CNS Core: Small: Collaborative Research: Scalable Penetration Test Generation for Automotive Systems
CNS Core: Small: Collaborative Research: Scalable Penetration Test Generation for Automotive Systems
批准号:
1908571
负责人:
Fei Xie
金额:
$24.5万
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2019
资助国家:
美国
项目状态:
已结题
起止时间:
2019-10-01 至 2023-09-30
中文摘要
该项目为现代汽车系统的安全验证开发了一个全面的框架。随着自动化程度的提高,汽车系统正在演变成非常复杂的分布式系统。 它们包含一百多个电子控制单元(ECU),传感器和执行器的异构集合,几个车载通信网络和几百兆字节的软件。 目前,这些系统的安全验证主要依赖于人类的专业知识来识别设计和实现中的漏洞。 显然,这并不能扩展到大型复杂系统。该项目通过引入能够处理爆炸式汽车系统复杂性的自动渗透测试方法来解决这个问题。该项目开发技术,用于系统分析当前和紧急车辆的各种安全性,安全性和可靠性要求。 它使人们能够尽早理解不同需求之间的冲突、权衡和潜在的内部不一致。该框架包括:(1)自适应虚拟原型基础设施,可实现ECU、传感器和执行器模型的平滑集成;以及(2)concolic测试设施,可为目标对手模型自动生成渗透测试。在研究中开发的分析技术横切硬件,软件和物理(感官和精算)文物。 该框架汇集了目前在安全,机器智能和决策科学方面的不同研究。该项目有望通过大幅提高各种网络物理系统(特别是汽车系统)的安全性、可靠性和可靠性,产生变革性的技术和社会影响。 研究成果将纳入研究生和本科生课程。 将引入一个新的研讨会,汇集汽车安全,安全性和可靠性以及跨领域的专家。将使用汽车模拟器平台开发针对本科生和高中生的实践培训模块。 将积极鼓励代表性不足的学生参与该项目。将利用并积极寻求行业联系进行技术转让。该项目过程中产生的所有工件和数据将公开提供,使更广泛的社区能够复制和扩展研究成果。这包括开发的所有软件和工具,架构和平台模型,以及支持研究结论的任何实验数据。为了传播这一信息,在网址www.example.com上建立了一个公共资料库,并将在授标期后至少维持三年。该奖项反映了NSF的法定使命,并通过使用基金会的知识价值和更广泛的影响审查标准进行评估,被认为值得支持。
英文摘要
This project develops a comprehensive framework for security validation of modern automotive systems. With increasing autonomy, automotive systems are evolving into very complex distributed systems. They contain more than a hundred electronic control units (ECU), a heterogeneous collection of sensors and actuators, several in-vehicle communication networks, and several hundred megabytes of software. Currently security validation of these systems depends primarily on human expertise to identify vulnerabilities in design and implementation. Clearly this does not scale to large complex systems. The project addresses this problem by introducing automated penetration testing methods capable of handling the exploding automotive system complexities. This project develops technology for systematic analysis of diverse safety, security, and reliability requirements in current and emergent vehicles. It enables early comprehension of conflict, trade-offs, and potential internal inconsistencies among the different requirements. The framework includes: (1) an adaptive virtual prototyping infrastructure that enables smooth integration of ECU, sensor, and actuator models; and (2) a concolic testing facility to generate penetration tests automatically for targeted adversary models. The analysis techniques developed in the research cross-cut hardware, software, and physical (sensory and actuarial) artifacts. The framework brings together currently disparate research in security, machine intelligence, and decision science. This project promises transformative technical and societal impacts through drastically improved safety, security, and reliability of diverse cyber-physical systems in general and automotive systems in particular. Research results will be integrated into graduate and undergraduate courses. A new workshop will be introduced to bring together experts in automotive safety, security, and reliability, and cross-cutting areas. Hands-on training modules for undergraduate and high school students will be developed using automotive simulator platforms. Participation of underrepresented students in the project will be actively encouraged. Industry connections will be used and actively pursued for technology transfer.All artifacts and data generated during the course of this project will be made publicly available, enabling the broader community to reproduce and extend research results. This includes all software and tools developed, architecture and platform models, and any experimental data supporting the research conclusions. A public repository has been set up at the URL https://github.com/RaySandip/AutoSec19.git for this dissemination, and will be maintained for at least three years beyond the award period. Backup copies of the data is expected to be retained indefinitely.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
期刊论文(6)
专著(0)
科研奖励(0)
会议论文
登录
查看更多内容
DOI:
10.1109/saner48275.2020.9054797
发表时间:
2020-02
期刊:
2020 IEEE 27th International Conference on Software Analysis, Evolution and Reengineering (SANER)
影响因子:
--
作者:
[Bo Chen;Zhenkun Yang;Li Lei;Kai Cong;Fei Xie]
通讯作者:
Bo Chen;Zhenkun Yang;Li Lei;Kai Cong;Fei Xie
Concolic Execution of NMap Scripts for Honeyfarm Generation
用于 Honeyfarm 生成的 NMap 脚本的 Concolic 执行
DOI:
10.1145/3474370.3485660
发表时间:
2021
期刊:
Proceedings of the 8th ACM Workshop on Moving Target Defense (MTD ’21
影响因子:
--
作者:
[Li, Zhe, Chen, Bo, Feng, Wu-chang, Xie, Fei]
通讯作者:
Xie, Fei
In-Situ Concolic Testing of JavaScript
JavaScript 的现场 Concolic 测试
DOI:
--
发表时间:
2023
期刊:
Evolution and Reengineering (SANER
影响因子:
--
作者:
[Li, Zhe, Xie, Fei]
通讯作者:
Xie, Fei
Concolic Testing of Front-end JavaScript
前端 JavaScript 的 Concolic 测试
DOI:
--
发表时间:
2023
期刊:
International Conference on Fundamental Approaches to Software Engineering (FASE
影响因子:
--
作者:
[Li, Zhe, Xie, Fei]
通讯作者:
Xie, Fei
DOI:
10.23919/date48585.2020.9116384
发表时间:
2020-03
期刊:
2020 Design, Automation & Test in Europe Conference & Exhibition (DATE)
影响因子:
--
作者:
[Bin Lin;Jinchao Chen;Fei Xie]
通讯作者:
Bin Lin;Jinchao Chen;Fei Xie
共 6 条
CSR: Small: Hardware/Software Co-Monitoring
-
批准号:1422067
-
项目类别:Standard Grant
-
资助金额:$49.67万
-
财政年份:2014
-
负责人:Fei Xie
-
依托单位:
I-Corps: Virtual Device Technologies
-
批准号:1263990
-
项目类别:Standard Grant
-
资助金额:$5.0万
-
财政年份:2012
-
负责人:Fei Xie
-
依托单位:
CSR: SHF: Small: Automata-Theorectic Approach to Hardware/Software Co-Verification
-
批准号:0916968
-
项目类别:Standard Grant
-
资助金额:$40.21万
-
财政年份:2009
-
负责人:Fei Xie
-
依托单位:
TC: Small: Collaborative Research: Trustworthy Hardware from Certified Behavioral Synthesis
-
批准号:0917188
-
项目类别:Continuing Grant
-
资助金额:$25.0万
-
财政年份:2009
-
负责人:Fei Xie
-
依托单位:
CSR---EHS: Component-Based Hardware/Software Co-Verification of Embedded Systems
-
批准号:0720546
-
项目类别:Continuing Grant
-
资助金额:$19.0万
-
财政年份:2007
-
负责人:Fei Xie
-
依托单位:
Collaborative Proposal: SoD-TEAM: A Feedback-Based Architecture for Highly Reliable Embedded Software
-
批准号:0613930
-
项目类别:Standard Grant
-
资助金额:$0.0万
-
财政年份:2006
-
负责人:Fei Xie
-
依托单位:
国内基金
海外基金
登录
查看更多内容
胆固醇羟化酶CH25H非酶活依赖性促进乙型肝炎病毒蛋白Core及Pre-core降解的分子机制研究
-
批准号:82371765
-
项目类别:面上项目
-
资助金额:50万元
-
批准年份:2023
-
负责人:谭广云
-
依托单位:
锕系元素5f-in-core的GTH赝势和基组的开发
-
批准号:22303037
-
项目类别:青年科学基金项目
-
资助金额:30万元
-
批准年份:2023
-
负责人:鲁俊波
-
依托单位:
基于合成致死策略搭建Core-matched前药共组装体克服肿瘤耐药的机制研究
-
批准号:--
-
项目类别:--
-
资助金额:52万元
-
批准年份:2022
-
负责人:孙丙军
-
依托单位:
鼠伤寒沙门氏菌LPS core经由CD209/SphK1促进树突状细胞迁移加重炎症性肠病的机制研究
-
批准号:--
-
项目类别:青年科学基金项目
-
资助金额:30万元
-
批准年份:2022
-
负责人:叶成林
-
依托单位:
基于外泌体精准调控的“核-壳”(core-shell)同步血管化骨组织工程策略的应用与机制探讨
-
批准号:--
-
项目类别:--
-
资助金额:55万元
-
批准年份:2020
-
负责人:张智勇
-
依托单位:
基于外泌体精准调控的“核-壳”(core-shell)同步血管化骨组织工程策略的应用与机制探讨
-
批准号:82072415
-
项目类别:面上项目
-
资助金额:55.0万元
-
批准年份:2020
-
负责人:张智勇
-
依托单位:
肌营养不良蛋白聚糖Core M3型甘露糖肽的精确制备及功能探索
-
批准号:92053110
-
项目类别:重大研究计划
-
资助金额:70.0万元
-
批准年份:2020
-
负责人:彭鹏
-
依托单位:
Core-1-O型聚糖黏蛋白缺陷诱导胃炎发生并介导慢性胃炎向胃癌转化的分子机制研究
-
批准号:81902805
-
项目类别:青年科学基金项目
-
资助金额:20.5万元
-
批准年份:2019
-
负责人:刘菲
-
依托单位:
原始地球增生晚期的Core-merging大碰撞事件:地核增生、核幔平衡与核幔边界结构的新认识
-
批准号:41973063
-
项目类别:面上项目
-
资助金额:65.0万元
-
批准年份:2019
-
负责人:周游
-
依托单位:
CORDEX-CORE区域气候模拟与预估研讨会
-
批准号:41981240365
-
项目类别:国际(地区)合作与交流项目
-
资助金额:1.5万元
-
批准年份:2019
-
负责人:陈威霖
-
依托单位: