以及大规模分布式拒绝服务(DDoS)攻击。 这些攻击通常是由于用户无法控制其设备的操作而导致的。 有些行为可能与用户的愿望直接矛盾。该项目通过引入一个新的软件层来解决设备功能和用户策略之间不匹配的问题,该软件层用于协调对底层计算硬件的访问。该项目设计了一个新的“策略内核”,用于协调硬件和现有的“功能内核”。 为了证明策略内核的多功能性,建议的工作包括实现原型应用程序,解决移动的设备中的隐私泄露,物联网设备中的DDoS防护,以及即使功能内核受到损害也保持设备完整性。 策略内核有选择地拦截现有内核的所有硬件访问,并确保不违反用户策略。 应用用户策略需要策略内核能够有选择地禁用对硬件的访问,并转换或降低硬件设备返回的数据的分辨率。明确安全地应用用户策略的能力可能会解决个人和物联网设备最大的新兴问题。原型应用程序将展示拟议工作的多功能性和潜力:为重要场景提供功能,目前必须接受“信念”。 该设计使设备制造商不必预测其产品将如何使用、可能放置在何处、谁将使用以及可能无意中收集哪些敏感数据。这样的设计可以为如何构建个人和物联网设备的安全和隐私保护系统软件提供基础。策略内核源代码沿着应用程序代码将公开。 所有研究成果将通过会议和期刊出版物传播。 所有代码、数据、分析工具和出版物都将在www.example.com上在线发布https://www.cs.umd.edu/projects/secpath.This奖项反映了NSF的法定使命,并被认为值得通过使用基金会的知识价值和更广泛的影响审查标准进行评估来支持。
项目成果
期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
数据更新时间:{{ journalArticles.updateTime }}
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Samrat Bhattacharjee其他文献
An Enigmatic Case of Adult-Onset Still's Disease
成人斯蒂尔病的神秘病例
- DOI:
10.7759/cureus.60822 - 发表时间:
2024 - 期刊:
- 影响因子:0
- 作者:
Yash Duseja;Ayondyuti Bora;Anupam Dutta;Subhalakshmi Das;Samrat Bhattacharjee - 通讯作者:
Samrat Bhattacharjee
Samrat Bhattacharjee的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Samrat Bhattacharjee', 18)}}的其他基金
Student Travel to the Cornell, Maryland, Max Planck Pre-doctoral Research School
学生前往马里兰州康奈尔大学马克斯·普朗克博士前研究学院
- 批准号:
2330072 - 财政年份:2023
- 资助金额:
$ 20万 - 项目类别:
Standard Grant
Student Travel to the Cornell, Maryland, Max Planck Pre-doctoral Research School
学生前往马里兰州康奈尔大学马克斯·普朗克博士前研究学院
- 批准号:
2228678 - 财政年份:2022
- 资助金额:
$ 20万 - 项目类别:
Standard Grant
The 2019 Joint Computer Systems Research and Networking Technology and Systems PI Meeting
2019年计算机系统研究与网络技术与系统PI联合会议
- 批准号:
1939944 - 财政年份:2019
- 资助金额:
$ 20万 - 项目类别:
Standard Grant
Student Travel to the Cornell, Maryland, Max Planck Pre-Doctoral Research School
学生前往马里兰州康奈尔大学马克斯·普朗克博士前研究学院
- 批准号:
1926778 - 财政年份:2019
- 资助金额:
$ 20万 - 项目类别:
Standard Grant
Student Travel to the Cornell, Maryland, Max Planck Pre-Doctoral Research School
学生前往马里兰州康奈尔大学马克斯·普朗克博士前研究学院
- 批准号:
1838985 - 财政年份:2018
- 资助金额:
$ 20万 - 项目类别:
Standard Grant
Student Travel to the Cornell, Maryland, Max Planck Pre-Doctoral Research School
学生前往马里兰州康奈尔大学马克斯·普朗克博士前研究学院
- 批准号:
1735563 - 财政年份:2017
- 资助金额:
$ 20万 - 项目类别:
Standard Grant
NeTS: Small: Measurement and Analysis of Second-Generation Crypto-Currency Networks
NeTS:小型:第二代加密货币网络的测量和分析
- 批准号:
1526635 - 财政年份:2015
- 资助金额:
$ 20万 - 项目类别:
Standard Grant
NetSE: Medium: Collaborative Research: Privacy Preserving Social Systems
NetSE:媒介:协作研究:隐私保护社会系统
- 批准号:
0964541 - 财政年份:2010
- 资助金额:
$ 20万 - 项目类别:
Standard Grant
ITR - (ASE+NHS) - (DMC+INT+SOC): Resilient Storage and Querying in Decentralized Networks
ITR - (ASE NHS) - (DMC INT SOC):去中心化网络中的弹性存储和查询
- 批准号:
0426683 - 财政年份:2004
- 资助金额:
$ 20万 - 项目类别:
Continuing Grant
Distributed Trust Computations for Decentralized Systems
去中心化系统的分布式信任计算
- 批准号:
0310499 - 财政年份:2003
- 资助金额:
$ 20万 - 项目类别:
Continuing Grant
相似海外基金
Analysing Earnings from Creative Education and Creative Work: Decomposing University, Industry and Social Inequalities.
分析创意教育和创意工作的收入:分解大学、工业和社会不平等。
- 批准号:
ES/Z502455/1 - 财政年份:2024
- 资助金额:
$ 20万 - 项目类别:
Fellowship
Monarch fall migration, overwintering mortality and the effects of defence compounds released by decomposing butterflies on the soil ecosystem.
帝王蝶秋季迁徙、越冬死亡率以及分解蝴蝶释放的防御化合物对土壤生态系统的影响。
- 批准号:
RGPIN-2020-07203 - 财政年份:2022
- 资助金额:
$ 20万 - 项目类别:
Discovery Grants Program - Individual
Decomposing Permutations and Permutation Properties
分解排列和排列属性
- 批准号:
574188-2022 - 财政年份:2022
- 资助金额:
$ 20万 - 项目类别:
University Undergraduate Student Research Awards
Research for identification of rubber-decomposing gene which is included in rubber-decomposing bacteria
橡胶分解菌中橡胶分解基因的鉴定研究
- 批准号:
21K04329 - 财政年份:2021
- 资助金额:
$ 20万 - 项目类别:
Grant-in-Aid for Scientific Research (C)
Monarch fall migration, overwintering mortality and the effects of defence compounds released by decomposing butterflies on the soil ecosystem.
帝王蝶秋季迁徙、越冬死亡率以及分解蝴蝶释放的防御化合物对土壤生态系统的影响。
- 批准号:
RGPIN-2020-07203 - 财政年份:2021
- 资助金额:
$ 20万 - 项目类别:
Discovery Grants Program - Individual
Decomposing Stress Reactivity Across the Adult Lifespan
分解整个成年生命周期的应激反应
- 批准号:
10291316 - 财政年份:2021
- 资助金额:
$ 20万 - 项目类别:
EAGER: DECOMPOSING COVID-19 VIRUS USING THE DUAL ACTION OF MICROWAVES AND PLASMA
EAGER:利用微波和等离子体的双重作用分解 COVID-19 病毒
- 批准号:
2033907 - 财政年份:2020
- 资助金额:
$ 20万 - 项目类别:
Standard Grant
Monarch fall migration, overwintering mortality and the effects of defence compounds released by decomposing butterflies on the soil ecosystem.
帝王蝶秋季迁徙、越冬死亡率以及分解蝴蝶释放的防御化合物对土壤生态系统的影响。
- 批准号:
RGPIN-2020-07203 - 财政年份:2020
- 资助金额:
$ 20万 - 项目类别:
Discovery Grants Program - Individual
Decomposing Neural Field Potentials To Infer Neurophysiological Parameters
分解神经场电位以推断神经生理参数
- 批准号:
488052-2016 - 财政年份:2018
- 资助金额:
$ 20万 - 项目类别:
Postgraduate Scholarships - Doctoral
Collaborative Research: Decomposing the effects of diversity on the abundance of marine parasites
合作研究:分解多样性对海洋寄生虫丰度的影响
- 批准号:
1829509 - 财政年份:2018
- 资助金额:
$ 20万 - 项目类别:
Standard Grant














{{item.name}}会员




