CICI: UCSS: Helix++: Securing Open Science Platforms
CICI:UCSS:Helix:保护开放科学平台
基本信息
- 批准号:2115130
- 负责人:
- 金额:$ 49.8万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Standard Grant
- 财政年份:2021
- 资助国家:美国
- 起止时间:2021-08-01 至 2024-07-31
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
The Helix++ project’s goal is to use recently developed, promising cybersecurity research results to secure open-science platforms. Securing these open-science platforms is vital because compromise of research infrastructure can have severe consequences, including the delay of critical research, corruption of research results, theft of intellectual property, and exposure of personally identifiable information. Beyond providing researchers customized, secure packages of widely used open software, the Helix++ project will provide insights and directions for future research and strategies for protecting critical cyber infrastructure. Using two existing operational open-science platforms at the University of Virginia, the project will investigate the interaction of technical and policy issues which are fundamental to infrastructure protection.The open-source Helix++ project improves the security posture of open science platforms by applying cutting-edge cybersecurity techniques to diversify and harden software automatically. A distinguishing feature of Helix++ is that it does not require source code or build artifacts. It operates directly on software in binary form—even stripped executables and libraries. This feature is key as rebuilding applications from source is a time-consuming and often frustrating process. Helix++ enables the rapid generation and deployment of secure containers and virtual machines, wherein various applications and libraries are transformed to incorporate the Helix++ protections. Diversification breaks the software monoculture and makes attacks harder to execute as information needed for a successful attack will have changed unpredictably. Diversification also forces attackers to customize an attack for each target instead of attackers crafting an exploit that works reliably on all similarly configured targets. Hardening directly targets key attack classes. The combination of diversity and hardening provides defense-in-depth, as well as a moving target defense. Helix++ is evaluated on two open science platforms to demonstrate its efficacy and usability.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
该项目的目标是利用最近开发的、有前途的网络安全研究成果来保护开放科学平台。保护这些开放科学平台至关重要,因为研究基础设施的妥协可能会产生严重后果,包括关键研究的延迟,研究成果的腐败,知识产权的盗窃以及个人身份信息的暴露。除了为研究人员提供定制的、安全的广泛使用的开放软件包外,Hacker ++项目还将为未来的研究和保护关键网络基础设施的战略提供见解和方向。该项目将利用弗吉尼亚大学现有的两个开放科学平台,调查对基础设施保护至关重要的技术和政策问题之间的相互作用,开源Hundreds ++项目通过应用尖端网络安全技术自动使软件多样化和强化,改善开放科学平台的安全态势。Hacker ++的一个显著特点是它不需要源代码或构建工件。它直接操作二进制形式的软件,甚至是剥离的可执行文件和库。这个特性是关键,因为从源代码重建应用程序是一个耗时且经常令人沮丧的过程。Hacker ++支持快速生成和部署安全容器和虚拟机,其中各种应用程序和库都经过转换以纳入Hacker ++保护。多样化打破了软件的单一文化,使攻击更难执行,因为成功攻击所需的信息将发生不可预测的变化。多样化还迫使攻击者为每个目标定制攻击,而不是攻击者精心制作一个可以在所有类似配置的目标上可靠工作的漏洞。强化直接针对关键攻击类。多样性和强化的结合提供了纵深防御以及移动目标防御。该奖项反映了NSF的法定使命,并通过使用基金会的知识价值和更广泛的影响审查标准进行评估,被认为值得支持。
项目成果
期刊论文数量(2)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
Breaking Through Binaries: Compiler-quality Instrumentation for Better Binary-only Fuzzing
- DOI:
- 发表时间:2021
- 期刊:
- 影响因子:2.9
- 作者:Stefan Nagy;A. Nguyen-Tuong;Jason Hiser;J. Davidson;Matthew Hicks
- 通讯作者:Stefan Nagy;A. Nguyen-Tuong;Jason Hiser;J. Davidson;Matthew Hicks
Same Coverage, Less Bloat: Accelerating Binary-only Fuzzing with Coverage-preserving Coverage-guided Tracing
- DOI:10.1145/3460120.3484787
- 发表时间:2021-11
- 期刊:
- 影响因子:0
- 作者:Stefan Nagy;A. Nguyen-Tuong;Jason Hiser;J. Davidson;Matthew Hicks
- 通讯作者:Stefan Nagy;A. Nguyen-Tuong;Jason Hiser;J. Davidson;Matthew Hicks
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Jack Davidson其他文献
Early Detection of Oral Cavity Cancer: A Comprehensive Literature Review of Risk Factors and Latest Techniques in Diagnosis
- DOI:
10.1007/s40137-024-00442-8 - 发表时间:
2025-02-15 - 期刊:
- 影响因子:0.700
- 作者:
Ritika Agrawal;Amir Tofighbakhsh;Jack Davidson;Jordan Gabriele - 通讯作者:
Jordan Gabriele
Jack Davidson的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Jack Davidson', 18)}}的其他基金
CCRI: Planning: Towards Building a Community Data Infrastructure for CyberSecurity Research
CCRI:规划:构建网络安全研究社区数据基础设施
- 批准号:
2016431 - 财政年份:2020
- 资助金额:
$ 49.8万 - 项目类别:
Standard Grant
CC* Integration: Enhancement and deployment of LDM7 for scientific data distribution
CC* 集成:增强和部署 LDM7 以进行科学数据分发
- 批准号:
1659174 - 财政年份:2017
- 资助金额:
$ 49.8万 - 项目类别:
Standard Grant
Collaborative Research: Stimulating Wide Interest in Computer Science Using Computer Security
协作研究:利用计算机安全激发对计算机科学的广泛兴趣
- 批准号:
0837609 - 财政年份:2009
- 资助金额:
$ 49.8万 - 项目类别:
Standard Grant
CT-ISG: Robust and Efficient Tamper-Resistant Software
CT-ISG:强大、高效的防篡改软件
- 批准号:
0716446 - 财政年份:2007
- 资助金额:
$ 49.8万 - 项目类别:
Standard Grant
Collaborative Research: CRI: A Community Resource Development Project for a Retargetable and Reconfigurable Software Dynamic Translation Infrastructure
合作研究:CRI:可重定向和可重新配置软件动态翻译基础设施的社区资源开发项目
- 批准号:
0551560 - 财政年份:2006
- 资助金额:
$ 49.8万 - 项目类别:
Continuing Grant
NGS: Collaborative Research: Adapting Program Code Continuously and Aggressively
NGS:协作研究:持续积极地调整程序代码
- 批准号:
0305144 - 财政年份:2003
- 资助金额:
$ 49.8万 - 项目类别:
Continuing Grant
NGS: Collaborative Research: Continuous Compilation: A New Approach to Aggressive and Adaptive Code Transformation
NGS:协作研究:持续编译:积极和自适应代码转换的新方法
- 批准号:
0203956 - 财政年份:2002
- 资助金额:
$ 49.8万 - 项目类别:
Standard Grant
Experimental Partnership - Comprehensive Retargetable Embedded Systems Software Development Environment
实验性合作伙伴关系 - 全面的可重定向嵌入式系统软件开发环境
- 批准号:
0072043 - 财政年份:2000
- 资助金额:
$ 49.8万 - 项目类别:
Continuing Grant
Workshop to Promote Course/Curriculum Change Using C + + and the Closed Laboratory Model
使用 C 和封闭实验室模型促进课程/课程变革的研讨会
- 批准号:
9554715 - 财政年份:1996
- 资助金额:
$ 49.8万 - 项目类别:
Standard Grant
Compiler Infrastructure: Development of a HIL/LIL Framework for a National Compiler Infrastructure
编译器基础设施:为国家编译器基础设施开发 HIL/LIL 框架
- 批准号:
9612756 - 财政年份:1996
- 资助金额:
$ 49.8万 - 项目类别:
Continuing Grant
相似海外基金
CICI: UCSS: Human-Centered Cybersecurity in Robotic Surgery (HCCRS) - Coordinating the Human and Cyber Infrastructure for Cybersecurity
CICI:UCCSS:机器人手术中以人为中心的网络安全 (HCCCS) - 协调网络安全的人力和网络基础设施
- 批准号:
2319891 - 财政年份:2023
- 资助金额:
$ 49.8万 - 项目类别:
Standard Grant
CICI: UCSS: Trusted Resource Allocation in Volunteer Edge-Cloud Computing Workflows
CICI:UCSS:志愿者边缘云计算工作流程中的可信资源分配
- 批准号:
2232889 - 财政年份:2023
- 资助金额:
$ 49.8万 - 项目类别:
Standard Grant
CICI: UCSS: Building a Community of Practice for Supporting Regulated Research
CICI:UCSS:建立支持监管研究的实践社区
- 批准号:
2409859 - 财政年份:2023
- 资助金额:
$ 49.8万 - 项目类别:
Standard Grant
CICI: UCSS: Enhancing the Usability of Vulnerability Assessment Results for Open-Source Software Technologies in Scientific Cyberinfrastructure: A Deep Learning Perspective
CICI:UCSS:增强科学网络基础设施中开源软件技术漏洞评估结果的可用性:深度学习视角
- 批准号:
2319325 - 财政年份:2023
- 资助金额:
$ 49.8万 - 项目类别:
Standard Grant
CICI: UCSS: Secure Containers in High-Performance Computing Infrastructure
CICI:UCSS:高性能计算基础设施中的安全容器
- 批准号:
2319975 - 财政年份:2023
- 资助金额:
$ 49.8万 - 项目类别:
Standard Grant
CICI: UCSS: Maximizing Data Utility and Participant Privacy through Usable, Secure Data Workflows for Human-Centered AI Research
CICI:UCSS:通过可用、安全的数据工作流程实现以人为本的人工智能研究,最大限度地提高数据效用和参与者隐私
- 批准号:
2232690 - 财政年份:2023
- 资助金额:
$ 49.8万 - 项目类别:
Standard Grant
CICI: UCSS: Confidential Computing in Reproducible Collaborative Workflows
CICI:UCSS:可重复协作工作流程中的机密计算
- 批准号:
2232824 - 财政年份:2023
- 资助金额:
$ 49.8万 - 项目类别:
Standard Grant
CICI: UCSS: ScienceAccess: Enabling Zero-Trust Resource Access Management for Scientific Collaborations
CICI:UCSS:ScienceAccess:为科学合作实现零信任资源访问管理
- 批准号:
2232911 - 财政年份:2022
- 资助金额:
$ 49.8万 - 项目类别:
Standard Grant
CICI: UCSS: Building a Community of Practice for Supporting Regulated Research
CICI:UCSS:建立支持监管研究的实践社区
- 批准号:
2201028 - 财政年份:2021
- 资助金额:
$ 49.8万 - 项目类别:
Standard Grant
CICI: UCSS: SciAuth: Deploying Interoperable and Usable Authorization Tokens to Enable Scientific Collaborations
CICI:UCSS:SciAuth:部署可互操作和可用的授权令牌以实现科学协作
- 批准号:
2114989 - 财政年份:2021
- 资助金额:
$ 49.8万 - 项目类别:
Standard Grant