课题基金 / 基金详情

Collaborative Research: CISE-MSI: Active and Passive Internet Measurements for Inferring IoT Maliciousness at Scale

Collaborative Research: CISE-MSI: Active and Passive Internet Measurements for Inferring IoT Maliciousness at Scale
合作研究:CISE-MSI:用于大规模推断物联网恶意行为的主动和被动互联网测量
批准号:
2219773
负责人:
Morteza Safaei Pour
金额:
$24.5万
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2022
资助国家:
美国
项目状态:
未结题
起止时间:
2022-10-01 至 2025-09-30

项目摘要

项目成果

相似基金

相关文献

中文摘要
翻译
点击翻译按钮获取中文摘要
英文摘要
Smart sensing technologies within the context of the Internet-of-Things (IoT) paradigm continue to be deployed in key sectors such as health, agriculture, energy and manufacturing. Indeed, it is estimated that around 30 billion IoT devices will be instrumented by 2030 to increase efficiencies and usability while decreasing costs and maintenance time. Nevertheless, such IoT devices lack even the most fundamental security measures, access policy controls, and patch management capabilities, making them attractive targets for attackers and state-sponsored actors who will abuse them to gain illegitimate access into critical networks while orchestrating them in order to impair other Internet-connected entities. Given the widespread deployment of such IoT devices, it becomes extremely challenging to promptly address their security concerns at-scale. This is mainly due to the lack of scalable methods, which could analyze large-scale, representative data, and the shortage of techniques that are efficient enough to be operated in near real-time. To this end, this project servers NSF’s mission to promote the progress of science by developing empirically-driven methods and techniques to quantity IoT insecurities at-large, while offering digital forensics means to comprehend the causes of their inherit vulnerabilities. The project also offers IoT-centric remediation tactics for supporting Internet security. The project fosters a number of educational activities while organizing female-focused workshops in addition to mentoring students within underrepresented groups from the three collaborating minority institutions. The project devises data-driven methodologies operating on actively and passively-collected network traffic and associated service banners to establish unique malicious IoT labeled empirical datasets. The project then designs and implements algorithms and formal methods rooted in supervised deep learning to fingerprint Internet-scale exploited IoT devices while developing IoT-specific feature engineering and clustering algorithms for characterizing and analyzing the malicious orchestration of IoT campaigns. Additionally, the project executes malware automated disassembly, decompilation, and analysis while engineering computational approaches on packet sequences via solving linear equation sets to investigate IoT stateless scanning modules and related deceiving techniques. This is leveraged to establish bogus connections with the infected devices using crafted packets in order to capture key IoT malware and digital forensic artifacts. To support operational IoT-specific cyber security operations, the project builds and makes available to the public a cyberinfrastructure, which indexes the inferred compromised IoT devices along with their related threat information including employed malware binaries and attacks’ tactics, techniques, and procedures. This aims at enabling proactive IoT security remediation, hands-on research and training, and forensic investigations.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
期刊论文(5)
专著(0)
科研奖励(0)
会议论文
Helium-based IoT Devices: Threat Analysis and Internet-scale Exploitations
基于氦的物联网设备:威胁分析和互联网规模的利用
DOI: 10.1109/wimob58348.2023.10187762
发表时间: 2023
期刊: IEEE
影响因子: --
作者: [Rammouz, Veronica, Khoury, Joseph, Klisura, Ðorđe, Safaei Pour, Morteza, Safaei Pour, Mostafa, Fachkha, Claude, Bou-Harb, Elias]
通讯作者: Bou-Harb, Elias
On The Provision of Network-Wide Cyber Situational Awareness via Graph-Based Analytics
关于通过基于图的分析提供全网网络态势感知
DOI: --
发表时间: 2023
期刊: Springer
影响因子: --
作者: [Husák, M., Khoury, J., Klisura, Ð., Bou-Harb, E.]
通讯作者: Bou-Harb, E.
DOI: 10.1016/j.cose.2023.103123
发表时间: 2023-02-08
期刊: COMPUTERS & SECURITY
影响因子: 5.6
作者: [Pour, Morteza Safaei, Naderb, Christelle, Bou-Harb, Elias]
通讯作者: Bou-Harb, Elias
DOI: 10.1109/eurosp57164.2023.00018
发表时间: 2023-04
期刊: 2023 IEEE 8th European Symposium on Security and Privacy (EuroS&P)
影响因子: --
作者: [Nafis Tanveer Islam;G. Parra;Dylan Manuel;E. Bou-Harb;Peyman Najafirad]
通讯作者: Nafis Tanveer Islam;G. Parra;Dylan Manuel;E. Bou-Harb;Peyman Najafirad
国内基金
海外基金
Research on Quantum Field Theory without a Lagrangian Description
  • 批准号:
    24ZR1403900
  • 项目类别:
    省市级项目
  • 资助金额:
    --
  • 批准年份:
    2024
  • 负责人:
    SATOSHI NAWATA
  • 依托单位:
Cell Research
Cell Research
Cell Research (细胞研究)